Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
208 results
CollaboratorPlusPlus preview

CollaboratorPlusPlus

GitHubnccgroup/collaboratorplusplus

Burp Suite extension enhancing Collaborator with context capture, polling history, and optional AES-encrypted authentication for private server…

dynamic-analysis-sandboxingencryption-decryption-toolspenetration-testing+3
147
4 years ago
lst2x64dbg preview

lst2x64dbg

GitHubutkonos/lst2x64dbg

Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.

binary-analysisdebuggersreverse-engineering+1
1142 years ago
hackersh preview

hackersh

GitHubikotler/hackersh

A free and open source command-line shell and scripting language designed especially for security testing

penetration-testingpenetration-testing-frameworksscripting-automation+3
12713 years ago
CVE-Vulnerability-Information-Downloader preview

CVE-Vulnerability-Information-Downloader

GitHubtrinitor/cve-vulnerability-information-downloader

Downloads and aggregates CVSS, EPSS, and CISA known exploited vulnerability data into unified JSON/CSV files and a SQLite database. Enriches…

log-analysisthreat-intelligenceutilities-frameworks+2
1433 years ago
windbg-mcp preview

windbg-mcp

GitHubgengstah/windbg-mcp

An MCP (Model Context Protocol) server that turns all pybag Windows debugger functions into native MCP tools. It lets MCP-compatible clients (Claude…

binary-analysisdebuggersdynamic-analysis-sandboxing+7
893 months ago
Some-Tools preview

Some-Tools

GitHubsom3canadian/some-tools

Some Pentest Tools. Install and keep up to date some pentesting tools. I used this to pass my OSCP exam.

educationexploitationpenetration-testing+4
665 years ago
toolbox preview

toolbox

GitHubgo-appsec/toolbox

Collaborative application security testing between humans and agents via CLI and MCP

api-security-testingcrawlerdynamic-analysis-sandboxing+8
426 days ago
faraday_agent_dispatcher preview

faraday_agent_dispatcher

GitHubinfobyte/faraday_agent_dispatcher

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

cloud-securitydevsecopsinformation-gathering+5
497 months ago
MaFrida preview

MaFrida

GitHubtheshinigami/mafrida

A Magisk module that simplifies running the Frida server on Android, with easy management commands to download specific versions, enable or disable…

android-securitydynamic-analysis-sandboxingdynamic-code-analysis+5
391 month ago
cowcloud preview

cowcloud

GitHubnccgroup/cowcloud

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

cloud-infrastructure-securitycloud-securitydevsecops+5
603 years ago
bof preview

bof

GitHuborange-cyberdefense/bof

BOF (Boiboite Opener Framework) is a testing framework for industrial protocols implementations and devices.

exploitationfuzzinginformation-gathering+6
533 years ago
Ledger preview

Ledger

GitHubshellkraft/ledger

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…

command-and-controlincident-responselog-analysis+5
273 months ago
p-invoke.net preview

p-invoke.net

GitHubricardojoserf/p-invoke.net

Curated collection of P/Invoke definitions from pinvoke.net with Microsoft documentation links, enabling quick Windows API prototyping for security…

malware-analysisreverse-engineeringutilities-frameworks
241 year ago
doppelganger_assistant preview

doppelganger_assistant

GitHubtweathers-sec/doppelganger_assistant

Card calculator and Proxmark3 Plugin for writing and/or simulating every card type that Doppelgänger Community, Pro, Stealth, and MFAS support.

embedded-systems-securityencryption-decryption-toolshardware-hacking+5
328 months ago
GuardScan preview

GuardScan

GitHubntanwir10/guardscan

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

ai-securityapi-securitycloud-security+8
152 months ago
NotaMy preview

NotaMy

GitHubimprojtech/notamy

Terminal-based note manager with hierarchical tagging and file linking

educationinformation-gatheringpenetration-testing+3
116 months ago
bom-view preview

bom-view

GitHubhristiy4n/bom-view

Static web application for viewing SBOMs and performing on-demand vulnerability scanning with osv.dev. Easily deployable to GitHub/GitLab Pages.

devsecopsstatic-analysissupply-chain-security+3
36 months ago
hydrafw preview

hydrafw

GitHubhydrabus/hydrafw

Open-source firmware for HydraBus, a multi-tool for embedded hardware debugging, hacking, and penetration testing, supporting protocols like SPI,…

debuggerseducationembedded-systems-security+6
4487 months ago
Previous1…678…12Next