Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
2892 results
trivy preview

trivy

GitHubaquasecurity/trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

cloud-infrastructure-securitycloud-securitycode-analysis+14
38.3k
22h 41m ago
Web-Cache-Vulnerability-Scanner preview

Web-Cache-Vulnerability-Scanner

GitHubhackmanit/web-cache-vulnerability-scanner

Go-based CLI scanner for web cache poisoning and deception. Supports 10 poisoning techniques, multiple deception methods, built-in crawler, JSON…

crawlerpenetration-testingvulnerability-scanners+2
1.2k8 months ago
purpleteam-s2-containers preview
Archived

purpleteam-s2-containers

GitLabpurpleteam-labs/purpleteam-s2-containers

Stage two containers

cloud-securitycontainer-securitydevsecops+5
15 years ago
purpleteam-tls-checker preview
Archived

purpleteam-tls-checker

GitLabpurpleteam-labs/purpleteam-tls-checker

TLS checking component of purpleteam

cloud-securitydevsecopsnetwork-security+2
15 years ago
purpleteam preview
Archived

purpleteam

GitLabpurpleteam-labs/purpleteam

CLI component of purpleteam

api-security-testingcloud-securitydevsecops+3
25 years ago
purpleteam-app-scanner preview
Archived

purpleteam-app-scanner

GitLabpurpleteam-labs/purpleteam-app-scanner

Application scanning component of purpleteam

api-security-testingcloud-securitydevsecops+4
15 years ago
purpleteam-server-scanner preview
Archived

purpleteam-server-scanner

GitLabpurpleteam-labs/purpleteam-server-scanner

Server scanning component of purpleteam

api-security-testingcloud-securitydevsecops+3
15 years ago
purpleteam-orchestrator preview
Archived

purpleteam-orchestrator

GitLabpurpleteam-labs/purpleteam-orchestrator

Orchestration component of purpleteam

cloud-securitydevsecopspenetration-testing-frameworks+2
15 years ago
TIWAP preview

TIWAP

GitHubtombstoneghost/tiwap

Deliberately vulnerable Flask web application with 22 security flaws across 3 difficulty levels for hands-on penetration testing and web security…

educationlabs-practicepenetration-testing+2
1782 years ago
open-source-web-scanners preview

open-source-web-scanners

GitHubpsiinon/open-source-web-scanners

Curated list of open-source web security scanners, including general-purpose scanners, infrastructure scanners, and fuzzers, ordered by GitHub stars.

curated-resourceseducationfuzzing+3
1.6k1 year ago
ASST preview

ASST

GitHubowasp/asst

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

code-analysiseducationstatic-code-analysis+2
1881 year ago
modo preview

modo

GitHubmohshomis/modo

Curated collection of cybersecurity learning resources, CTF writeups, research papers, and practical labs for hands-on skill development across web…

ctfcurated-resourceseducation+9
1926 months ago
EasyScan preview

EasyScan

GitHub0xdevrel/easyscan

Python-based web security scanner that analyzes HTTP headers, SSL/TLS, DNS records, and common misconfigurations to generate a scored security report…

dns-analysisinformation-gatheringmisconfiguration+2
1515 months ago
ravage preview

ravage

GitHubduriantaco/ravage

Evidence first autonomous web security testing for controlled, authorized targets. With reproducible labs, audit trails, reports, and XBEN…

ai-securityctfdynamic-analysis-sandboxing+7
5025 days ago
rawsec-cybersecurity-inventory preview

rawsec-cybersecurity-inventory

GitLabrawsec/rawsec-cybersecurity-list

Curated inventory of cybersecurity tools and resources covering penetration testing, forensics, OSINT, web security, malware analysis, cryptography,…

cryptographyctfcurated-resources+9
361 month ago
gryffin preview
Archived

gryffin

GitHubyahoo/gryffin

Gryffin is a large scale web security scanning platform.

crawlerfuzzingpenetration-testing+3
2.1k5 years ago
owtf preview

owtf

GitHubowtf/owtf

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

exploit-frameworkspenetration-testingpenetration-testing-frameworks+2
2.0k1 month ago
quarantyne preview
Archived

quarantyne

GitHubquarantyne/quarantyne

Modern Web Firewall: stop account takeovers, weak passwords, cloud IPs, DoS attacks, disposable emails

anti-botapi-securityauthentication+3
1234 years ago
Previous12…100Next