Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
61 results
burpflow preview

burpflow

GitHubcappricio-securities/burpflow

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

penetration-testingreconnaissancescripting-automation+2
10
5 months ago
caido preview

caido

GitHubcaido/caido

Lightweight web proxy for intercepting, inspecting, and modifying HTTP traffic to audit web applications during penetration testing and bug bounty…

penetration-testingweb-proxies-interceptionweb-security
2.5k2 months ago
burp-vps-proxy preview

burp-vps-proxy

GitHubd3mondev/burp-vps-proxy

This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.

penetration-testingutilities-frameworkswaf-bypass+1
2481 year ago
BurpSuiteSharpenerEx preview

BurpSuiteSharpenerEx

GitHubirsdl/burpsuitesharpenerex

This extension enhances Burp Suite by adding several UI and functional features, making it more user-friendly.

penetration-testingutilities-frameworksweb-proxies-interception+1
8629 days ago
Berserko preview

Berserko

GitHubnccgroup/berserko

Burp Suite extension to perform Kerberos authentication

authenticationpenetration-testingweb-proxies-interception+1
1052 years ago
ratched preview

ratched

GitHubjohndoe31415/ratched

Ratched is a transparent Man-in-the-Middle TLS proxy intended for penetration testing

network-securitypenetration-testingweb-proxies-interception
335 years ago
auto-repeater preview

auto-repeater

GitHubxnl-h4ck3r/auto-repeater

Automated HTTP Request Repeating With Burp Suite

fuzzingpenetration-testingweb-proxies-interception+1
383 years ago
Cookie-Swapper preview

Cookie-Swapper

GitHub0xbartita/cookie-swapper

Burp Suite extension that auto-replaces cookies and headers in requests using configurable rules. Eliminates manual copy-pasting of session tokens…

penetration-testingscripting-automationutilities-frameworks+2
64 months ago
BurpSuite-Grand-Master-Tools preview

BurpSuite-Grand-Master-Tools

GitHubnu11secur1ty/burpsuite-grand-master-tools

Modular toolkit for pentesters that converts Burp Suite captured HTTP requests into browsable URLs and automates workflow actions with auditable…

penetration-testingreconnaissancescripting-automation+3
29 months ago
HUNT preview

HUNT

GitHubbugcrowd/hunt
curated-resourcespenetration-testingvulnerability-analysis+3
2.3k2 months ago
hetty preview

hetty

GitHubdstotijn/hetty

An HTTP toolkit for security research.

penetration-testingweb-proxies-interceptionweb-security
12.0k1 month ago
PwnFox preview

PwnFox

GitHubyeswehack/pwnfox

Firefox/Burp extension for security audits with single-click proxy, container profiles, postMessage logging, JS injection toolbox, and security…

penetration-testingweb-proxies-interceptionweb-security
1.3k3 years ago
autochrome preview

autochrome

GitHubnccgroup/autochrome

This tool downloads, installs, and configures a shiny new copy of Chromium.

penetration-testingweb-proxies-interceptionweb-security
4802 years ago
wssip preview

wssip

GitHubnccgroup/wssip

Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.

fuzzingpenetration-testingweb-proxies-interception+1
4503 years ago
pipe-intercept preview

pipe-intercept

GitHubgabriel-sztejnworcel/pipe-intercept

Intercept Windows Named Pipes communication using Burp or similar HTTP proxy tools

penetration-testingred-teamingweb-proxies-interception
30411 months ago
MITM_Intercept preview

MITM_Intercept

GitHubcyberark/mitm_intercept

A little bit less hackish way to intercept and modify non-HTTP protocols through Burp & others.

penetration-testingweb-proxies-interception
2194 years ago
burp2caido preview

burp2caido

GitHubcaido-community/burp2caido

A tool to migrate Burpsuite HTTP history to Caido

penetration-testingutilities-frameworksweb-proxies-interception+1
421 year ago
burp_global_match_replace preview

burp_global_match_replace

GitHubsinge/burp_global_match_replace

Match & Replace rules for Portswigger's Burp that operate globally across all utilities.

penetration-testingutilities-frameworksweb-proxies-interception+1
246 months ago
Previous1234Next