Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
3333 results
ID-entify preview

ID-entify

GitHubbillyv4/id-entify

Search for information related to domain: Emails - IP addresses - Sub-Domains - Information on WEB technology - Type of Firewall - NS and MX records.

dns-analysisemail-harvestinginformation-gathering+4
116
6 years ago
log4shell-tools preview

log4shell-tools

GitHubalexbakker/log4shell-tools

Tool that runs a test to check whether one of your applications is affected by the recent vulnerabilities in log4j: CVE-2021-44228 and CVE-2021-45046

dns-analysisexploitationpenetration-testing+3
862 years ago
SocialPwned preview
Archived

SocialPwned

GitHubmrtuxx/socialpwned

SocialPwned is an OSINT tool that allows to get the emails, from a target, published in social networks such as Instagram, Linkedin and Twitter to…

email-harvestinginformation-gatheringosint+5
1.3k1 year ago
cent preview

cent

GitHubxm1k3/cent

Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place

curated-resourcespenetration-testingvulnerability-scanners+1
1.0k3 months ago
Katana preview
Archived

Katana

GitHubc4tcom/katana

Python Tool that gives you the ability to run Advanced Google Queries (Known as Google Dorks - Google Dorking)

educationinformation-gatheringosint+3
1.3k1 year ago
waybackpack preview

waybackpack

GitHubjsvine/waybackpack

Download the entire Wayback Machine archive for a given URL.

information-gatheringosintutilities-frameworks+1
3.2k1 year ago
Cloudflare-Bypass preview

Cloudflare-Bypass

GitHubpentestcore/cloudflare-bypass

Cloudflare Bypass tools | PentestCore

dns-subdomain-enumerationinformation-gatheringreconnaissance+1
166 years ago
InstagramOSINT preview
Archived

InstagramOSINT

GitHubsc1341/instagramosint

An Instagram Open Source Intelligence Tool - Archive

information-gatheringmobile-securityosint+3
1.7k2 years ago
monsoon preview

monsoon

GitHubredteampentesting/monsoon

Fast HTTP enumerator

fuzzinginformation-gatheringpenetration-testing+1
5001 month ago
onionshare preview

onionshare

GitHubonionshare/onionshare

Securely and anonymously share files, host websites, and chat with friends using the Tor network

encryption-decryption-toolsosintprivacy+1
7.1k20 days ago
kanha preview

kanha

GitHubpwnwriter/kanha

🦚 A web-app pentesting suite written in rust .

dns-subdomain-enumerationfuzzinginformation-gathering+5
3251 year ago
hoper preview

hoper

GitHubgabamnml/hoper

Security tool to trace URL's jumps across the rel links to obtain the last URL

information-gatheringreconnaissanceweb-security
553 years ago
quiver preview

quiver

GitHubstevemcilwain/quiver

Quiver is the tool to manage all of your tools for bug bounty hunting and penetration testing.

exploitationinformation-gatheringpenetration-testing+4
2166 years ago
Extracter preview

Extracter

GitHubk3ystr0k3r/extracter

A nice web-crawler written in Bash that will look for login pages/admin-panels for you on any given website.

crawlerinformation-gatheringosint+2
63 years ago
CWFF preview

CWFF

GitHubd4vinci/cwff

Create your Custom Wordlist For Fuzzing

fuzzinginformation-gatheringpenetration-testing+2
2041 year ago
waf-checker preview

waf-checker

GitHubsech0us3/waf-checker

Automated WAF assessment tool that detects firewall vendors, tests 19 attack categories with advanced evasion payloads, and provides color-coded…

api-security-testingids-ips-evasioninformation-gathering+6
341 day ago
wafparan01d3 preview

wafparan01d3

GitHubalt3kx/wafparan01d3

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool

configuration-auditingdefensive-toolspenetration-testing+2
244 years ago
AMSIext preview

AMSIext

GitHubelevenpaths/amsiext

AMSIext

defensive-toolsdynamic-analysis-sandboxingmalware-analysis+2
66 years ago
Previous12…100Next