Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1541 results
smod preview

smod

GitHub0x0mar/smod

MODBUS Penetration Testing Framework

fuzzinginformation-gatheringnetwork-security+3
9510 years ago
hakuin preview

hakuin

GitHubpruzko/hakuin

A blazing fast and fully configurable Blind SQL Injection optimization and automation framework.

penetration-testingvulnerability-scannersweb-security
1421 year ago
Apkx-Hunter preview

Apkx-Hunter

GitHubsyscallx-18113/apkx-hunter

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

android-securityinformation-gatheringmachine-learning+7
932 days ago
XSS-Catcher preview

XSS-Catcher

GitHubdaxakahackerman/xss-catcher

A blind XSS detection and XSS data capture framework

information-gatheringpayload-generationpenetration-testing+4
17713 days ago
Crawlector preview

Crawlector

GitHubmfmokbel/crawlector

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

crawlerinformation-gatheringmalware-analysis+5
1239 months ago
MaccaroniC2 preview

MaccaroniC2

GitHubcalfcrusher/maccaronic2

A proof-of-concept Command & Control framework that utilizes the powerful AsyncSSH Python library which provides an asynchronous client and server…

command-and-controleducationexploit-frameworks+3
763 years ago
sh4d0wup preview

sh4d0wup

GitHubkpcyrd/sh4d0wup

Signing-key abuse and update exploitation framework

command-and-controlexploitationpayload-development+3
1311 month ago
KaliIntelligenceSuite preview

KaliIntelligenceSuite

GitHubchopicalqui/kaliintelligencesuite

Automated intelligence-gathering framework that orchestrates Kali Linux tools and public APIs to collect, store, and analyze reconnaissance data for…

information-gatheringosintpenetration-testing+3
994 years ago
asadbg preview

asadbg

GitHubnccgroup/asadbg

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

binary-analysisdebuggersembedded-systems-security+5
814 years ago
pinecone preview

pinecone

GitHubpinecone-wifi/pinecone

Modular WLAN auditing framework for red teams with deauthentication, rogue AP, and WPA handshake capture modules. Features a Metasploit-like CLI for…

exploitationinformation-gatheringpenetration-testing+3
1617 months ago
JOP_ROCKET preview

JOP_ROCKET

GitHubbw3ll/jop_rocket

This framework enables user to discover JOP gagdets and can automate building a complete JOP chain to bypass DEP. JOP ROCKET is the ultimate solution…

binary-exploitationeducationexploitation+4
1172 years ago
libptrace preview

libptrace

GitHubimmunityinc/libptrace

An event driven multi-core process debugging, tracing, and manipulation framework.

binary-analysisdebuggersdynamic-analysis-sandboxing+3
1726 years ago
PickleC2 preview

PickleC2

GitHubxret2pwn/picklec2

Encrypted C2 framework for post-exploitation and lateral movement, supporting PowerShell implants and custom modules for red team engagements.

command-and-controllateral-movementpenetration-testing-frameworks+2
985 years ago
cygor preview

cygor

GitHubtjnull/cygor

An modular asset discovery framework written in python to automate the repeating manual work

database-securitydns-analysisinformation-gathering+7
882 months ago
CVE-2024-53677-S2-067 preview

CVE-2024-53677-S2-067

GitHubtam-k592/cve-2024-53677-s2-067

A critical vulnerability, CVE-2024-53677, has been identified in the popular Apache Struts framework, potentially allowing attackers to execute…

exploitationpayload-developmentpenetration-testing+3
951 year ago
Commander preview

Commander

GitHubvoukatas/commander

Python-based command and control framework with encrypted TLS communication, multiple agent support (Python/C), interactive sessions, file transfer,…

command-and-controlencryption-decryption-toolspayload-development+3
632 years ago
Cartero preview

Cartero

GitHubmrbrutti/cartero

Modular phishing framework with CLI for cloning sites, sending templated emails, and launching phishing campaigns via email, SMS, iMessage, and…

osint-social-engineeringpayload-generationphishing+2
496 months ago
peach preview

peach

GitHubcalebstewart/peach

Simple vulnerability scanning framework

code-analysisfuzzingstatic-analysis+1
519 years ago
Previous1…636465…86Next