Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
1540 results
Silverseal preview

Silverseal

GitHubidov31/silverseal

Linux post-exploitation framework with a UEFI bootkit that persistently and stealthily loads a Rust-based kernel module rootkit on modern Linux…

binary-exploitationexploitationmalware-analysis+4
118
7 days ago
volatility preview
Archived

volatility

GitHubvolatilityfoundation/volatility

An advanced memory forensics framework

digital-forensicsforensicsincident-response+4
8.1k1 year ago
Revenant preview
Archived

Revenant

GitHub0xtriboulet/revenant

Revenant - A 3rd party agent for Havoc that demonstrates evasion techniques in the context of a C2 framework

command-and-controlids-ips-evasionpayload-development+3
3892 years ago
Modules preview
Archived

Modules

GitHubhavocframework/modules

Modules used by the Havoc Framework

authenticationcommand-and-controlinformation-gathering+5
2732 years ago
rekall preview
Archived

rekall

GitHubgoogle/rekall

Rekall Memory Forensic Framework

digital-forensicsforensicsincident-response+3
2.0k5 years ago
vajra preview
Archived

vajra

GitHubr3curs1v3-pr0xy/vajra

Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple…

crawlerdns-subdomain-enumerationfuzzing+8
7024 years ago
AndroBugs_Framework preview
Archived

AndroBugs_Framework

GitHubandrobugs/androbugs_framework

AndroBugs Framework is an efficient Android vulnerability scanner that helps developers or hackers find potential security vulnerabilities in Android…

android-securitycode-analysismobile-app-pentesting+3
1.2k7 years ago
reFlutter preview
Archived

reFlutter

GitHubptswarm/reflutter

Flutter Reverse Engineering Framework

android-securitybinary-analysisdynamic-analysis-sandboxing+4
1.5k4 years ago
pupy preview
Archived

pupy

GitHubn1nj4sec/pupy

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

android-securitycommand-and-controllateral-movement+5
9.0k2 years ago
PowerSploit preview
Archived

PowerSploit

GitHubpowershellmafia/powersploit

PowerSploit - A PowerShell Post-Exploitation Framework

lateral-movementpayload-generationpenetration-testing+5
13.1k6 years ago
pyrebox preview
Archived

pyrebox

GitHubcisco-talos/pyrebox

Python scriptable Reverse Engineering Sandbox, a Virtual Machine instrumentation and inspection framework based on QEMU

binary-analysisdebuggersdigital-forensics+5
1.7k2 years ago
caldera-crater preview
Archived

caldera-crater

GitHubmitre/caldera-crater

C# remote access trojan (RAT) implant for the Caldera adversary emulation framework, enabling post-exploitation command and control on Windows…

command-and-controlpayload-developmentpenetration-testing+3
98 years ago
anteater preview
Archived

anteater

GitHubanteater/anteater

Anteater - CI/CD Gate Check Framework

code-analysisconfiguration-auditingdevsecops+6
1753 years ago
certfuzz preview
Archived

certfuzz

GitHubcertcc/certfuzz

This project contains the source code for the CERT Basic Fuzzing Framework (BFF) and the CERT Failure Observation Engine (FOE).

binary-analysisdynamic-analysis-sandboxingexploitation+3
2741 year ago
btlejuice preview
Archived

btlejuice

GitHubdigitalsecurity/btlejuice

BtleJuice Bluetooth Smart (LE) Man-in-the-Middle framework

bluetooth-securityexploitationpacket-sniffing-analysis+3
8507 years ago
BlackMamba preview
Archived

BlackMamba

GitHubloseys/blackmamba

C2/post-exploitation framework

command-and-controldata-exfiltrationencryption-decryption-tools+5
1.2k5 years ago
ftw preview
Archived

ftw

GitHubfastly/ftw

Framework for Testing WAFs (FTW!)

devsecopspenetration-testingvulnerability-scanners+2
2633 years ago
arachni preview
Archived

arachni

GitHubarachni/arachni

Web Application Security Scanner Framework

crawlerdynamic-analysis-sandboxingpenetration-testing+3
4.0k4 months ago
Previous1…767778…86Next