Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
170 results
TTPForge preview

TTPForge

GitHubfacebookincubator/ttpforge

Adversary simulation framework for authoring and automating attacker TTPs as repeatable YAML scenarios, helping red and blue teams validate detection…

adversarial-attackincident-responsepenetration-testing-frameworks+2
439
19 days ago
cervantes preview

cervantes

GitHubcervantessec/cervantes

Open-source collaborative platform for pentesters and red teams to manage projects, clients, vulnerabilities, and generate OWASP-compliant reports…

penetration-testingpenetration-testing-frameworksvulnerability-analysis
4463 months ago
overlord preview

overlord

GitHubqsecure-labs/overlord

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

cloud-securitycommand-and-controlemail-security+3
6374 years ago
tap preview

tap

GitHubtrustedsec/tap

The TrustedSec Attack Platform is a reliable method for droppers on an infrastructure in order to ensure established connections to an organization.

command-and-controlpenetration-testing-frameworkspersistence-mechanisms+3
5043 years ago
autopwn preview

autopwn

GitHubnccgroup/autopwn

Specify targets and run sets of tools against them

penetration-testingpenetration-testing-frameworksreconnaissance+2
3897 years ago
gallia preview

gallia

GitHubfraunhofer-aisec/gallia

Extendable pentesting framework for automotive UDS interfaces, enabling reproducible scans, diagnostic trouble code reading, and post-processing via…

fuzzingpenetration-testing-frameworks
16020 days ago
CoercedPotatoRDLL preview

CoercedPotatoRDLL

GitHubsokarepo/coercedpotatordll

Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege

exploitationpayload-developmentpenetration-testing+4
2272 years ago
specula preview

specula

GitHubtrustedsec/specula
command-and-controlpenetration-testing-frameworkspersistence-mechanisms+2
2371 year ago
Nimplant preview

Nimplant

GitHubmythicagents/nimplant

A cross-platform implant written in Nim

command-and-controlpayload-developmentpenetration-testing-frameworks+2
1763 years ago
BlueSAM preview

BlueSAM

GitHubincursi0n/bluesam

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

command-and-controlexploitationpayload-development+3
1674 months ago
sdnpwn preview

sdnpwn

GitHubsmythtech/sdnpwn

An SDN penetration testing toolkit

exploitationnetwork-securitypenetration-testing+2
1151 year ago
beacon_health_check preview

beacon_health_check

GitHubcobalt-strike/beacon_health_check

This aggressor script uses a beacon's note field to indicate the health status of a beacon.

command-and-controlpenetration-testing-frameworksred-teaming
1434 years ago
hackersh preview

hackersh

GitHubikotler/hackersh

A free and open source command-line shell and scripting language designed especially for security testing

penetration-testingpenetration-testing-frameworksscripting-automation+3
12713 years ago
threatbox preview

threatbox

GitHubthreatexpress/threatbox

Ansible-based attack platform for deploying and managing a standardized Linux penetration testing environment with automated tool installation,…

penetration-testing-frameworksred-teamingscripting-automation+1
771 year ago
jwt-reauth preview

jwt-reauth

GitHubnccgroup/jwt-reauth
api-securityauthenticationpenetration-testing+3
1063 years ago
redherd-framework preview

redherd-framework

GitHubredherd-project/redherd-framework

RedHerd is a collaborative and serverless framework for orchestrating a geographically distributed group of assets.

penetration-testing-frameworksred-teaming
753 years ago
BurpSuite-Plugin preview

BurpSuite-Plugin

GitHubjas502n/burpsuite-plugin

Plugin For BurpSuite (Pentester)

penetration-testing-frameworksvulnerability-analysisweb-application-exploitation+2
373 years ago
async-pico-hub preview

async-pico-hub

GitHubnccgroup/async-pico-hub

Async PICO Hub is a work-in-progress framework to extend Cobalt Strike with custom event monitoring and in-process Asynchronous BOFs

command-and-controlpayload-developmentpenetration-testing-frameworks+2
272 months ago
Previous1…8910Next