Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
35080 results
goaccess preview

goaccess

GitHuballinurl/goaccess

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.

anomaly-detectiongeneral-purpose-utilitieslog-analysis+1
20.9k
4 days ago
CVE-2024-12849-Poc preview

CVE-2024-12849-Poc

GitHubnxploited/cve-2024-12849-poc

Exploit for CVE-2024-12849, an arbitrary file read vulnerability in WordPress Error Log Viewer plugin. Downloads sensitive files via unauthenticated…

data-exfiltrationexploitationpenetration-testing+2
1 year ago
ketshash preview

ketshash

GitHubcyberark/ketshash

A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.

authenticationdefensive-toolsincident-response+3
1681 year ago
LDAPMon preview

LDAPMon

GitHubjonny-jhnson/ldapmon

Proof-of-concept telemetry collector for Windows LDAP client activity via ETW, logging structured events to Event Viewer with a Sentinel parser for…

defensive-toolsincident-responselog-analysis
532 years ago
awesome-threat-detection preview

awesome-threat-detection

GitHub0x4d31/awesome-threat-detection

Curated list of threat detection and hunting resources: detection rules, SIEM and log analysis tools, endpoint/network monitoring, datasets,…

curated-resourceseducationincident-response+7
4.7k8 months ago
vcenter_saml_login preview

vcenter_saml_login

GitHubhorizon3ai/vcenter_saml_login

A tool to extract the IdP cert from vCenter backups and log in as Administrator

authentication-authorizationcloud-infrastructure-securityexploitation+4
5313 years ago
Android-Forensics-References preview

Android-Forensics-References

GitHubrealitynet/android-forensics-references

Curated reference for Android forensic artifacts and log paths, with links to CTF writeups, research papers, and mobile device analysis tooling.

ctfcurated-resourcesdigital-forensics+4
3631 year ago
psad preview

psad

GitHubmrash/psad

psad: Intrusion Detection and Log Analysis with iptables

forensicsids-ips-evasionintrusion-detection+4
4287 years ago
bluepot preview

bluepot

GitHubandrewmichaelsmith/bluepot

Java-based Bluetooth honeypot that captures and stores malware from BlueBugging and BlueSnarfing attacks, with a GUI for monitoring and log analysis.

bluetooth-securitydefensive-toolsinformation-gathering+1
2795 months ago
OpenContacts preview

OpenContacts

GitLabsultanahamer/opencontacts

Android contact manager that stores contacts in an isolated database, preventing other apps from accessing them. Provides call log and caller ID…

android-securityprivacy
10125 days ago
CitrixHoneypot preview

CitrixHoneypot

GitHubmalwaretech/citrixhoneypot

Detect and log CVE-2019-19781 scan and exploitation attempts.

incident-responseintrusion-detectionthreat-intelligence+2
1196 years ago
CVE-2026-62735 preview

CVE-2026-62735

GitHubnhh9905/cve-2026-62735

Proof-of-concept for CVE-2026-62735, an integer overflow in http.sys leading to heap overflow and SYSTEM shell. Includes crash log and stack trace…

binary-exploitationexploitationexploit-frameworks+1
3719 days ago
PhantomFS preview

PhantomFS

GitHuballoysecuregroup/phantomfs

Windows honeypot using ProjFS to project decoy files that trigger Event Log and desktop alerts when accessed, with SMB remote session logging for…

defensive-toolsincident-responseintrusion-detection
711 month ago
CVE-2024-23700 preview

CVE-2024-23700

GitHubcanyie/cve-2024-23700

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

android-securityexploitationmobile-app-pentesting+5
738 months ago
audit preview

audit

GitHubtwocanoes/audit

Audit Preference Pane and Log Reader for OS X

configuration-auditingdigital-forensicsforensics+1
4013 years ago
key-transparency-auditor preview

key-transparency-auditor

GitHubsignalapp/key-transparency-auditor

Continuously fetches and cryptographically verifies key transparency log updates, maintains a condensed prefix and log tree view, and returns signed…

cryptographydefensive-toolslog-analysis
91 month ago
CVE-2020-16152 preview

CVE-2020-16152

GitHuberiknl/cve-2020-16152

Proof-of-concept exploit for CVE-2020-16152: LFI-to-RCE in Aerohive/Extreme Networks HiveOS via PHP string truncation and log poisoning, enabling…

binary-exploitationexploitationlateral-movement+3
116 years ago
ghostlock-pfem10 preview

ghostlock-pfem10

GitHubcxlfhx/ghostlock-pfem10

GhostLock (CVE-2026-43499 / IonStack) research for OPPO Find X5 Pro (PFEM10): exploit chain, progress, blocker log, and OPPO 5-series kernel notes

android-securitybinary-exploitationexploitation+7
13 days ago
Previous12…100Next