


Cybersecurity Tools
A curated directory of essential tools for every cybersecurity professional.
Networking
The industry-standard tool for network discovery, security auditing, and port scanning.
A fast port scanner based on the Go language, focusing on speed and reliability for initial network discovery.
The world's foremost network protocol analyzer and traffic sniffing tool.
A powerful command-line packet analyzer for capturing and displaying network traffic.
A suite of tools dedicated to assessing the security of Wi-Fi networks.
Networking utility for port scanning and reverse shells.
Fastest internet-wide port scanner.
Web Security
The leading platform for security testing and hacking web applications.
An automatic tool for detecting and exploiting SQL injection flaws in web applications.
A fast command-line tool for bruteforcing directories, files, and DNS subdomains on web servers.
A simple, open-source web server scanner that checks for dangerous files/CGIs.
Fast web fuzzer for directory and endpoint discovery.
Web application fuzzer for brute forcing parameters.
WordPress vulnerability scanner.
Advanced XSS vulnerability detection tool.
Automated web application security scanner.
Directory and file brute-force tool.
Pentesting
The world’s most used penetration testing framework, for developing and executing exploit code.
A fast and popular open-source password cracking utility.
The world's fastest password recovery utility, known for its GPU-accelerated cracking.
A parallelized login cracker that supports over 50 network protocols.
Windows SMB enumeration tool.
Tool for enumerating SMB shares.
Pentesting tool for Active Directory networks.
Collection of Python tools for network protocols.
LLMNR, NBT-NS, and MDNS poisoning tool.
OSINT
A fast passive subdomain enumeration tool that uses multiple sources (APIs, search engines) for discovery.
A passive reconnaissance tool that finds domain assets (subdomains) from various external data sources.
A simple, yet effective tool for gathering open-source intelligence (OSINT).
A tool to hunt for social media accounts by username across hundreds of networks.
Subdomain enumeration & attack surface mapping tool.
Website fingerprinting tool.
Metadata extraction tool.
Full OSINT framework for information gathering.
Forensics
A user-friendly, open-source digital forensics platform and graphical interface to The Sleuth Kit.
The premier open-source memory forensics framework for analyzing RAM dumps.
Forensic tool for imaging disks & analyzing data.
Reverse Engineering
A free, open-source software reverse engineering (SRE) framework developed by the NSA.
A fast tool for analyzing, reverse engineering, and extracting firmware images.
Reverse engineering and binary analysis framework.
Reverse engineer Android APK files.
Defense
A leading open-source network intrusion detection and prevention system (IDS/IPS).
An open-source antivirus engine for detecting trojans, viruses, and other malware.
A comprehensive security auditing and hardening tool for Unix-like operating systems.
Encryption
Free open-source disk encryption software for creating secure, encrypted volumes.
Want to see more?
The world of cybersecurity tools is vast. Explore the comprehensive list on the official Kali Linux website.
Explore All Kali Tools