Skip to content
KitploitKITPLOIT
ToolsBlog
Einreichen
ToolsBlog
Einreichen

Hacking-, PenTest- und Cybersicherheits-Tools für Ihr Sicherheitsarsenal!

Kitploit ist ein Verzeichnis von Hacking-, Cybersicherheits- und Pentesting-Tools. Entdecken Sie die neuesten Projekt-Updates, um Schwachstellen zu finden, Systeme zu analysieren, Tests zu automatisieren und Ihre Sicherheit zu stärken.

··Feeds·Kontakt·Datenschutz·© 2026 Kitploit

Tool-Verzeichnis

Kategorien

Alle Kategorien anzeigen
Loading categories

Tools

AlleAndroid-SicherheitAuthentifizierung & AutorisierungCloud-Infrastruktur-SicherheitDefensivwerkzeugeFestplattenforensikEmbedded-System-SicherheitAllgemeine DienstprogrammeManagement von Indicators of Compromise (IOC)OSINT (Open-Source-Intelligence)Paket-Sniffing & AnalysePasswort-CrackingPenetrationstest-FrameworksPhishing-ToolsPrivilege EscalationAufklärungStatische AnalyseSchwachstellenscannerWeb-SchwachstellenscannerWi-Fi-PrüfungBluetooth-SicherheitContainer-SicherheitDynamische Analyse (Sandboxing)Verschlüsselungs-/EntschlüsselungstoolsExploit-FrameworksIdentitätsmanagementiOS-SicherheitIoT-SicherheitSpeicherforensikNetzwerkkartierungOSINT für Social EngineeringPasswortangriffePayload-GenerierungPersistenzmechanismenPort-ScanningStatische Code-Analyse (SAST)Bedrohungsfeeds & AggregatorenSchwachstellenanalyseWeb-Proxys & AbfangenCode-AnalyseDNS- und Subdomain-EnumerationDynamische Code-Analyse (DAST)ExploitationHash-AnalyseIDS/IPS-UmgehungImpersonations-ToolsLaterale BewegungMobile App-PenetrationstestsNetzwerkforensikReverse EngineeringRFID/NFC-ToolsSCADA/ICS-SicherheitScripting & AutomatisierungServerless-SicherheitShellcodeWebanwendungs-ExploitationAPI-SicherheitstestsKonfigurationsprüfungDatenexfiltrationDebuggerForensikInformationsbeschaffungMobile ForensikNetzwerkzugriffskontrollePost-ExploitationSicherheitsvirtualisierungPhishingWAF-UmgehungWebsicherheitFuzzingNetzwerksicherheitSteganografieDrahtlose SicherheitDatenwiederherstellungMalware-AnalyseDigitale ForensikHardware-HackingKryptographieCTFPenetrationstestsCloud-SicherheitDevSecOpsMobile SicherheitPrivatsphäreCommand and ControlSocial EngineeringHardware-SicherheitDienstprogramme & FrameworksHardware- & IoT-SicherheitSecret-ErkennungBinäranalyseBedrohungsanalyseIdentitäts- & Zugriffsmanagement (IAM)LieferkettensicherheitAuthentifizierungMaschinelles LernenEinbruchserkennungPapers & ForschungFehlkonfigurationSubdomain-EnumerationE-Mail-SammlungLernen & BildungKI-gestütztes Reverse EngineeringDNS-FuzzingRed TeamingIncident ResponseCrawlerKuratierte RessourcenRemote-Access-ToolShellcode-GenerierungPayload-EntwicklungRemote-Access-TrojanerAPI-SicherheitAnti-BotFingerabdruck-SpoofingCAPTCHA-UmgehungE-Mail-SicherheitDNS-AnalyseChaos-EngineeringLernpfade & KurseContainer-AusbruchKI-SicherheitDatenbanksicherheitFirmware-AnalyseAnomalieerkennungLog-AnalyseAdversarial-AngriffBinary-ExploitationLabs & Praxis
NeuesteRelevanzBeliebtesteKürzlich aktualisiert
36808 Ergebnisse
CVE-2026-28372-GNU-inetutils-telnetd-Privilege-Escalation preview

CVE-2026-28372-GNU-inetutils-telnetd-Privilege-Escalation

GitHubmbanyamer/cve-2026-28372-gnu-inetutils-telnetd-privilege-escalation

Proof-of-Concept-Exploit für CVE-2026-28372, das eine lokale Privilegienausweitung in GNU inetutils telnetd über CREDENTIALS_DIRECTORY und…

privilege-escalationexploit-frameworksvulnerability-analysis+3
vor 5 Monaten
CVE-2026-27579-CollabPlatform-Appwrite-CORS-Misconfiguration preview

CVE-2026-27579-CollabPlatform-Appwrite-CORS-Misconfiguration

GitHubmbanyamer/cve-2026-27579-collabplatform-appwrite-cors-misconfiguration

Exploit-PoC für CVE-2026-27579, eine CORS-Fehlkonfiguration im Appwrite-Backend, die den Diebstahl authentifizierter Kontodaten über eine bösartige…

phishing-toolsvulnerability-analysisexploitation+3
vor 6 Monaten
CVE-2026-27574-OneUptime-RCE preview

CVE-2026-27574-OneUptime-RCE

GitHubmbanyamer/cve-2026-27574-oneuptime-rce

Proof-of-Concept-Exploit für CVE-2026-27574, eine kritische Code-Injection in OneUptime, die Remote-Code-Ausführung und das Leaken von…

vulnerability-analysisexploitationweb-application-exploitation+3
1vor 7 Monaten
CVE-2026-27180-MajorDoMo-unauthenticated-RCE preview

CVE-2026-27180-MajorDoMo-unauthenticated-RCE

GitHubmbanyamer/cve-2026-27180-majordomo-unauthenticated-rce

Proof-of-Concept-Exploit für CVE-2026-27180, eine nicht authentifizierte RCE in MajorDoMo über Update-URL-Poisoning, die eine Webshell in das…

vulnerability-analysisexploitationweb-application-exploitation+3
vor 7 Monaten
CVE-2026-26988-LibreNMS-SQLi preview

CVE-2026-26988-LibreNMS-SQLi

GitHubmbanyamer/cve-2026-26988-librenms-sqli

Proof-of-Concept-Exploit für eine nicht authentifizierte SQL-Injection in LibreNMS ajax_table.php, das zeitbasierte und boolesche…

vulnerability-analysisexploitationweb-application-exploitation+3
vor 7 Monaten
CVE-2026-26335-Calero-VeraSMART-RCE preview

CVE-2026-26335-Calero-VeraSMART-RCE

GitHubmbanyamer/cve-2026-26335-calero-verasmart-rce

Automatisierter Exploit für CVE-2026-26335, eine kritische, nicht authentifizierte RCE in Calero VeraSMART über gefälschte ASP.NET ViewState unter…

payload-generationvulnerability-analysisexploitation+4
vor 7 Monaten
CVE-2026-26235-JUNG-Smart-Visu-Server-Unauthenticated-Reboot-Shutdown preview

CVE-2026-26235-JUNG-Smart-Visu-Server-Unauthenticated-Reboot-Shutdown

GitHubmbanyamer/cve-2026-26235-jung-smart-visu-server-unauthenticated-reboot-shutdown

Proof-of-Concept-Exploit für CVE-2026-26235, eine nicht authentifizierte Denial-of-Service-Schwachstelle im JUNG Smart Visu Server <=1.1.1050, die…

iot-securityvulnerability-analysisexploitation+2
vor 7 Monaten
CVE-2026-26221-Hyland-OnBase-Timer-Service-Unauthenticated-RCE preview

CVE-2026-26221-Hyland-OnBase-Timer-Service-Unauthenticated-RCE

GitHubmbanyamer/cve-2026-26221-hyland-onbase-timer-service-unauthenticated-rce

Proof-of-Concept-Exploit für nicht authentifizierte Remote-Codeausführung im Hyland OnBase Timer Service über…

payload-generationvulnerability-analysisexploitation+3
vor 7 Monaten
CVE-2026-26030-Microsoft-Semantic-Kernel-1.39.4-RCE preview

CVE-2026-26030-Microsoft-Semantic-Kernel-1.39.4-RCE

GitHubmbanyamer/cve-2026-26030-microsoft-semantic-kernel-1.39.4-rce

Proof-of-Concept-Exploit für CVE-2026-26030, der Remote-Codeausführung über unsichere Filterausdrücke im InMemoryVectorStore von Microsoft Semantic…

vulnerability-analysiscode-analysisexploitation+2
1vor 6 Monaten
CVE-2026-25961-SumatraPDF-3.5.0---3.5.2-RCE preview

CVE-2026-25961-SumatraPDF-3.5.0---3.5.2-RCE

GitHubmbanyamer/cve-2026-25961-sumatrapdf-3.5.0---3.5.2-rce

SumatraPDF-Versionen 3.5.0 bis 3.5.2 deaktivieren die TLS-Hostnamen-Überprüfung während Update-Prüfungen # (unter Verwendung von…

payload-generationvulnerability-analysisexploitation+3
2vor 7 Monaten
CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary preview

CVE-2026-25939-SCADA-FUXA-Unauthenticated-Remote-Arbitrary

GitHubmbanyamer/cve-2026-25939-scada-fuxa-unauthenticated-remote-arbitrary

Proof-of-Concept-Exploit für CVE-2026-25939, eine nicht authentifizierte Autorisierungsumgehung in der FUXA-SCADA-Software, die beliebige…

vulnerability-analysisexploitationscada-ics-security+2
vor 7 Monaten
CVE-2026-25916-Roundcube-Webmail-DOM-based-XSS-Exploit-via-SVG-href-Attribute preview

CVE-2026-25916-Roundcube-Webmail-DOM-based-XSS-Exploit-via-SVG-href-Attribute

GitHubmbanyamer/cve-2026-25916-roundcube-webmail-dom-based-xss-exploit-via-svg-href-attribute

Python-Exploit für DOM-basiertes XSS in Roundcube Webmail (CVE-2026-25916) über SVG-href-Attribute, das Session-Hijacking und Datenextraktion durch…

payload-generationvulnerability-analysisexploitation+3
3vor 7 Monaten
CVE-2026-25890-FileBrowser-Access-Control-Bypass preview

CVE-2026-25890-FileBrowser-Access-Control-Bypass

GitHubmbanyamer/cve-2026-25890-filebrowser-access-control-bypass

Exploit für CVE-2026-25890, eine pfadbasierte Autorisierungsumgehung in FileBrowser <= v2.57.0, die es authentifizierten Benutzern mit niedrigen…

vulnerability-analysisexploitationweb-application-exploitation+2
vor 7 Monaten
CVE-2026-25732-NiceGUI-3.6.1 preview

CVE-2026-25732-NiceGUI-3.6.1

GitHubmbanyamer/cve-2026-25732-nicegui-3.6.1

Exploit für CVE-2026-25732, eine Path-Traversal-Schwachstelle in NiceGUIs FileUpload, die ein nicht authentifiziertes Schreiben beliebiger Dateien…

vulnerability-analysisexploitationweb-application-exploitation+2
vor 7 Monaten
CVE-2026-25546-godot-mcp-0.1.1-OS-Command-Injection preview

CVE-2026-25546-godot-mcp-0.1.1-OS-Command-Injection

GitHubmbanyamer/cve-2026-25546-godot-mcp-0.1.1-os-command-injection

Proof-of-Concept-Exploit für CVE-2026-25546, der eine OS-Befehlsinjektion in godot-mcp über einen bösartigen projectPath-Parameter demonstriert, mit…

vulnerability-analysiscode-analysisexploitation+2
vor 7 Monaten
CVE-2026-25512-PoC-Group-Office-Authenticated-RCE preview

CVE-2026-25512-PoC-Group-Office-Authenticated-RCE

GitHubmbanyamer/cve-2026-25512-poc-group-office-authenticated-rce

Ausnutzung authentifizierter Remote-Codeausführung für Group-Office über den TNEF-Anhangshandler, die auf CVE-2026-25512 mit OS-Befehlsinjektion…

vulnerability-analysisexploitationweb-application-exploitation+2
vor 7 Monaten
CVE-2026-25130-Cybersecurity-AI-CAI-Framework-0.5.10 preview

CVE-2026-25130-Cybersecurity-AI-CAI-Framework-0.5.10

GitHubmbanyamer/cve-2026-25130-cybersecurity-ai-cai-framework-0.5.10

Proof-of-Concept, das eine Argument-Injection demonstriert, die zu einer OS-Command-Injection im find_file-Dienstprogramm des CAI-Frameworks führt…

vulnerability-analysisexploitationweb-application-exploitation+3
vor 7 Monaten
CVE-2026-24854-ChurchCRM-6.7.2-Authenticated-Numeric-SQL-Injection preview

CVE-2026-24854-ChurchCRM-6.7.2-Authenticated-Numeric-SQL-Injection

GitHubmbanyamer/cve-2026-24854-churchcrm-6.7.2-authenticated-numeric-sql-injection

Proof-of-Concept, der eine authentifizierte numerische SQL-Injection in ChurchCRM vor 6.7.2 demonstriert, die eine Logikmanipulation ermöglicht, um…

vulnerability-analysisexploitationweb-application-exploitation+3
vor 7 Monaten
Zurück1…99100Weiter