Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Dynamic Analysis (Sandboxing) | Kitploit
Categories

Dynamic Analysis (Sandboxing)

Tools for observing malware behavior in isolated environments to understand its actions and impact.

Kitploit recommended

Top tools

10 selected
cuckoo3 preview#2

cuckoo3

GitHubcert-ee/cuckoo3
8179 months ago
IntelOwl preview#4

IntelOwl

GitHubintelowlproject/intelowl
4.7k22 days ago
flare-vm preview#5

flare-vm

GitHubmandiant/flare-vm
8.9k3 months ago
distro preview#6

distro

GitHubremnux/distro
1171 month ago
commando-vm preview#7

commando-vm

GitHubmandiant/commando-vm
7.8k11 months ago
metasploitable3 preview#8

metasploitable3

GitHubrapid7/metasploitable3
5.7k1 year ago
firecracker preview#9

firecracker

GitHubfirecracker-microvm/firecracker
36.9k16 days ago
gvisor preview#10

gvisor

GitHubgoogle/gvisor
19.4k0 days ago
kata-containers preview#11

kata-containers

GitHubkata-containers/kata-containers
8.5k8h 59m ago
yara-x preview#13

yara-x

GitHubvirustotal/yara-x
1.2k13h 6m ago
NewestRelevanceMost popularRecently updated
624 results
JndiLookup preview

JndiLookup

GitHubmadcdan/jndilookup

Some tools to help mitigating Apache Log4j 2 CVE-2021-44228

dynamic-analysis-sandboxingpayload-generationvulnerability-analysis+3
34 years ago
-Remcos-RAT-Fileless-svchost-Injection-Obfuscated-Payload-Analysis- preview

-Remcos-RAT-Fileless-svchost-Injection-Obfuscated-Payload-Analysis-

GitHubkaandemir993/-remcos-rat-fileless-svchost-injection-obfuscated-payload-analysis-

"Reverse engineering analysis of a fileless Remcos RAT variant that injects into svchost.exe via Native API calls. Covers obfuscated payload…

privilege-escalationdynamic-analysis-sandboxingmemory-forensics+8
32 months ago
meowEye preview

meowEye

GitHubeslam3kl/meoweye

MeowEye is a real-time scanner for identifying multiple web vulnerabilities in live applications.

web-vulnerability-scannersdynamic-analysis-sandboxingvulnerability-analysis+3
41 year ago
CVE-2020-6514 preview

CVE-2020-6514

GitHubhasan-khalil/cve-2020-6514

Exploit for CVE-2020-6514 targeting WebRTC SCTP memory corruption in Android applications. Uses Frida to hook native functions and alter SCTP packets…

android-securitydynamic-analysis-sandboxingexploitation+4
26 years ago
resmack-fuzz-test preview

resmack-fuzz-test

GitLabd0c-s4vage/resmack-fuzz-test

This is an experimental project for [resmack](https://gitlab.com/d0c-s4vage/resmack) to figure out the best methods for instrumenting target…

dynamic-analysis-sandboxingdebuggersfuzzing+1
36 years ago
go-without-bounds-cve-2026-67822-stack-overflow-in-tenda-w6-s-wifissidset preview

go-without-bounds-cve-2026-67822-stack-overflow-in-tenda-w6-s-wifissidset

GitHubhunt-benito/go-without-bounds-cve-2026-67822-stack-overflow-in-tenda-w6-s-wifissidset

PoC for CVE-2026-67822 stack overflow in Tenda W6-S /goform/wifiSSIDset: DoS reproducer, QEMU MIPS shim, and conceptual RCE payload skeleton.

embedded-systems-securitydynamic-analysis-sandboxingiot-security+6
1 month ago
CVE-2025-5548 preview

CVE-2025-5548

GitHubfkshield/cve-2025-5548

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

static-analysisdynamic-analysis-sandboxingvulnerability-analysis+9
2 months ago
CVE-2026-53753-Crawl4AI-RCE preview

CVE-2026-53753-Crawl4AI-RCE

GitHubbiitts/cve-2026-53753-crawl4ai-rce

CVE-2026-53753 — Crawl4AI <0.8.7 unauthenticated RCE (AST sandbox escape via gi_frame.f_back). Lab + PoC, verified e2e.

static-analysisdynamic-analysis-sandboxingvulnerability-analysis+7
2 months ago
React2Shell preview

React2Shell

GitHubphanhoangkhang/react2shell

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.

static-analysisvulnerability-scannersdynamic-analysis-sandboxing+6
1 month ago
windows-malware-behavioral-analysis preview

windows-malware-behavioral-analysis

GitHub0x0allenace/windows-malware-behavioral-analysis

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…

ioc-managementpacket-sniffing-analysisdynamic-analysis-sandboxing+8
1 month ago
Securekit preview

Securekit

GitLabroxanne_ardary/securekit

Securekit is a protocol-agnostic security kernel that enforces zero-trust, sandboxed execution for AI tool use. It sits between any LLM or agent…

container-securitydynamic-analysis-sandboxingsecurity-virtualization+5
2 months ago
DexLoader preview

DexLoader

GitHubbend0us/dexloader

A demo Android project showcasing dynamic DEX loading using DexClassLoader, PathClassLoader, and in-memory execution. For educational purposes only.

android-securitydynamic-analysis-sandboxingmobile-security+3
21 year ago
hello-ReGrade-security preview

hello-ReGrade-security

GitHubcurtail-inc/hello-regrade-security

Find the vulnerability your tests were never written to catch. A ReGrade demo modeling CVE-2023-5968: catch a password-hash leak by comparing an app…

dynamic-analysis-sandboxingpassword-attacksvulnerability-analysis+6
1 month ago
HyperOS-Directory-Traversal-Analysis preview

HyperOS-Directory-Traversal-Analysis

GitHubkkaanozturk/hyperos-directory-traversal-analysis

Xiaomi HyperOS AVCodec Medya Framework'ündeki Use-After-Free (CVE-2025-21082) Zafiyetinin Derinlemesine Analizi, Rust Simülasyonu ve İnteraktif Web…

static-analysisdynamic-analysis-sandboxingmemory-forensics+8
12 months ago
sparkplugFuzzer preview

sparkplugFuzzer

GitHubbishopfox/sparkplugfuzzer

Fuzzer for the Sparkplug B IIoT protocol

dynamic-analysis-sandboxingiot-securityvulnerability-analysis+5
12 months ago
rootkit-signal-hunter preview

rootkit-signal-hunter

GitHubbcoles/rootkit-signal-hunter

Detect Linux rootkits which use signals to elevate process privileges.

defensive-toolsprivilege-escalationdynamic-analysis-sandboxing+3
310 months ago
CVE-2025-55182-Exploit-PoC-Scanner preview

CVE-2025-55182-Exploit-PoC-Scanner

GitHubzemarkhos/cve-2025-55182-exploit-poc-scanner

Exploit tool for CVE-2025-55182 and CVE-2025-66478 in React Server Components and Next.js, featuring RCE gadgets, file read/write, OOB callbacks, and…

vulnerability-scannersdynamic-analysis-sandboxingexploitation+7
29 months ago
CVE-2025-55182-Scanner preview

CVE-2025-55182-Scanner

GitHubtrixsec/cve-2025-55182-scanner

A hybrid security scanner for detecting CVE-2025-55182 in Next.js and Waku applications. Features combined static code analysis and safe dynamic…

static-analysisvulnerability-scannersdynamic-analysis-sandboxing+5
39 months ago
Previous1…282930…35Next