Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Identity & Access Management (IAM) | Kitploit
Categories

Identity & Access Management (IAM)

Tools for managing user identities, authentication, authorization, and access controls within systems and networks.

NewestRelevanceMost popularRecently updated
877 results
apache__incubator-dubbo_CVE-2021-30181_2-6-8 preview

apache__incubator-dubbo_CVE-2021-30181_2-6-8

GitHubshoucheng3/apache__incubator-dubbo_cve-2021-30181_2-6-8
authentication-authorizationconfiguration-auditingweb-security+4
9 months ago
CVE-2025-29927 preview

CVE-2025-29927

GitHubhirainsingadia/cve-2025-29927

Next js middlewareauth Bypass

authentication-authorizationvulnerability-analysisexploitation+2
1 year ago
CVE-2025-29810-check preview

CVE-2025-29810-check

GitHubaleongx/cve-2025-29810-check

Para verificar si tu entorno podría ser vulnerable al CVE-2025-29810, necesitamos hacer algunas comprobaciones básicas, como: Versión del sistema…

vulnerability-scannersvulnerability-analysisconfiguration-auditing+2
1 year ago
kubernetes-client__java_CVE-2020-8570_client-java-parent-9_0_2_fixed preview

kubernetes-client__java_CVE-2020-8570_client-java-parent-9_0_2_fixed

GitHubshoucheng3/kubernetes-client__java_cve-2020-8570_client-java-parent-9_0_2_fixed
authentication-authorizationcloud-infrastructure-securitygeneral-purpose-utilities+3
9 months ago
CVE-2026-8181 preview

CVE-2026-8181

GitHub0xterror/cve-2026-8181

Exploit PoC for WordPress Burst Statistics authentication bypass allowing unauthenticated admin impersonation via crafted Authorization header.

authentication-authorizationprivilege-escalationvulnerability-analysis+4
1 day ago
lsPass preview

lsPass

GitLableestripp/lspass

Local-first encrypted password manager for logins, notes, and API keys, using a SQLite vault sealed with Argon2id and XChaCha20-Poly1305; no cloud or…

encryption-decryption-toolscryptographyprivacy+1
1 day ago
cve-2026-41940-PoC preview

cve-2026-41940-PoC

GitHublanicer/cve-2026-41940-poc

Exploits cPanel/WHM CVE-2026-41940 authentication bypass via CRLF session injection for unauthenticated root-level WHM access, then lists accounts,…

authentication-authorizationprivilege-escalationvulnerability-scanners+5
291 day ago
CVE-2026-61241 preview

CVE-2026-61241

GitHubgodliveanton/cve-2026-61241

Oracle OID LDAP Server Privileges Management Exploit

privilege-escalationexploitationnetwork-security+3
1 day ago
ksmbrace preview

ksmbrace

GitHubturtlearm/ksmbrace

ksmbd CVEs: CVE-2026-31717, CVE-2026-68083

authentication-authorizationdefensive-toolsvulnerability-analysis+3
52 days ago
BloodBash preview

BloodBash

GitHubsquidsec/bloodbash

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

privilege-escalationvulnerability-analysislateral-movement+6
4061 day ago
CVE-2024-4040-CrushFTP-server preview

CVE-2024-4040-CrushFTP-server

GitHubgraysignal/cve-2024-4040-crushftp-server

Exploit for CVE-2024-4040 affecting CrushFTP server in all versions before 10.7.1 and 11.1.0 on all platforms

authentication-authorizationvulnerability-analysisexploitation+3
2 years ago
CVE-2026-44848-PoC preview

CVE-2026-44848-PoC

GitHubboreas37/cve-2026-44848-poc

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

authentication-authorizationcontainer-securityvulnerability-analysis+3
2 days ago
CVE-2026-71518 preview

CVE-2026-71518

GitHubilhomjonr/cve-2026-71518

Advisory and PoC for an unauthenticated authorization bypass in Typemill media downloads, using path-equivalent URL variants to access…

authentication-authorizationvulnerability-analysisexploitation+3
13 days ago
CVE-2023-22515 preview

CVE-2023-22515

GitHubs1incere/cve-2023-22515

Confluence Unauthorized Administrator User Addition Exploitation Script

authentication-authorizationvulnerability-analysisexploitation+3
254 months ago
CVE-2026-72585-PoC preview

CVE-2026-72585-PoC

GitHubnel-droid/cve-2026-72585-poc

PoC: Grafana Editor role deletes protected contact points (CVE-2026-72585, Medium 6.5)

authentication-authorizationvulnerability-analysisexploitation+2
4 days ago
CVE-2026-71206-PoC preview

CVE-2026-71206-PoC

GitHubnel-droid/cve-2026-71206-poc

PoC: Shiori JWT CheckToken never re-validates account state (CVE-2026-71206, High 8.2)

authentication-authorizationvulnerability-analysisexploitation+3
4 days ago
CVE-2026-71204-PoC preview

CVE-2026-71204-PoC

GitHubnel-droid/cve-2026-71204-poc

PoC: changedetection.io settings blind-merge mass assignment (CVE-2026-71204, Medium 6.3)

authentication-authorizationvulnerability-analysisexploitation+2
4 days ago
probo preview

probo

GitHubgetprobo/probo

Open source solutions for SOC2, GDPR, and ISO27001

defensive-toolscloud-securitydevsecops+3
1.3k3 days ago
Previous1…46474849Next