Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Security Virtualization | Kitploit
Categories

Security Virtualization

Tools for creating and managing isolated environments (VMs, containers) for security testing and malware analysis.

Kitploit recommended

Top tools

10 selected
flare-vm preview#1

flare-vm

GitHubmandiant/flare-vm
8.9k3 months ago
distro preview#2

distro

GitHubremnux/distro
1171 month ago
commando-vm preview#3

commando-vm

GitHubmandiant/commando-vm
7.8k11 months ago
securityonion preview#4

securityonion

GitHubsecurity-onion-solutions/securityonion
4.9k18 days ago
cuckoo3 preview#6

cuckoo3

GitHubcert-ee/cuckoo3
8179 months ago
metasploitable3 preview#7

metasploitable3

GitHubrapid7/metasploitable3
5.7k1 year ago
vulhub preview#8

vulhub

GitHubvulhub/vulhub
21.1k12 days ago
GOAD preview#9

GOAD

GitHuborange-cyberdefense/goad
8.1k6 months ago
DetectionLab preview#10

DetectionLab

GitHubclong/detectionlab
5.0k3 years ago
qubes-core-admin preview#11

qubes-core-admin

GitHubqubesos/qubes-core-admin
1473 days ago
NewestRelevanceMost popularRecently updated
215 results
AgentCyTE preview

AgentCyTE

GitHubanantaakotal/agentcyte

Generates reproducible CORE network topologies from XML scenario files for cybersecurity training and experimentation. Provides Web GUI and CLI for…

vulnerability-analysissecurity-virtualizationnetwork-security+3
39 months ago
webauthn_tpm_portable preview

webauthn_tpm_portable

GitHubmimi89999/webauthn_tpm_portable

Portable, hardware-backed WebAuthn credentials using TPM 2.0. Deterministic parent key derived from a master seed enables cross-device credential…

encryption-decryption-toolssecurity-virtualizationcryptography+2
46 months ago
CVE-2026-64531 preview

CVE-2026-64531

GitHub0xblackash/cve-2026-64531

Reference analysis of a Linux kernel Open vSwitch memory-corruption vulnerability, covering root cause, impact, detection commands, and mitigation…

cloud-infrastructure-securityvulnerability-analysissecurity-virtualization+2
21 month ago
CVE-2026-64561 preview

CVE-2026-64561

GitHubhackspeak/cve-2026-64561

Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing

vulnerability-analysisexploitationsecurity-virtualization+2
11 month ago
copy_fail preview

copy_fail

GitHubspensercai/copy_fail

Rust exploit PoC for Linux kernel LPE CVE-2026-31431 (AF_ALG page-cache write) plus eBPF runtime defense blocking AF_ALG socket creation via LSM or…

defensive-toolsprivilege-escalationexploit-frameworks+4
35 months ago
CVE-2026-18322 preview

CVE-2026-18322

GitHubi3it/cve-2026-18322

Root-cause analysis, passive version checker, and lab PoC for CVE-2026-18322, an unauthenticated privilege escalation in the Smart Popup by Supsystic…

privilege-escalationvulnerability-scannersvulnerability-analysis+7
1 month ago
aarif450.github.io preview

aarif450.github.io

GitHubaarif450/aarif450.github.io

Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

cloud-infrastructure-securityprivilege-escalationvulnerability-analysis+3
1 month ago
aegisagent preview

aegisagent

GitHubhuzjie/aegisagent

Runtime security gateway for AI agents: cryptographically attests tool calls, enforces policies, sandboxes execution, and logs tamper-evident audit…

authentication-authorizationdefensive-toolssecurity-virtualization+4
1 month ago
CVE-2026-53365 preview

CVE-2026-53365

GitHubhorkimhab/cve-2026-53365

CVE-2026-53365

vulnerability-analysisexploitationsecurity-virtualization+4
1 month ago
Securekit preview

Securekit

GitLabroxanne_ardary/securekit

Securekit is a protocol-agnostic security kernel that enforces zero-trust, sandboxed execution for AI tool use. It sits between any LLM or agent…

container-securitydynamic-analysis-sandboxingsecurity-virtualization+5
2 months ago
januscape preview

januscape

GitHubsuominen/januscape

Tracking Januscape (CVE-2026-53359), the KVM/x86 guest-to-host escape

vulnerability-analysissecurity-virtualizationthreat-intelligence
1 month ago
itscape preview

itscape

GitHubsuominen/itscape

Tracking ITScape (CVE-2026-46316), the KVM/arm64 guest-to-host escape

vulnerability-analysissecurity-virtualizationthreat-intelligence+1
1 month ago
cve-2026-22732-poc preview

cve-2026-22732-poc

GitHubdylan-chainguard/cve-2026-22732-poc

Proof-of-concept demonstrating CVE-2026-22732, a Spring Security flaw where setIntHeader("Content-Length") drops all security headers, with…

defensive-toolsvulnerability-analysisexploitation+3
19 days ago
block-copyfail preview

block-copyfail

GitHubmrunalp/block-copyfail

BPF LSM blocker for CVE-2026-31431 (Copy Fail) - zero-reboot remediation for OpenShift 4

defensive-toolscontainer-securityvulnerability-analysis+2
14 months ago
CVE-2026-21636 preview

CVE-2026-21636

GitHubpauldechassey/cve-2026-21636

Proof-of-concept demonstrating a Node.js permission model bypass (CVE-2026-21636) that allows network access via undici/fetch to local services,…

container-securityvulnerability-analysisexploitation+3
5 months ago
Copy-Fail preview

Copy-Fail

GitHubphalanx-ccs/copy-fail

Passive diagnostic tool that checks if a Linux system is vulnerable to CVE-2026-31431 by testing AF_ALG socket reachability, providing mitigation…

vulnerability-scannersvulnerability-analysisexploitation+2
14 months ago
cve-2026-31431-mitigation preview

cve-2026-31431-mitigation

GitHublinux-zs/cve-2026-31431-mitigation

Seccomp-based mitigation for CVE-2026-31431, a Linux kernel LPE. Blocks AF_ALG socket via PAM module and standalone wrapper, with auto-detection of…

defensive-toolsvulnerability-analysisconfiguration-auditing+1
5 months ago
agentbox preview

agentbox

GitHubsiyad01/agentbox

Open-source sandboxed runtime for AI agents — gVisor/Docker isolation, credential vault, immutable audit log. Built after CVE-2026-25253.

cloud-infrastructure-securitycontainer-securityencryption-decryption-tools+3
14 months ago
Previous1…9101112Next