Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
145 results
CVE-2026-39987-Marimo-Preauth-RCE preview

CVE-2026-39987-Marimo-Preauth-RCE

GitHublaarana12/cve-2026-39987-marimo-preauth-rce

Reproduction and root cause analysis of CVE-2026-39987 Marimo pre-auth WebSocket RCE in a local Docker lab.

container-securityeducationexploitation+5
1
5 days ago
hardstop preview

hardstop

GitHubjoseluispino/hardstop

Reference implementation for "Hard Stop: Kernel-Level Preemption and Containment for Rogue Agentic Execution". Out-of-band Epistemic Andon Cord,…

ai-securityanomaly-detectioncloud-security+7
26 days ago
ai-kubernetes-helm-chart-security preview

ai-kubernetes-helm-chart-security

GitHubsorami-consulting-au/ai-kubernetes-helm-chart-security

Evidence and data for the Sorami technical report on security defaults of 15 AI serving, vector database and MCP Helm charts on Kubernetes.

ai-securitycloud-securityconfiguration-auditing+5
18 days ago
cnspec preview

cnspec

GitHubmondoohq/cnspec

An open source, cloud-native security to protect everything from build to runtime

cloud-infrastructure-securitycloud-securityconfiguration-auditing+6
4412 days ago
-INE_Shivam_Gupta_23104003 preview

-INE_Shivam_Gupta_23104003

GitHubshivamg2004/-ine_shivam_gupta_23104003

CVE-2021-43798 Grafana Unauthenticated Path Traversal - Security Lab | Shivam Gupta | 23104003

container-securityeducationexploitation+5
13 days ago
bombini preview

bombini

GitHubbombinisecurity/bombini

eBPF Security Monitoring and Sandboxing Agent Based on Aya

container-securitydefensive-toolsintrusion-detection
725 days ago
portclue preview

portclue

GitHubpbxqdown/portclue

Explain why a Linux TCP port may or may not be reachable

configuration-auditingcontainer-securitydefensive-tools+3
35 days ago
agent preview

agent

GitHubbomfather/agent

eBPF-based Linux agent that enforces executable-level access policies in kernel space, sandboxing processes and restricting file, network, and GPU…

cloud-securityconfiguration-auditingcontainer-security+2
2813 days ago
log4shell-exploitation-detection preview

log4shell-exploitation-detection

GitHubkalidoulabghaly/log4shell-exploitation-detection

Hands-on project demonstrating Log4Shell exploitation, detection engineering with Splunk and auditd, and validated remediation in a containerized…

container-securityeducationexploitation+5
26 days ago
My-Exploits preview

My-Exploits

GitHubm4xsec/my-exploits

Metasploit modules, Python PoCs and throwaway Docker labs for four platform CVEs: Keycloak (CVE-2026-18963), Apache NiFi (CVE-2026-39816), HashiCorp…

cloud-securitycontainer-securityeducation+7
11 month ago
CVE-2026-31431-Copy-Fail-Container-Escape preview

CVE-2026-31431-Copy-Fail-Container-Escape

GitHubhans362/cve-2026-31431-copy-fail-container-escape

Container escape on any docker container with healthcheck enabled via CVE-2026-31431

cloud-securitycontainer-escapecontainer-security+3
5 months ago
copy-fail-CVE-2026-31431 preview

copy-fail-CVE-2026-31431

GitHubrio128128/copy-fail-cve-2026-31431

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

binary-exploitationcloud-securitycontainer-security+6
5 months ago
CVE-2026-31431-Copy-Fail---Vulnerability-Detection-Script preview

CVE-2026-31431-Copy-Fail---Vulnerability-Detection-Script

GitHubliamromanis101/cve-2026-31431-copy-fail---vulnerability-detection-script

Detection script for CVE-2026-31431 (Copy Fail) that checks kernel version, patch presence, kernel configs, AF_ALG socket availability, setuid…

cloud-infrastructure-securityconfiguration-auditingcontainer-security+5
255 months ago
pack2theroot-lab preview

pack2theroot-lab

GitHubdinosn/pack2theroot-lab

CTF-style Docker lab for CVE-2026-41651 (Pack2TheRoot): PackageKit permissive-polkit local privilege escalation

container-securityctfdefensive-tools+7
85 months ago
harden-docker-seccomp preview

harden-docker-seccomp

GitHubdevstuff/harden-docker-seccomp

Docker mitigation for CVE-2026-31431 ('Copy Fail'). Includes Kubernetes templates as well.

cloud-infrastructure-securityconfiguration-auditingcontainer-security+3
25 months ago
copy-fail-blocker preview

copy-fail-blocker

GitHubcozystack/copy-fail-blocker

BPF-LSM mitigation for CVE-2026-31431 (Copy Fail) — denies AF_ALG socket creation cluster-wide

cloud-securitycontainer-securitydefensive-tools+2
344 months ago
cve-2026-31431 preview

cve-2026-31431

GitHubseanrickerd/cve-2026-31431

Exploit for Linux kernel CVE-2026-31431 causing page cache corruption via authencesn AEAD manipulation, targeting privilege escalation in containers…

binary-exploitationcloud-infrastructure-securitycontainer-security+4
125 months ago
telnet-inetutils-auth-bypass-CVE-2026-24061 preview

telnet-inetutils-auth-bypass-CVE-2026-24061

GitHubjakeswiz/telnet-inetutils-auth-bypass-cve-2026-24061

This is a simple PoC that allows you to highlight the severity of the ongoing and actively exploited Telnet bug that is going on right now. Why…

container-securityeducationexploitation+3
18 months ago
Previous12…9Next