Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
829 results
cve-2026-31431-algif-aead-remediator preview

cve-2026-31431-algif-aead-remediator

GitHubboliu83/cve-2026-31431-algif-aead-remediator

Kubernetes DaemonSet to detect and remediate CVE-2026-31431 (GHSA-2274-3hgr-wxv6) — algif_aead LPE via modprobe blacklist

cloud-infrastructure-securityconfiguration-auditingcontainer-security+3
4 months ago
CVE-2014-3120 preview

CVE-2014-3120

GitHubdungsocool/cve-2014-3120

Step-by-step lab guide demonstrating CVE-2014-3120 exploitation against Elasticsearch 1.1.1, covering vulnerability analysis, RCE via MVEL scripting,…

container-securityeducationexploitation+3
3 months ago
CVE-2021-41773S preview

CVE-2021-41773S

GitHubmightysai1997/cve-2021-41773s

Docker-based vulnerable lab for CVE-2021-41773 Apache path traversal, providing PoC configurations for file read and remote code execution in a…

container-securityeducationexploitation+3
14 years ago
ingress-nginx-0.21-1.19.5 preview

ingress-nginx-0.21-1.19.5

GitHubflyniu666/ingress-nginx-0.21-1.19.5

based on nginx 1.19.5 to fix for CVE-2018-16843, CVE-2018-16844, CVE-2019-9511, CVE-2019-9513, and CVE-2019-9516

cloud-securitycontainer-securitydevsecops+3
15 years ago
nginx-cve-2026-42945-poc preview

nginx-cve-2026-42945-poc

GitHubforxiucn/nginx-cve-2026-42945-poc

Proof-of-concept exploit for CVE-2026-42945, a critical heap overflow in NGINX rewrite module enabling unauthenticated remote code execution via…

binary-exploitationcontainer-securitydynamic-analysis-sandboxing+5
14 months ago
CVE-2026-31431-detection-defense preview

CVE-2026-31431-detection-defense

GitHubdetect-defenselab/cve-2026-31431-detection-defense

Research and detection guidance for CVE-2026-31431, an io_uring-based bypass of syscall monitoring. Provides detection rules for Tetragon, Falco, and…

container-securitydefensive-toolsexploitation+2
4 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubeximiait/cve-2026-31431

Ansible playbooks to check and mitigate CVE-2026-31431 on Linux hosts, with scripts for local, remote, and containerized environments, including…

cloud-infrastructure-securityconfiguration-auditingcontainer-security+2
4 months ago
cve-2026-31431 preview

cve-2026-31431

GitHubashok523/cve-2026-31431

Defensive IR playbook and detection package for CVE-2026-31431 (Copy Fail) Linux kernel LPE, including Sigma, auditd, Falco, Wazuh, YARA, eBPF, and…

container-securityincident-responseintrusion-detection+3
4 months ago
nginx-cve-fix preview

nginx-cve-fix

GitHubbarappteam/nginx-cve-fix

Source-built nginx 1.25.5 container with backported CVE-2026-42945 fix, OpenSSL bump, full provenance chain, and VEX attestation.

configuration-auditingcontainer-securitydevsecops+3
4 months ago
FRAGNESIA-Charan-cve-2026-46300 preview

FRAGNESIA-Charan-cve-2026-46300

GitHubazdevops143/fragnesia-charan-cve-2026-46300

Hardened container staging framework with seccomp syscall whitelisting and eBPF telemetry to detect and block container escape and kernel ULP…

cloud-securitycontainer-securityeducation+3
3 months ago
CVE-2026-39987-Lab preview

CVE-2026-39987-Lab

GitHubrootdirective-sec/cve-2026-39987-lab

Local Docker lab reproducing CVE-2026-39987, a pre-auth RCE in marimo's terminal WebSocket. Compares vulnerable and patched versions with least-harm…

container-securityeducationexploitation+3
14 months ago
CVE-2026-31431 preview

CVE-2026-31431

GitHubslauger/cve-2026-31431

Analysis and mitigation guide for CVE-2026-31431, a Linux kernel local privilege escalation in the crypto algif_aead subsystem, with impact…

cloud-securitycontainer-securityexploitation+2
14 months ago
ehir-vuln-enterprise-login preview

ehir-vuln-enterprise-login

GitHublimxuan/ehir-vuln-enterprise-login

Deliberately vulnerable web application portal with a containerized backend, designed for practicing exploitation of CVE-2021-44228 and container…

container-securityeducationlabs-practice+3
3 months ago
d8-copy-fail-mitigation preview

d8-copy-fail-mitigation

GitHubdeckhouse/d8-copy-fail-mitigation

Kubernetes-native CVE-2026-31431 mitigation with automated kernel module blocking, runtime Falco detection rules, and bashible-based node…

cloud-securityconfiguration-auditingcontainer-security+3
4 months ago
CVE-2026-3288-lab preview

CVE-2026-3288-lab

GitHubbvabhishek/cve-2026-3288-lab

Docker-based vulnerable lab for CVE-2026-3288 NGINX Ingress configuration injection, with exploit scripts, detection monitoring, and remediation…

cloud-infrastructure-securityconfiguration-auditingcontainer-security+6
15 months ago
CTF-Web-Exploitation preview

CTF-Web-Exploitation

GitHubarnavps/ctf-web-exploitation

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

container-securityctfeducation+8
15 months ago
dasel-hardened-container preview

dasel-hardened-container

GitHubnedlir/dasel-hardened-container

Hardened dasel v3.3.1 package and image built via Melange and apko. Patching CVE-2026-33320.

configuration-auditingcontainer-securitydevsecops+4
3 months ago
dasel-melange-apko preview

dasel-melange-apko

GitHubrotavori/dasel-melange-apko

dasel v3.3.1 packaged with Melange and shipped as a minimal apko image, patched for CVE-2026-33320

container-securitydevsecopsgeneral-purpose-utilities+3
3 months ago
Previous1…151617…47Next