Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories

Tools

AllAndroid SecurityAuthentication & AuthorizationCloud Infrastructure SecurityDefensive ToolsDisk ForensicsEmbedded Systems SecurityGeneral Purpose UtilitiesIndicator of Compromise (IOC) ManagementOSINT (Open Source Intelligence)Packet Sniffing & AnalysisPassword CrackingPenetration Testing FrameworksPhishing ToolsPrivilege EscalationReconnaissanceStatic AnalysisVulnerability ScannersWeb Vulnerability ScannersWi-Fi AuditingBluetooth SecurityContainer SecurityDynamic Analysis (Sandboxing)Encryption/Decryption ToolsExploit FrameworksIdentity ManagementiOS SecurityIoT SecurityMemory ForensicsNetwork MappingOSINT for Social EngineeringPassword AttacksPayload GenerationPersistence MechanismsPort ScanningStatic Code Analysis (SAST)Threat Feeds & AggregatorsVulnerability AnalysisWeb Proxies & InterceptionCode AnalysisDNS & Subdomain EnumerationDynamic Code Analysis (DAST)ExploitationHash AnalysisIDS/IPS EvasionImpersonation ToolsLateral MovementMobile App PentestingNetwork ForensicsReverse EngineeringRFID/NFC ToolsSCADA/ICS SecurityScripting & AutomationServerless SecurityShellcodeWeb Application ExploitationAPI Security TestingConfiguration AuditingData ExfiltrationDebuggersForensicsInformation GatheringMobile ForensicsNetwork Access ControlPost-ExploitationSecurity VirtualizationPhishingWAF BypassWeb SecurityFuzzingNetwork SecuritySteganographyWireless SecurityData RecoveryMalware AnalysisDigital ForensicsHardware HackingCryptographyCTFPenetration TestingCloud SecurityDevSecOpsMobile SecurityPrivacyCommand and ControlSocial EngineeringHardware SecurityUtilities & FrameworksHardware & IoT SecuritySecret DetectionBinary AnalysisThreat IntelligenceIdentity & Access Management (IAM)Supply Chain SecurityAuthenticationMachine LearningIntrusion DetectionPapers & ResearchMisconfigurationSubdomain EnumerationEmail HarvestingLearning & EducationAI-Assisted ReversingDNS FuzzingRed TeamingIncident ResponseCrawlerCurated ResourcesRemote Access ToolShellcode GenerationPayload DevelopmentRemote Access TrojanAPI SecurityAnti-BotFingerprint SpoofingCAPTCHA BypassEmail SecurityDNS AnalysisChaos EngineeringLearning Paths & CoursesContainer EscapeAI SecurityDatabase SecurityFirmware AnalysisAnomaly DetectionLog AnalysisAdversarial AttackBinary ExploitationLabs & Practice
NewestRelevanceMost popularRecently updated
181 results
kube-alien preview

kube-alien

GitHubnixwizard/kube-alien

Automated Kubernetes cluster penetration testing tool that exploits misconfigurations in API, Kubelet, etcd, and Dashboard to achieve node takeover…

cloud-securitycontainer-securityexploitation+2
25
5 years ago
whalescan preview

whalescan

GitHubsaira-h/whalescan

Vulnerability scanner for Windows containers

cloud-securitycontainer-securitymisconfiguration+1
76 years ago
scan-cve-2018-8115 preview

scan-cve-2018-8115

GitHubaquasecurity/scan-cve-2018-8115

CLI tool that verifies Docker images for CVE-2018-8115 by checking layers for malicious files, helping ensure safe pulls from Docker Hub.

container-securitymisconfigurationstatic-analysis+2
78 years ago
CVE-2025-9074 preview

CVE-2025-9074

GitHubzenzue/cve-2025-9074

Proof-of-concept exploit for CVE-2025-9074 demonstrating container-to-host file write via exposed Docker Engine API on Windows. For authorized…

cloud-securitycontainer-escapecontainer-security+6
101 year ago
CVE-2025-9074 preview

CVE-2025-9074

GitHubj3r1ch0123/cve-2025-9074

New vulnerability found in Docker. Credit for finding the vulnerability goes to Felix Boulet

container-securityeducationexploitation+3
81 year ago
cve-2024-3094 preview

cve-2024-3094

GitHubfelipecosta09/cve-2024-3094

Step-by-step tutorial for detecting CVE-2024-3094 (XZ Backdoor) in container images using Trend Micro Vision One TMAS CLI, with automated scanning…

cloud-securitycontainer-securitydevsecops+3
42 years ago
cve-2026-59891-control-lab preview

cve-2026-59891-control-lab

GitHubgyubin02/cve-2026-59891-control-lab

Isolated regression and security-control lab for CVE-2026-59891 in @sigstore/oci

cloud-securitycontainer-securityeducation+4
1 month ago
trivy preview

trivy

GitLabniclas-zone/ci/trivy

GitLab CI component for Trivy scanning

cloud-securitycontainer-securitydevsecops+4
1 month ago
CVE-2024-31989 preview

CVE-2024-31989

GitHubvt0x78/cve-2024-31989

Exploit for CVE-2024-31989.

cloud-securitycontainer-securityexploitation+3
32 years ago
k8s-cve-2020-8554-mitigations preview

k8s-cve-2020-8554-mitigations

GitHubtwistlock/k8s-cve-2020-8554-mitigations

Prisma Cloud Compute Admission rules to mitigate Kubernetes CVE-2020-8554

cloud-securitycontainer-securityids-ips-evasion+3
15 years ago
ingress-nginx-0.21-1.19.5 preview

ingress-nginx-0.21-1.19.5

GitHubflyniu666/ingress-nginx-0.21-1.19.5

based on nginx 1.19.5 to fix for CVE-2018-16843, CVE-2018-16844, CVE-2019-9511, CVE-2019-9513, and CVE-2019-9516

cloud-securitycontainer-securitydevsecops+3
15 years ago
IngressNightmare-RCE-POC preview

IngressNightmare-RCE-POC

GitHub1w4y/ingressnightmare-rce-poc

PoC for CVE-2025-1974: Critical RCE in Ingress-NGINX (<v1.12.1) via unsafe config injection. Exploitable from the pod network without credentials,…

cloud-securitycontainer-securityeducation+5
11 year ago
CVE-2025-1974 preview

CVE-2025-1974

GitHubzsxen/cve-2025-1974

Windows 11-first educational lab for studying CVE-2025-1974 in ingress-nginx. Provides safe attack emulation and defense validation with local…

cloud-securitycontainer-securitydefensive-tools+7
5 months ago
PoC-Apache-CVE-2021-41773-Infrastructure-LAB preview

PoC-Apache-CVE-2021-41773-Infrastructure-LAB

GitHubisabbii/poc-apache-cve-2021-41773-infrastructure-lab

Docker-based lab for Apache CVE-2021-41773 path traversal and RCE exploitation with Python exploit script, demonstrating vulnerability analysis and…

container-securityeducationexploitation+4
6 months ago
payara__Payara_CVE-2022-37422_5-2022-2 preview

payara__Payara_CVE-2022-37422_5-2022-2

GitHubshoucheng3/payara__payara_cve-2022-37422_5-2022-2

Jakarta EE and MicroProfile application server runtime for development and containerized deployments, supporting cloud-native middleware with…

cloud-securitycontainer-securitydevsecops+3
1 year ago
CVE-2025-1974 preview

CVE-2025-1974

GitHub0xbingo/cve-2025-1974

A minimal test tool to help detect annotation injection vulnerabilities in Kubernetes NGINX Ingress controllers. This script sends a crafted…

cloud-securitycontainer-securityeducation+4
1 year ago
CVE-2024-41110-SCAN preview

CVE-2024-41110-SCAN

GitHubpauloparopp/cve-2024-41110-scan

Python-based scanner that checks Docker hosts for CVE-2024-41110 by detecting vulnerable Docker versions and AuthZ plugin usage.

cloud-securitycontainer-securityexploitation+3
2 years ago
CVE-2024-3094 preview
Archived

CVE-2024-3094

GitHubteyhouse/cve-2024-3094

K8S and Docker Vulnerability Check for CVE-2024-3094

cloud-securitycontainer-securitydevsecops+3
112 years ago
Previous1234…11Next