Skip to content
KitploitKITPLOIT
ツールブログ
提出
ツールブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
カテゴリ

ペイロード開発

カスタムペイロード作成、難読化、AV回避、配送メカニズムツール。

最新関連度人気最近更新
3296 件
custom-oscp-tooling preview

custom-oscp-tooling

GitLabwattocyber/custom-oscp-tooling

OSCP向けツールキット。読み取り専用のネットワーク・SMB・AD・DNS・Web・データベース列挙、権限昇格(privesc)スキャン、ハッシュ識別、ペイロード/資格情報コマンド生成に対応。

privilege-escalationreconnaissancepassword-attacks+9
2日前
CVE-2026-28134 preview

CVE-2026-28134

GitHubrandomrobbiebf/cve-2026-28134

JetEngine <= 3.7.2 - 認証済み(Contributor+)リモートコード実行

vulnerability-analysisexploitationweb-application-exploitation+1
5ヶ月前
halo-cve-2026-67919 preview

halo-cve-2026-67919

GitHubk0nnect/halo-cve-2026-67919

Halo CMS プラグインの1リクエストRCE(単一のURLから)、PoC + エクスプロイトチェーン

exploitationweb-application-exploitationweb-security+3
12日前
CVE-2026-43499_HW-CLT-AL01 preview

CVE-2026-43499_HW-CLT-AL01

GitHubzychen027/cve-2026-43499_hw-clt-al01

boot.imgからデバイスごとのカーネルオフセットを生成し、CVE-2026-43499 Android arm64 ローカル権限昇格を悪用するためのプリロードライブラリをコンパイルします。

android-securityprivilege-escalationexploitation+4
2日前
slot2 preview

slot2

GitHubcenobyte-vincit/slot2

UEFI GRUB2 ブートキット。NVRAM ブートオプションを介してプリブートのネットワークインプラントをインストールし、UKI をチェーンロードし、dracut ペイロードを実行し、ストックカーネルを kexec します。

persistence-mechanismsdata-exfiltrationpost-exploitation+5
3日前
dyen preview

dyen

GitHubcenobyte-vincit/dyen

macOS標準のPython向けインメモリMach-O dylibローダー。dlopenやディスクへの書き込みを行わずにペイロードを復号・マッピング・実行し、オプションで暗号化したカバーファイルへの埋め込みも可能。

payload-generationids-ips-evasionpost-exploitation+4
3日前
CVE-2020-14882-WebLogic-Analysis preview

CVE-2020-14882-WebLogic-Analysis

GitHubvelessecurity/cve-2020-14882-weblogic-analysis

Oracle WebLogic Serverの脆弱性チェーンに関する技術的分析と、クリーンなJava Thread Echo PoC。

vulnerability-analysisexploitationweb-application-exploitation+1
3日前
CVE-2026-14669 preview

CVE-2026-14669

GitHubhackspeak/cve-2026-14669

CVE-2026-14669 の概念実証エクスプロイト。PostgreSQL の to_char() タイムゾーン省略形におけるヒープバッファオーバーフローであり、情報漏えいと ROP チェーンを通じて RCE を可能にします。Docker ラボと自動化された PoC が含まれます。

vulnerability-analysisexploitationpenetration-testing+4
13日前
ghostlock-cve-2026-43499 preview

ghostlock-cve-2026-43499

GitHubgitchw/ghostlock-cve-2026-43499

CVE-2026-43499 (GhostLock) — Huawei Watch 4 Pro(カーネル 5.4.210)を標的としたLinuxカーネル futex PI rt_mutex UAF ARM32権限昇格研究

embedded-systems-securityprivilege-escalationiot-security+5
3日前
hp-slate7-root-kit preview

hp-slate7-root-kit

GitHubvalentineus/hp-slate7-root-kit

CVE-2015-1805 を使用した HP Slate 7 2800 Android 4.1.1 root化キット。

android-securityprivilege-escalationpersistence-mechanisms+6
13日前
CVE-2026-33017-FireFlow preview

CVE-2026-33017-FireFlow

GitHubl4st98/cve-2026-33017-fireflow

Langflow CVE-2026-33017 の概念実証 RCEです。悪意のあるカスタムコンポーネントを使用して build_public_tmp 経由で OS コマンドを実行し、ジョブイベントから出力を取得します。

exploitationweb-application-exploitationctf+4
4日前
cve-2026-41042 preview

cve-2026-41042

GitHublulztigre/cve-2026-41042

Apache Gravitino < 1.2.1 の未認証RCEを H2 JDBC INIT 経由で悪用します。SQL/Javaペイロードをホストし、コマンドを実行し、HTTPビーコンを介して出力を外部へ窃取します。

vulnerability-analysisexploitationweb-application-exploitation+2
4日前
CVE-2026-20079 preview

CVE-2026-20079

GitHubcyberauth/cve-2026-20079

CVE-2026-20079の認証バイパスからルートRCEへのチェーンを、fingerprint、check、proof、およびインタラクティブエクスプロイトの各モードでCisco Secure FMCに対して実装します。

vulnerability-analysisexploitationweb-application-exploitation+3
4日前
Wildfire preview

Wildfire

GitHubdefineid/wildfire

CVE-2026-39154 · CometChat JS SDKにおける格納型XSS

vulnerability-analysisexploitationweb-application-exploitation+4
4日前
CVE-2026-13714 preview

CVE-2026-13714

GitHubkatransefa/cve-2026-13714

Realtyna WPL < 5.3.0 向けの認証なし RCE エクスプロイト。ハードコードされた API キーを介して PHP ウェブシェルをアップロードし、任意のシステムコマンドを実行します。

exploitationweb-application-exploitationpost-exploitation+2
4日前
CVE-2026-17544 preview

CVE-2026-17544

GitHubr2qa/cve-2026-17544

CVE-2026-17544 用エクスプロイト: PHP bcmath の OOB 書き込みをメモリのみの RCE に変換し、ランタイムのオフセットフリーレゾルバーで disable_functions と open_basedir をバイパスします。

vulnerability-analysisexploitationweb-application-exploitation+4
5日前
POC-GeoLeak-CVE-2026-52715 preview

POC-GeoLeak-CVE-2026-52715

GitHub686f6c61/poc-geoleak-cve-2026-52715

CVE-2026-52715(GeoLeak)の実用的なPoC:GEO my WordPress <= 4.5.5 における swlatlng/nelatlng 経由の未認証SQLi。Dockerラボ + time-based/boolean-basedエクスプロイト +…

vulnerability-analysisexploitationweb-application-exploitation+4
7日前
MouseServer-1.7.8.5-RCE preview

MouseServer-1.7.8.5-RCE

GitHubmermehr/mouseserver-1.7.8.5-rce

CVE-2022-3218を対象としたPoCエクスプロイト。WiFi Mouse Server 1.7.8.5を標的とし、キーストロークインジェクションとインメモリPowerShellペイロード配信によりRCEを達成します。堅牢化されたラボ環境向けです。

vulnerability-analysisexploitationpenetration-testing+2
6日前
前へ12…100次へ