Skip to content
KitploitKITPLOIT
ツールブログ
提出
ツールブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
awesome-cybersec — セキュリティに関する素晴らしいプラットフォーム、ブログ、ドキュメント、書籍、リソース、クールなものを集めたコレクション。 | Kitploit
ツール/GitHubGitHub/dhotrey/awesome-cybersec
OSINT (オープンソースインテリジェンス)ウェブセキュリティマルウェア分析CTFペネトレーションテスト論文と研究学習と教育レッドチーミング厳選リソース学習パスとコースラボと実践
GitHub
1943351ヶ月前Kitploit レビュー済み

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有
dhotrey/awesome-cybersec

awesome-cybersec

セキュリティに関する素晴らしいプラットフォーム、ブログ、ドキュメント、書籍、リソース、クールなものを集めたコレクション。

リポジトリを見るウェブサイト

awesome-cybersec

Awesome

セキュリティに関する素晴らしいプラットフォーム、ブログ、ドキュメント、書籍、リソース、その他クールなものを集めたコレクションです。

このリポジトリはまだ作業中ですが、目的はカテゴリ分けされたコミュニティ主導の非常に有名なリソースのコレクションを構築することです。

良いものをすべて一箇所に

DigitalOcean Referral Badge

トレーニング

  • Defbox

  • Range force

  • HTB

  • Tryhackme

  • Blue team academy

  • Blue team labs

  • Kali revealed

  • Darkmoon - オープンソース(GPL-3.0)の自律型AIペネトレーションテストプラットフォームで、Web、API、Active Directory、Kubernetesをカバーし、80以上の攻撃ツールをMCPホストとして調整、エクスプロイトの証明とローカルプライバシーゲートウェイを提供します(LLMは実際のIPや資格情報を見ることはありません)。

  • Metasploit Unleashed

  • platform.mosse-institute.com

  • riptutorial.com/bash

  • hackerrank.com/domains/shell

  • https://pentesterlab.com/

  • https://www.pentesteracademy.com/

  • https://www.offensive-security.com/labs/individual/

  • https://www.vulnhub.com/

  • Google doc : vulnhub oscp like vm's list

  • Wordpress boxes on vulnhub

  • Vulnhub CTF writeups

  • Linux Privilige escalation Cheatsheet

  • Privilige escalation

  • corelan: exploit-writing-tutorial-part-1-stack-based-overflows

  • https://scs.hacking-lab.com/

  • Malware Noob2Ninja course

  • n3t2.3c

  • Hacking-cisco

  • Open security training

  • Pentest standard

  • Security-tube

  • Binary Analysis course

  • https://training.zempirians.com/start/here

  • Pwncollege pwn.collegeは、学生(およびその他の関心のある方)が実践的に中核的なサイバーセキュリティ概念を学び、練習するための初級教育プラットフォームです。サイバーセキュリティの「白帯」から「青帯」、つまり(シンプルな)CTFやウォーゲームに取り組めるレベルへと導くことを目的としています。pwn.collegeの哲学は「練習は完璧を作る」です。

  • CyberPython 自分自身で調査を行い、わずかなガイダンスとヒントを使ってチャレンジを解決する実践的なプラットフォームです。

  • Web Application Exploits and Defenses このコードラボは、Gruyere /ɡruːˈjɛər/ という、ユーザーがテキストスニペットを公開したり、さまざまなファイルを保存できる小さなチーズのようなWebアプリケーションを中心に構築されています。「残念ながら」Gruyereには、クロスサイトスクリプティングやクロスサイトリクエストフォージェリから情報漏洩、サービス拒否、リモートコード実行に至るまで、複数のセキュリティバグがあります。このコードラボの目的は、これらのバグのいくつかを発見し、Gruyereおよび一般的な修正方法を学ぶプロセスをガイドすることです。

  • Course materials for Modern Binary Exploitation

  • professormesser.com

  • MCSI free training

  • insecure.org/stf/smashstack.html

  • Networking fundamentals: CCNA 200-301 certification course, A comprehensive free course to learn fundamentals of networking

WebApp/バグバウンティ リソース

  • Web Security Academy
  • https://owasp.org/www-project-juice-shop/
  • Mutillidae II
  • VulnWeb
  • https://www.bugbountyhunter.com/
  • hacker101 は、Webセキュリティの無料クラスです。バグバウンティに興味のあるプログラマーでも、経験豊富なセキュリティ専門家でも、Hacker101は何かを教えてくれます。
  • https://www.hacksplaining.com/
  • awesome-web-hacking
  • Resources-for-Beginner-Bug-Bounty-Hunters

  • https://thexssrat.podia.com/dashboard

  • https://github.com/websploit/websploit

  • https://dvwa.co.uk/

  • https://owasp.org/www-project-webgoat/

  • Resources & Disclosed Reports

  • Bug-bounty-roadmaps

  • Bug-hunting-methodologies

  • Open Source Bug Bounty Guide - Methodology, Tools, Resources

  • Thug-bounty

  • Bugbounty-Writeups

  • The Best Bug Bounty Recon Methodology

  • Pentesting web checklist

  • Web-application cheatsheet

  • Web-pentesting-checklist

  • OWASP Web Security Testing Guide

  • OWASP Top Ten

  • Bugcroud university

hacker101 Discordサーバーからのリソース

ハッキングとバグバウンティを始めるには? バグバウンティの旅を始めるための役立つリソースを集めました。

  • Guide to learn hacking
  • Finding your first bug
  • Port Swigger Web Security Academy
  • Nahamsec's Twitch
  • Nahamsec interviews with top bug bounty hunters
  • Nahamsec's beginner repo
  • Stök
  • InsiderPhD
  • Series for new bug hunters
  • Jhaddix

Hacker101メンバーによるハッキング入門記事

  • zonduu
  • p4nda
  • also a blog on subdomain takeovers
  • clos2100 on getting started without a technical background
  • al-madjus from 0 to bug hunter
  • dee-see's resources for Android Hacking
  • hacker101 videos

ツール

  • Pwncat はLinuxターゲット向けのポストエクスプロイトプラットフォームです。基本的なbindシェルやリバースシェルのラッパーとして始まり、そこから成長しました。攻撃者マシンからコードをステージングし、ターゲット上ではなく、一般的なレッドチーム操作を効率化します。

  • Automatic bypass (brute force) waf

  • DFIR-Tools

  • https://pentestbox.org/

  • Notes , tons of notes

  • Writehat : A pentest reporting tool written in Python. Free yourself from Microsoft Word.

  • OSINT4ALL

  • Shadrak : Shadrak is a script to generate decompression bomb in various formats.

  • Fish: a phishing tool

  • Owasp Zap, 無料でオープンソースのBurpsuite代替ソフト

  • Pimpmykai

  • Name that hash

  • Burp Automator(burpa) - A Burp Suite Automation Tool.

  • The harvester

  • https://technisette.com/p/tools

  • Hakrawler

  • Service Enumeration

  • Poszo Next.js Security Headers Starter - 依存関係のないNext.jsセキュリティヘッダーのベースラインで、控えめなデフォルトと本番用検証機能を備えています。

CTF

  • https://ctftime.org/
  • https://ctf.hackthebox.eu/ctfs
  • https://www.hackthissite.org/
  • Hack.me
  • Try2Hackme
  • Hackthissite
  • https://overthewire.org/wargames/
  • https://underthewire.tech/wargames
  • Pwnable.tw
  • Pwnable.kr
  • Root-me
  • Smash the stack
  • Cryptohack.org
  • PicoCTF
  • CMDchallenge
  • Defend the web
  • ChaosVPN
  • PentestIT
  • Overthewire-Warzone
  • CTF Difficulty cheatsheet (Vulnhub)
  • hpwnadventure
  • ctf.komodosec
  • counterhack.net
  • hellboundhackers
  • ringzer0ctf.com
  • io.netgarage

GitHubリソース

  • Malware Analysis Course
  • Malware-IR-TH-TI-Resources
  • Red Team tactics and techniques
  • Red Teaming toolkit
  • Red Team
  • awesome red teaming
  • Powershell red team
  • Red Teaming
  • Red-team
  • Red team diaries
  • awesome-web-hacking
  • awesome-security
  • infosec-resources
  • Everything about web application firewalls (WAFs)
  • awesome-hacking
  • Awesome-Hacking-2
  • BARF: Binary analysis and reverse engineering framework
  • Automatic Linux privesc via exploitation of low-hanging fruit
  • CTF-KATANA
  • Active-directory-exploitation-cheatsheet
  • The book of secret knowledge : A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

ブログ

  • https://blog.tryhackme.com/free_path/
  • From zero to hero in your first pentest
  • So you want to be a hacker in 2021
  • netsecfocus
  • https://nosecurity.blog/cptc2020
  • https://null-byte.wonderhowto.com/
  • https://portswigger.net/blog/flying-high-in-the-web-security-academy
  • https://www.simplycyber.io/free-cyber-resources
  • https://blog.g0tmi1k.com/
  • https://www.hackingarticles.in/
  • https://www.hackingtutorials.org/
  • https://www.hacking-tutorial.com/
  • The Journey to Try Harder- TJnull's Preparation Guide for PEN-200 PWK OSCP 2.0
  • https://hacklido.com/
  • What is a block cypher
  • freecodecamp blog
  • Redhuntlabs blog
  • Hackthebox blog
  • Tryhackme blog
  • Start in infosec
  • Ethical Hacking With Hack The Box :A free book for getting started in Ethical Hacking

有料トレーニング

  • cybersec labs
  • Virtual Hacking Labs
  • https://academy.tcm-sec.com/courses
  • INE
  • https://hackersacademy.com/
  • Red team ops
  • Pentester academy - red team labs
  • Pentester labs
  • KodeKloud## リソース
  • https://startupstash.com/cybersecurity-resources/
  • https://threatexpress.com/redteaming/resources/
  • リバースエンジニアリング
  • https://ippsec.rocks/?#
  • https://liveoverflow.com/
  • vimを学ぶ または Emacs 私は気にしません、戦争を始めるつもりはありません
  • Pythonサイバーセキュリティ - 独自のツールを構築する
  • Osintフレームワーク
  • OSINT入門
  • Vulnhubリソース

プログラミングリソース

Gitを学ぶ

Flight rules for Git

https://ohmygit.org/

https://www.freecodecamp.org/news/what-is-git-learn-git-version-control/

一般

オンラインでコンピューターサイエンスを学ぶための包括的ガイド

テスト自動化とは?

TypeScriptを簡単に始める

機械学習入門

freecodecamp

Programiz

Codewars

Code Academy

Fullstackopen : モダンウェブ開発の深掘り

学ぶ {Python,Java,C,JavaScript,PHP,Shell,C#}

JavaPoint

ウェブサイトの構築方法を学ぶ LandChad.net

Scaler

Python

究極のPython学習ガイド

Pythonを使ったデータ可視化の初心者ガイド

およびSeaborn

モダンPythonパッケージの優れたガイド

非CS専攻のためのPythonとプログラミング入門

https://www.gormanalysis.com/blog/python-pandas-for-your-grandpa/

Practicepython.org Pythonチュートリアル: 初心者向け包括的ガイド

Javascript

モダンJavaScriptチュートリアル

JavaScript 101 - 変数とプリミティブ

JavaScript配列関数ガイド: なぜ最もパワーのないツールを選ぶべきか

モダンJavaScriptを学んで練習しよう

Java

(Spring Boot)Javaアプリのコンテナ化への道しるべ

CDC(変更データキャプチャ)初心者ガイド

Java 15 プログラマのためのテキストブロックガイド

Javaによるモダンウェブ開発 - (決して)完全なガイド

Javaモジュールチートシート

Javaモジュールチートシート

C++

決定版C++書籍ガイドとリスト

Linear-cpp

Tony Gaddis Early Objects

PHP

PHP 正しい方法

その他のリンク

  • https://freetraining.dfirdiva.com

  • 探している本の大半はここで見つかります

  • ssh-audit

  • Linuxインストールをセキュアにする

  • Awesome-Linux-Software

  • Twitter-geolocate

  • Linuxトレーニングアカデミー

  • modern-unix 一般的なUnixコマンドのモダン/高速/よりスマートな代替品のコレクション。

  • Linuxzoo

  • Snaplabs.io

  • shortcutfoo.com

YouTubeチャンネル

Pwnfunction

zSecurity

HckerSploit

Nullbyte

LiveOverflow

John hammond

The cyber mentor

Network Chuck

Ippsec

Insiderphd

David bomball

Alhz4r3d

Discordサーバー

the cyber mentor

infosec prep

certification station

network Chuck

nahmsec

bounty hunters

The Alh4z-R3d Team

hack the box

tryhackme

hack this site

PG (proving grounds)

Getting started in security

INE Unofficial server

Offsec official server

ctf learn

Hacker101

➡️ コントリビューション

コントリビューションを歓迎します。以下の方法で貢献できます:

  • 他の言語への翻訳
  • ツールやその他のリソースの追加
  • GitHubプロジェクトにスターを付けるだけ :)

このリポジトリについて新しいアイデア、問題、フィードバック、または価値あるツールを見つけた場合は、遠慮なくIssueを開くか、Discord @thelastmethbender#4823 でDMしてください。

Star History

Star History Chart
ツールをダウンロード
OWASP Web Security Testing Guide
  • さまざまなスタックの仕組みを学ぶことは、バグバウンティハンティングにおいて重要な側面のようです。そのため、MERNまたはLAMP、あるいはその他のスタックのうち、少なくとも1つは学ぶ必要があります。MERNスタックは、自分だけのYelp風レストランレビューサイトを構築することで学べます。MERNはMongoDB + Express + React + Node.jsを意味します。コースの後半では、Node.js/Expressバックエンドをサーバーレスアーキテクチャに置き換える方法を学びます。(3時間のYouTubeコース):https://www.freecodecamp.org/news/create-a-mern-stack-app-with-a-serverless-backend/

  • pwn0.com
  • w3c.com
  • hax.tor.hu
  • reversing.kr
  • ctflearn.com
  • microcorruption.com
  • ctf365.com
  • codegate.org
  • legitbs.net
  • ghostintheshellcode
  • try2hack
  • gameofhacks
  • https://hackingzone.net/ Google翻訳を使って試してみてください
  • http://suninatas.com/challenges
  • Dream hack は韓国のサイバーセキュリティコースです。CTFも提供しています。Google翻訳を使って試すことができます。
  • The cyber institute 無料のOSINTコースとOSINTチャレンジ
  • Sans holiday hack challenge - past challenges
  • Holidayhackchallenge-2020
  • Kringlecon
  • Sans cyber-ranges
  • CTF-challenge
  • 247CTF
  • Backdoor ctf
  • Cybersecurity.wtf
  • PyWhat : identify anything
  • OSEE prep resources
  • PayloadsAllTheThings
  • Thefuck
  • Hacking tutorials
  • Halls of valhalla は、知識やアイデアを共有するための場所です。ユーザーはコード、科学、技術、工学関連のニュースや記事を投稿できます。また、プログラミング、数学、暗号化、ハッキングなどについて学ぶための楽しく教育的なチャレンジも用意されています。
  • Pentest.blog
  • https://hausec.com/
  • https://dirkjanm.io/
  • https://adsecurity.org/
  • infosec write-ups
  • Hacksplained blog
  • Get ready to pass the CISSP
  • Blackmorerepos