Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
Misconfiguration | Kitploit
카테고리

Misconfiguration

Configuration auditing, compliance scanning, hardening benchmarks, and drift detection tools.

최신관련성인기최근 업데이트
913 결과
요청한 언어로 콘텐츠를 사용할 수 없습니다. 영어 버전을 표시합니다.
context-aware-offensive-intelligence preview

context-aware-offensive-intelligence

GitHubindoushka/context-aware-offensive-intelligence

의사결정 인텔리전스를 통해 포스트 익스플로잇을 재정의하는 연구 프레임워크

privilege-escalationvulnerability-analysisconfiguration-auditing+4
6개월 전
sentrymcp preview

sentrymcp

GitHubzaydmulani09/sentrymcp

MCP(Model Context Protocol) 서버를 위한 정적 + 런타임 보안 스캐너

static-analysisvulnerability-scannerssecret-detection+3
2일 전
DB_Audit_Research preview

DB_Audit_Research

GitHubmthamil107/db_audit_research

자가 무력화 감사: 낮은 권한의 PostgreSQL 역할이 트리거 기반 감사자를 가역적으로 눈멀게 하고 귀속을 오염시키는 것을 보여주는 재현 가능한 랩(PG14/16) 및 방어 기법. 합성 데이터 사용, CVE-2018-1058 프리미티브 인용.

defensive-toolsexploitationpapers-research+4
2일 전
CVE-2024-40275_Scanner preview

CVE-2024-40275_Scanner

GitHubburjoy/cve-2024-40275_scanner

Apache HTTP Server 소스 코드 노출(CVE-2024-40725) 스캐너; 직접 경로와 하위 요청(subrequest) 경로를 검사하고, 영향을 받는 버전을 식별하며, CI/CD용 JSON 보고서를 출력합니다.

vulnerability-scannersweb-vulnerability-scannersvulnerability-analysis+2
3일 전
CIS GitLab Benchmark Scanner preview

CIS GitLab Benchmark Scanner

GitLabgitlab-security-oss/cis/gitlabcis

CIS GitLab Benchmark에 대해 읽기 전용 API 검사를 통해 GitLab 프로젝트를 감사하고, 규정 준수 및 보안 강화 권장 사항에 대한 JSON 보고서를 생성합니다.

vulnerability-analysisconfiguration-auditingdevsecops+2
154개월 전
Windows-Defender-Security-Auditor-CVE-2026-50656- preview

Windows-Defender-Security-Auditor-CVE-2026-50656-

GitHubeh-amish/windows-defender-security-auditor-cve-2026-50656-

Windows 엔드포인트 및 서버용 읽기 전용 PowerShell 보안 감사 도구: Defender 구성, 패치 상태, 자격 증명, 지속성, 네트워크 텔레메트리를 확인하고 알려진 캠페인 IOC를 탐지합니다.

defensive-toolsioc-managementpersistence-mechanisms+8
5일 전
bring-your-own-key-cve-2026-73678-unauthenticated-rce-in-mindsdb-cowork preview

bring-your-own-key-cve-2026-73678-unauthenticated-rce-in-mindsdb-cowork

GitHubhunt-benito/bring-your-own-key-cve-2026-73678-unauthenticated-rce-in-mindsdb-cowork

CVE-2026-73678에 대한 PoC 익스플로잇: 공격자가 제공한 LLM 키와 샌드박스가 적용되지 않은 스크래치패드 exec를 통해 OS 명령을 실행하여 MindsDB Cowork에서 비인증 RCE를 달성합니다.

vulnerability-analysisexploitationweb-application-exploitation+4
6일 전
VulnHub-DC1-Writeup preview

VulnHub-DC1-Writeup

GitHubprapul1/vulnhub-dc1-writeup

VulnHub DC-1 boot-to-root — CVE-2018-7600(Drupalgeddon2)을 악용한 RCE, settings.php에서 DB 자격 증명 추출, 관리자 비밀번호 해시 위조, SUID find를 통한 루트 권한 상승.

privilege-escalationreconnaissanceexploit-frameworks+9
11개월 전
CVE-2026-27344 preview

CVE-2026-27344

GitHubac8999/cve-2026-27344

inseriswiss inseri core inseri-core의 권한 부여 누락으로 잘못 구성된 접근 제어 보안 수준을 악용할 수 있습니다. 이 문제는 inseri core n/a부터 <= 1.0.5까지 영향을 미칩니다.

authentication-authorizationvulnerability-analysisweb-application-exploitation+3
9일 전
azure-security-auditor preview

azure-security-auditor

GitHubneelkotnis/azure-security-auditor

Azure 보안 상태, RBAC, NSG, 스토리지, ID 및 암호화를 감사하는 CLI 도구

cloud-infrastructure-securitydefensive-toolsconfiguration-auditing+5
122일 전
semgrep-rules preview

semgrep-rules

GitHubelttam/semgrep-rules

Java, Go, Python, C#, Kotlin, PHP, Kubernetes 및 GitHub Actions 전반에서 취약점 탐지와 감사 중심 코드 리뷰를 위한 정적 분석 보안 규칙입니다.

cloud-infrastructure-securitystatic-analysiscontainer-security+6
24621일 전
AD-description-password-finder preview

AD-description-password-finder

GitHubassurancemaladiesec/ad-description-password-finder

AD 계정 설명을 가져와 그 안에서 비밀번호를 검색합니다.

defensive-toolspassword-crackingpassword-attacks+5
814년 전
MDE-AuditCheck preview

MDE-AuditCheck

GitHubolafhartong/mde-auditcheck

MDE는 일부 감사 설정이 활성화되어 있어야 합니다.

defensive-toolsconfiguration-auditingmisconfiguration
1014년 전
HardeningKitty preview

HardeningKitty

GitHubscipag/hardeningkitty

HardeningKitty - Checks and hardens your Windows configuration

authentication-authorizationdefensive-toolsvulnerability-analysis+2
1.8k1개월 전
google-dorks preview

google-dorks

GitHubproviesec/google-dorks

웹 보안 및 버그 바운티 정찰을 위해 선별된 Google Dork 검색 패턴으로, 고급 검색 연산자를 사용하여 노출된 파일, 관리자 패널, CMS 인스턴스, 로그, AWS 시크릿을 다룹니다.

osintreconnaissancevulnerability-analysis+5
1.3k27일 전
OAUTHScan preview

OAUTHScan

GitHubakabe1/oauthscan

OAUTHv2 및 OpenID 보안을 검증하는 데 유용한 Burp Suite 확장 프로그램

authentication-authorizationvulnerability-scannersapi-security-testing+6
1781년 전
DEFCON-CICD-pipelines-workshop preview

DEFCON-CICD-pipelines-workshop

GitHubwavestone-cdt/defcon-cicd-pipelines-workshop

공격적 보안 교육을 위한 실습형 CI/CD 파이프라인 보안 워크숍으로, Terraform 랩, AWS 익스플로잇, Kubernetes 탈출 및 아티팩트 백도어 삽입 실습을 다룹니다.

privilege-escalationcontainer-securitylateral-movement+8
943년 전
AWSome-Pentesting preview

AWSome-Pentesting

GitHubpop3ret/awsome-pentesting

AWS 인프라를 침투 테스트(pentest)하기 위한 나의 치트시트 노트

cloud-infrastructure-securitypenetration-testingcloud-security+3
7163년 전
이전12…51다음