Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
카테고리

Reconnaissance

Tools for gathering information about targets and identifying attack surfaces.

Kitploit 추천

추천 도구

10 선택됨
amass preview#1

amass

GitHubowasp-amass/amass
15.0k5개월 전
subfinder preview#2

subfinder

GitHubprojectdiscovery/subfinder
14.2k3일 전
reconftw preview#3

reconftw

GitHubsix2dez/reconftw
8.0k13일 전
spiderfoot preview#4

spiderfoot

GitHubsmicallef/spiderfoot
20.1k2년 전
recon-ng preview#5

recon-ng

GitHublanmaster53/recon-ng
5.8k1년 전
httpx preview#6

httpx

GitHubprojectdiscovery/httpx
10.3k3일 전
naabu preview#7

naabu

GitHubprojectdiscovery/naabu
6.2k6일 전
nmap preview#8

nmap

GitHubnmap/nmap
13.3k2일 전
theHarvester preview#9

theHarvester

GitHublaramies/theharvester
17.0k6일 전
FinalRecon preview#10

FinalRecon

GitHubthewhiteh4t/finalrecon
2.9k3개월 전
최신관련성인기최근 업데이트
7417 결과
wp2shell preview

wp2shell

GitHubjohenlastgen-jlg/wp2shell

wp2shell - 워드프레스 RCE 및 PoC (CVE-2026-63030 + CVE-2026-60137)

reconnaissancevulnerability-analysisexploitation+3
21개월 전
Flowise-CVE-2026-58057-exploit preview

Flowise-CVE-2026-58057-exploit

GitHubcerberusmrxi/flowise-cve-2026-58057-exploit

Flowise Windows RCE 익스플로잇 for CVE-2026-58057. 대소문자 구분 결함을 통해 환경 변수 검증을 우회합니다. node_options를 사용하여 MCP stdio를 통해 임의 코드를 주입합니다. 리버스 셸, 지속성, 파일 업로드, 자격…

persistence-mechanismsvulnerability-analysisexploitation+7
11개월 전
HTB-Reactor-Linux-Machine-Walkthrough preview

HTB-Reactor-Linux-Machine-Walkthrough

GitHubsonnycroco/htb-reactor-linux-machine-walkthrough

HTB의 Reactor 머신 전체 워크스루 — CVE-2025-55182를 악용하여 셸을 획득한 다음, 노출된 Node.js 디버거를 통해 root 권한을 얻습니다. 스크린샷과 함께 단계별로 진행합니다.

privilege-escalationreconnaissancevulnerability-analysis+8
13개월 전
CVE-2025-24071 preview

CVE-2025-24071

GitHubrubbxalc/cve-2025-24071

CVE-2025-24071을 악용하여 악성 .library-ms 파일을 통해 Windows 탐색기에서 netNTLMv2 자격 증명을 캡처하는 ZIP 파일을 생성하며, 통제된 테스트용으로 설계되었습니다.

password-crackingreconnaissancevulnerability-analysis+3
11년 전
CVE-2025-24752-POC preview

CVE-2025-24752-POC

GitHubbartfroklage/cve-2025-24752-poc

CVE-2025-24752용 POC.

vulnerability-analysisexploitationinformation-gathering+2
11년 전
osintnet-public preview

osintnet-public

GitHubosintnet/osintnet-public

OsintNET은 도메인 인텔리전스, 웹사이트 위험 스캐닝, SERP 검색, 이미지 인텔리전스 및 AI 이미지 탐지를 위한 브라우저 기반 OSINT 플랫폼입니다.

osintreconnaissancevulnerability-scanners+8
12개월 전
HTB-TwoMillion-machine preview

HTB-TwoMillion-machine

GitHubabedallarawashdeh/htb-twomillion-machine

Hack The Box TwoMillion 머신 라이트업 — JWT/초대 코드 우회, IDOR, 명령 주입, CVE-2023-0386 권한 상승.

privilege-escalationweb-application-exploitationapi-security-testing+4
1개월 전
CVE-2026-64638-POC preview

CVE-2026-64638-POC

GitHubimbas007/cve-2026-64638-poc

CVE-2026-64638: WordPress 사전 인증 XSS → RCE (XSS2Shell) PoC

web-vulnerability-scannerspayload-generationexploitation+4
91개월 전
CVE-2025-55182-Advanced-React-Server-Components-RCE-Exploit preview

CVE-2025-55182-Advanced-React-Server-Components-RCE-Exploit

GitHubcerberusmrxi/cve-2025-55182-advanced-react-server-components-rce-exploit

CVE-2025-55182에 대한 고급 React Server Components RCE 스캐너. 기능: 다단계 핑거프린팅, 취약점 검증, DNS 유출, 대화형 셸, 페이로드 난독화, 전문가용 보고서(JSON/HTML/PDF). 승인된 테스트 전용.

reconnaissancevulnerability-scannersexploitation+6
11개월 전
smtp_userenum preview

smtp_userenum

GitHubh3x0v3rl0rd/smtp_userenum

Python 스크립트로, VRFY 및 EXPN 명령을 활용하여 대상 메일 서버에서 유효한 이메일 계정을 식별하기 위해 SMTP 사용자를 열거합니다.

osintreconnaissancevulnerability-analysis+4
1년 전
sigcorr preview

sigcorr

GitHubsage-s11/sigcorr

SigCorr는 SS7/MAP, Diameter S6a 및 GTPv2-C를 아우르는 통합 가입자 식별자 상관 분석을 통해 크로스 프로토콜 공격 체인을 탐지하는 최초의 오픈소스 도구입니다.

defensive-toolspacket-sniffing-analysisreconnaissance+8
26일 전
wp-cve-2026-63030-check preview

wp-cve-2026-63030-check

GitHublukols-dev/wp-cve-2026-63030-check

비침습적 노출 확인 도구 - WordPress wp2shell 사전 인증 RCE 체인 (CVE-2026-63030 / CVE-2026-60137).

reconnaissancevulnerability-scannersexploitation+3
1개월 전
CVE-2026-21978 preview

CVE-2026-21978

GitHubeangly/cve-2026-21978

Oracle FLEXCUBE Universal Banking의 내 CVE

vulnerability-analysisexploitationinformation-gathering+2
11개월 전
directus-security preview

directus-security

GitHubperufitlife/directus-security

Directus CMS를 위한 키리스 능동 프로브 보안 감사 도구. 라이브 익명 프로브를 통해 공용 역할 데이터 노출, 사용자 열거, 인증되지 않은 버전/스키마 누출, GraphQL 인트로스펙션, 검색 매개변수 필드 열거를 입증합니다. 의존성 없음.

reconnaissancevulnerability-scannersapi-security-testing+6
2개월 전
CVE-2025-30208 preview

CVE-2025-30208

GitHubhazavvip/cve-2025-30208

CVE-2025-30208 (Vite 임의 파일 읽기)용 익스플로잇 스캐너, 다중 변형 우회 탐지, 자격 증명 수집, SSH 키 추출 및 승인된 침투 테스트를 위한 구조화된 보고 포함.

vulnerability-analysisexploitationweb-application-exploitation+3
4개월 전
heartbleed preview

heartbleed

GitHubrouze-d/heartbleed

간단한 OpenSSL TLS Heartbeat (CVE-2014-0160) 스캐너 및 익스플로잇 (다중 SSL/TLS 버전)

vulnerability-scannersexploitationinformation-gathering+2
6년 전
CVE-2025-55182-POC-SCANNER preview

CVE-2025-55182-POC-SCANNER

GitHubim-hanzou/cve-2025-55182-poc-scanner

통합 보안 연구 도구

reconnaissancevulnerability-scannersexploitation+6
9개월 전
Reflected-XSS-on-Opentext-Portal-v7.4.4 preview

Reflected-XSS-on-Opentext-Portal-v7.4.4

GitHubhect0rs/reflected-xss-on-opentext-portal-v7.4.4

OpenText Portal v7.4.4의 반사형 XSS(CVE-2018-20165)에 대한 개념 증명으로, HTML 주석 종료 시퀀스를 사용한 vgnextoid URI 매개변수를 통한 JavaScript 주입을 시연합니다.

vulnerability-analysisweb-application-exploitationinformation-gathering+2
7년 전
이전1…909192…100다음