Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
Web Security | Kitploit
카테고리

Web Security

Tools for testing, exploiting, and securing web applications and APIs.

최신관련성인기최근 업데이트
17039 결과
prismsec preview

prismsec

GitHubazmisyahrul/prismsec

AI 기반 모의 침투 테스트를 위해 nmap, nuclei, gobuster, subfinder, httpx, nikto, sqlmap을 래핑하는 안전하고 모듈식 MCP 서버

penetration-testing-frameworksreconnaissancevulnerability-scanners+7
4시간 8분 전
custom-oscp-tooling preview

custom-oscp-tooling

GitLabwattocyber/custom-oscp-tooling

OSCP 중심의 읽기 전용 네트워크, SMB, AD, DNS, 웹 및 데이터베이스 열거용 툴킷; 권한 상승 스캐닝, 해시 식별, 페이로드/자격 증명 명령 생성.

privilege-escalationreconnaissancepassword-attacks+9
2일 전
oscp-notes-2026 preview

oscp-notes-2026

GitLabwattocyber/oscp-notes-2026

Samson Laird의 OSCP 현장 노트: 병합된 기법 저장소, 번호가 매겨진 노트 (MIT)

privilege-escalationpassword-attackslateral-movement+7
3일 전
CVE-2026-8181 preview

CVE-2026-8181

GitHub0xterror/cve-2026-8181

조작된 Authorization 헤더를 통해 비인증 관리자 가장을 허용하는 WordPress Burst Statistics 인증 우회 Exploit PoC입니다.

authentication-authorizationprivilege-escalationvulnerability-analysis+4
1일 전
CVE-2026-28134 preview

CVE-2026-28134

GitHubrandomrobbiebf/cve-2026-28134

JetEngine <= 3.7.2 - 인증된 (Contributor+) 원격 코드 실행

vulnerability-analysisexploitationweb-application-exploitation+1
5개월 전
CVE-2025-67923 preview

CVE-2025-67923

GitHubrandomrobbiebf/cve-2025-67923

JetEngine <= 3.7.7 — CCT REST API를 통한 인증되지 않은 저장형 크로스 사이트 스크립팅

vulnerability-analysisexploitationweb-application-exploitation+2
5개월 전
CVE-2026-2413 preview

CVE-2026-2413

GitHubrandomrobbiebf/cve-2026-2413

Ally – 웹 접근성 및 사용성 <= 4.0.3 - URL 경로를 통한 인증되지 않은 SQL 인젝션

vulnerability-analysisexploitationweb-application-exploitation+1
5개월 전
CVE-2026-39987 preview

CVE-2026-39987

GitHubk3ystr0k3r/cve-2026-39987

Marimo 사전 인증 RCE에 대한 개념 증명 익스플로잇입니다. 인증되지 않은 /terminal/ws WebSocket 엔드포인트를 사용하여 PTY를 생성하고 리버스 셸을 구축합니다.

vulnerability-analysisexploitationweb-application-exploitation+2
1일 전
offensive-one-liners preview

offensive-one-liners

GitLabwattocyber/offensive-one-liners

승인된 테스트 및 CTF를 위한 110가지 공격적 보안 원라이너(one-liners)로, 카테고리와 킬체인 단계별로 단일 마크다운 노트북에 정리되어 있습니다. 이중 용도 참조 자료; detection-defense-library의 환경 탐지 및 회피 탐지.

privilege-escalationreconnaissancepassword-attacks+9
3일 전
GlacierCTF2023_writeups preview

GlacierCTF2023_writeups

GitHublosfuzzys/glacierctf2023_writeups

GlacierCTF 2023을 다루는 선별된 CTF 라이트업 컬렉션으로, pwn, rev, web, crypto 및 스마트 컨트랙트 챌린지에 대한 솔루션과 교육적 설명을 포함합니다.

reverse-engineeringweb-securitycryptography+4
162년 전
iron-proxy preview

iron-proxy

GitHubparadigmxyz/iron-proxy

신뢰할 수 없는 워크로드를 위한 이그레스 방화벽.

container-securityweb-proxies-interceptiondata-exfiltration+5
6126일 전
halo-cve-2026-67919 preview

halo-cve-2026-67919

GitHubk0nnect/halo-cve-2026-67919

halo cms 플러그인 URL에서 단일 요청 RCE, PoC + 익스플로잇 체인

exploitationweb-application-exploitationweb-security+3
11일 전
cve-2026-41940-PoC preview

cve-2026-41940-PoC

GitHublanicer/cve-2026-41940-poc

cPanel/WHM CVE-2026-41940 인증 우회를 CRLF 세션 주입을 통해 악용하여 인증 없이 루트 수준의 WHM 액세스를 획득한 다음, 계정 목록을 조회하고 OS 명령을 실행하며, 승인된 테스트를 위한 대화형 셸을 엽니다.

authentication-authorizationprivilege-escalationvulnerability-scanners+5
292일 전
CVE-2021-42013_821311 preview

CVE-2021-42013_821311

GitHubandreamammano89-maker/cve-2021-42013_821311

침투 테스트 중 Apache HTTP Server CVE-2021-42013을 악용하여 경로 탐색(path traversal) 및 CGI 기반 원격 코드 실행을 수행합니다.

vulnerability-analysisexploitationweb-application-exploitation+1
2일 전
CVE-2026-15748 preview

CVE-2026-15748

GitHububaydev/cve-2026-15748

Forminator Forms <= 1.56.1 - 위조된 업로드 필드 구성을 통한 인증되지 않은 임의 파일 업로드

vulnerability-analysisexploitationweb-application-exploitation+3
1일 전
CVE-2026-64849.yaml preview

CVE-2026-64849.yaml

GitHubzavisco/cve-2026-64849.yaml

내부 또는 클라우드 메타데이터 서비스에 접근하고 리다이렉트 우회를 통해 응답 세부 정보를 유출하는 인증되지 않은 MLflow webhook SSRF(CVE-2026-64849)를 탐지합니다.

vulnerability-scannersexploitationweb-application-exploitation+3
2일 전
Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467 preview

Apache-OFBiz-Auth-Bypass-and-RCE-Exploit-CVE-2023-49070-CVE-2023-51467

GitHubgraysignal/apache-ofbiz-auth-bypass-and-rce-exploit-cve-2023-49070-cve-2023-51467

이 익스플로잇은 제공된 대상이 CVE-2023-49070/CVE-2023-51467에 취약한지 스캔하고, 사용자의 선택에 따라 해당 취약점을 익스플로잇합니다.

vulnerability-scannersexploitationweb-application-exploitation+3
12년 전
CVE-2026-64849 preview

CVE-2026-64849

GitHubbiutrap/cve-2026-64849

CVE-2026-64849에 대한 개념 증명 익스플로잇: 조작된 POST를 통해 MLflow 웹훅 API에서 SSRF를 트리거하여 169.254.169.254에서 클라우드 인스턴스 메타데이터를 가져옵니다.

vulnerability-analysisexploitationweb-application-exploitation+4
2일 전
이전12…947다음