Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
分类

漏洞利用

用于利用漏洞以获取对系统或数据的未经授权访问的工具。

最新相关性最受欢迎最近更新
23062 结果
内容在请求的语言中不可用。显示英文版本。
CVE-2026-56848 preview

CVE-2026-56848

GitHubopen-flaw/cve-2026-56848

CVE-2026-56848 的漏洞利用 PoC,针对 Node.js HTTP/2 中可导致远程未认证 DoS 的堆释放后使用(heap-use-after-free)漏洞。包含原始套接字触发器、ASan 构建说明和基于 Docker 的目标环境。

vulnerability-analysisdynamic-code-analysisexploitation+2
2天前
ghostlock-custom preview

ghostlock-custom

GitHubxiaobailovesstirring/ghostlock-custom

GhostLock (CVE-2026-43499) adaptation for non-Android Linux 6.x ARM64

privilege-escalationvulnerability-analysisexploitation+1
2天前
PyMemoryEditor preview

PyMemoryEditor

GitHubjeanextreme002/pymemoryeditor

一个纯 Python 库,让你只需几行 Python 代码即可检查、修改和搜索任何正在运行的进程的内存 :snake: 。

memory-forensicsexploitationreverse-engineering+3
2062天前
CVE-2026-43499_HW-CLT-AL01 preview

CVE-2026-43499_HW-CLT-AL01

GitHubzychen027/cve-2026-43499_hw-clt-al01

Generates per-device kernel offsets from boot.img and compiles a preload library to exploit CVE-2026-43499 Android arm64 local privilege escalation.

android-securityprivilege-escalationexploitation+4
2天前
CVE-2026-19598-PoC preview

CVE-2026-19598-PoC

GitHubdeadexpl0it/cve-2026-19598-poc

影响 Pods <= 3.3.9 的 CVE-2026-19598 概念验证。

privilege-escalationvulnerability-analysisexploitation+3
2天前
CVE-2026-64849 preview

CVE-2026-64849

GitHubbiutrap/cve-2026-64849

CVE-2026-64849 的概念验证漏洞利用程序:通过精心构造的 POST 请求触发 MLflow webhook API 中的 SSRF,从 169.254.169.254 获取云实例元数据。

vulnerability-analysisexploitationweb-application-exploitation+4
2天前
CVE-2026-34486---unauthenticated-RCE-via-Java-deserialization preview

CVE-2026-34486---unauthenticated-RCE-via-Java-deserialization

GitHubcypherhippie/cve-2026-34486---unauthenticated-rce-via-java-deserialization

Apache Tomcat Tribes 集群中的 EncryptInterceptor 存在 fail-open 绕过漏洞,经由 Java 反序列化可导致未认证 RCE。

payload-generationvulnerability-analysisexploitation+2
2天前
CVE-2026-41940-Exploit-PoC preview

CVE-2026-41940-Exploit-PoC

GitHubdefacto-ridgepole254/cve-2026-41940-exploit-poc

使用这个用Go编写的概念验证利用工具,测试cPanel和WHM中的身份验证绕过漏洞。

vulnerability-analysisexploitationweb-application-exploitation+3
12天前
Exploits + Shellcode + GHDB preview

Exploits + Shellcode + GHDB

GitLabexploit-database/exploitdb

exploitdb // The official Exploit-Database repository

reconnaissanceexploit-frameworksvulnerability-analysis+7
2522天前
CVE-2026-18504-CVE-2026-16732 preview

CVE-2026-18504-CVE-2026-16732

GitHubhorkimhab/cve-2026-18504-cve-2026-16732

用于在隔离实验室、虚拟机及授权渗透测试环境中记录和测试 CVE 概念验证漏洞利用代码的教育性仓库。

vulnerability-analysisexploitationpenetration-testing+2
2天前
CVE-2026-66804 preview

CVE-2026-66804

GitHubcypherhippie/cve-2026-66804

针对 CVE-2026-66804 的本地 Windows 权限提升 PoC:在缺失路径中植入 COM DLL,以滥用 Camera FrameServer 并模拟 SYSTEM 账户。

privilege-escalationexploitationpost-exploitation+1
2天前
CVE-2026-64849-PoC preview

CVE-2026-64849-PoC

GitHubcodeb0ssx/cve-2026-64849-poc

利用 MLflow 中的 CVE-2026-64849,为安全研究人员提供概念验证攻击,以验证易受攻击的部署。

vulnerability-analysisexploitationweb-application-exploitation
2天前
CVE-2026-44848-PoC preview

CVE-2026-44848-PoC

GitHubboreas37/cve-2026-44848-poc

CVE-2026-44848 的 PoC:Portainer 在 Docker 插件端点缺少授权,导致主机 RCE(GHSA-rrmm-9v76-h3p4)。仅依赖标准库的 Python 实现。

authentication-authorizationcontainer-securityvulnerability-analysis+3
2天前
CVE-2026-64638 preview

CVE-2026-64638

GitHubkaleth4/cve-2026-64638

针对 WordPress 核心预认证 XSS 到 RCE 链的技术分析与防御缓解措施,涵盖清理器绕过、DOM 覆写、JSONP 滥用、检测签名与补丁修复。

vulnerability-analysisexploitationweb-application-exploitation+3
2天前
CVE-2025-5880 preview

CVE-2025-5880

GitHubac8999/cve-2025-5880

针对 Whistle v2.9.98 中通过 /cgi-bin/sessions/get-temp-file 端点利用的路径遍历漏洞的 PoC。(未修补)

vulnerability-analysisexploitationweb-application-exploitation
2天前
CVE-2025-62593-PoC preview

CVE-2025-62593-PoC

GitHubboreas37/cve-2025-62593-poc

CVE-2025-62593 的 PoC:Ray 中未认证的 RCE(CISA KEV)。仅使用标准库的 Python。

vulnerability-analysisexploitationweb-application-exploitation+2
12天前
secator preview

secator

GitHubfreelabz/secator

secator - 渗透测试者的瑞士军刀

osintpenetration-testing-frameworksreconnaissance+8
1.3k2天前
Vulnerability-Disclosures preview

Vulnerability-Disclosures

GitHubmandiant/vulnerability-disclosures

来自 Mandiant 的精选漏洞披露仓库,涵盖通过内部研究、红队评估和实际环境观察发现的 CVE,附带可选的概念验证(PoC)代码。

vulnerability-scannersvulnerability-analysisexploitation+3
2192天前
上一页1…678…1282下一页