Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
分类

漏洞利用

用于利用漏洞以获取对系统或数据的未经授权访问的工具。

最新相关性最受欢迎最近更新
23060 结果
内容在请求的语言中不可用。显示英文版本。
Vulnerability-Disclosures preview

Vulnerability-Disclosures

GitHubmandiant/vulnerability-disclosures

来自 Mandiant 的精选漏洞披露仓库,涵盖通过内部研究、红队评估和实际环境观察发现的 CVE,附带可选的概念验证(PoC)代码。

vulnerability-scannersvulnerability-analysisexploitation+3
219
2天前
pocs preview

pocs

GitHubv12-security/pocs

poc it like it's hot

exploit-frameworksvulnerability-analysisexploitation+2
8842天前
Titanis preview

Titanis

GitHubtrustedsec/titanis

Windows 协议库,包括 SMB 和 RPC 实现等。

privilege-escalationexploitationlateral-movement+7
8232天前
CVE-2021-1675-PrintNightmare-Analysis preview

CVE-2021-1675-PrintNightmare-Analysis

GitHubvelessecurity/cve-2021-1675-printnightmare-analysis

PrintNightmare(CVE-2021-1675 / CVE-2021-34527)的技术文档与分析,涵盖 RCE/LPE 漏洞利用、通过 Windows 事件日志进行检测,以及针对打印后台处理程序(Print Spooler)的缓解措施。

privilege-escalationreconnaissancevulnerability-analysis+6
2天前
CVE-2020-14882-WebLogic-Analysis preview

CVE-2020-14882-WebLogic-Analysis

GitHubvelessecurity/cve-2020-14882-weblogic-analysis

技术分析与干净的 Java Thread Echo PoC,针对 Oracle WebLogic Server 漏洞链。

vulnerability-analysisexploitationweb-application-exploitation+1
2天前
HeartBleed-CVE-2014-0160--SCRIPTS-python3 preview

HeartBleed-CVE-2014-0160--SCRIPTS-python3

GitHubihsspotlight/heartbleed-cve-2014-0160--scripts-python3

用于检测和利用 OpenSSL Heartbleed (CVE-2014-0160) 漏洞的 Python 脚本,可从存在漏洞的 TLS 服务中泄露敏感内存内容。

vulnerability-analysisexploitationnetwork-security
2天前
CVE-2026-19500-poc preview

CVE-2026-19500-poc

GitHubtypedefabcd1234ntd/cve-2026-19500-poc

SureForms WordPress 插件中 CVE-2026-19500 的概念验证(PoC),这是一个拒绝服务(DoS)漏洞,可通过超大键值对表单提交耗尽服务器资源。

vulnerability-analysisexploitationweb-application-exploitation+1
2天前
CVE-2026-19501-poc preview

CVE-2026-19501-poc

GitHubtypedefabcd1234ntd/cve-2026-19501-poc

针对 SureForms 中未认证 CSV 公式注入的概念验证,演示了精心构造的表单提交在管理员导出时会触发电子表格公式。

payload-generationvulnerability-analysisexploitation+3
2天前
LibAFL preview

LibAFL

GitHubaflplusplus/libafl

高级模糊测试库 - 用Rust将你的模糊测试器组装在一起!跨核心和机器扩展。支持Windows、Android、MacOS、Linux、no_std等平台。

penetration-testing-frameworksdynamic-analysis-sandboxingexploit-frameworks+5
2.6k2天前
cve-2026-15748 preview

cve-2026-15748

GitHubyora1928/cve-2026-15748

扫描 WordPress Forminator 以查找 CVE-2026-15748 未认证 RCE 漏洞。检测易受攻击的站点、爬取表单、提取 nonce,并运行安全的上传测试。

web-vulnerability-scannersexploitationweb-application-exploitation+4
22天前
dradis-ce preview

dradis-ce

GitHubdradis/dradis-ce

Dradis Framework:面向IT安全团队的协作与报告

penetration-testing-frameworksvulnerability-analysisinformation-gathering+1
8372天前
CVE-2026-44578 preview

CVE-2026-44578

GitHublxxexxbxx/cve-2026-44578

CVE-2026-44578 的概念验证漏洞利用程序,可复现漏洞条件,帮助安全研究人员验证受影响的系统并评估缓解措施。

vulnerability-analysisexploitationadversarial-attack
2天前
go-exploit preview

go-exploit

GitHubvulncheck-oss/go-exploit

基于Go的漏洞利用开发框架,内置了目标验证、版本扫描、利用和后门(C2)等多个阶段。支持多种载荷、协议助手,并与Metasploit等工具集成。

penetration-testing-frameworksvulnerability-scannersexploit-frameworks+3
4552天前
hp-slate7-root-kit preview

hp-slate7-root-kit

GitHubvalentineus/hp-slate7-root-kit

HP Slate 7 2800 Android 4.1.1 的 Root 工具包,利用 CVE-2015-1805 漏洞。

android-securityprivilege-escalationpersistence-mechanisms+6
12天前
TTPForge preview

TTPForge

GitHubfacebookincubator/ttpforge

The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).

penetration-testing-frameworksscripting-automationred-teaming+2
4372天前
CVE-2026-73292 preview

CVE-2026-73292

GitHubcamillegr/cve-2026-73292

针对 CVE-2026-73292 的概念验证漏洞利用程序:对 Semaphore UI 密码更改端点发起 CSRF 攻击,提供一个恶意页面,可静默重置已认证用户的密码。

vulnerability-analysisexploitationweb-application-exploitation+3
2天前
fastgpt-sandbox-audit preview

fastgpt-sandbox-audit

GitHubqianlijaingshan/fastgpt-sandbox-audit

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

static-analysisdynamic-analysis-sandboxingvulnerability-analysis+4
2天前
ghostlock-cve-2026-43499 preview

ghostlock-cve-2026-43499

GitHubgitchw/ghostlock-cve-2026-43499

CVE-2026-43499 (GhostLock) — Linux 内核 futex PI rt_mutex UAF ARM32 权限提升研究,针对华为 Watch 4 Pro(内核 5.4.210)

embedded-systems-securityprivilege-escalationiot-security+5
2天前
上一页1…789…1282下一页