Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
分类

论文与研究

用于防御或授权分析的安全论文、研究项目、技术参考和可复现资料。

Kitploit 推荐

精选工具

10 已选择
security-research preview#1

security-research

GitHubgoogle/security-research
4.6k20小时31分前
0days-in-the-wild preview#2

0days-in-the-wild

GitHubgoogleprojectzero/0days-in-the-wild
1.0k1个月前
MSRC-Security-Research preview#3

MSRC-Security-Research

GitHubmicrosoft/msrc-security-research
1.4k2年前
publications preview#4

publications

GitHubtrailofbits/publications
1.9k5天前
papers-we-love preview#5

papers-we-love

GitHubpapers-we-love/papers-we-love
110.1k12天前
criticality_score preview#6

criticality_score

GitHubossf/criticality_score
1.5k1个月前
attack-stix-data preview#7

attack-stix-data

GitHubmitre-attack/attack-stix-data
6741个月前
Security-101 preview#8

Security-101

GitHubmicrosoft/security-101
6.8k1个月前
h4cker preview#9

h4cker

GitHubthe-art-of-hacking/h4cker
28.9k6天前
offensive-ai-compilation preview#10

offensive-ai-compilation

GitHubjiep/offensive-ai-compilation
1.4k24天前
最新相关性最受欢迎最近更新
1836 结果
内容在请求的语言中不可用。显示英文版本。
Kestra-cve-2026-53576 preview

Kestra-cve-2026-53576

GitHubatlasvector/kestra-cve-2026-53576

CVE-2026-53576(Kestra 中未经身份验证的 RCE)的端到端复现与跨层检测——超越基础 PoC,展示常见的 Docker socket 错误配置如何将容器 root 权限升级为完整的主机沦陷。

privilege-escalationcontainer-securitypersistence-mechanisms+8
4天前
CVE-2026-43786 preview

CVE-2026-43786

GitHub0xblackash/cve-2026-43786

CVE-2026-43786 的文档与研究笔记,这是一个由权限验证不当引起的 macOS 本地权限提升漏洞,涵盖根本原因、影响和缓解措施。

privilege-escalationvulnerability-analysisexploitation+4
2天前
opace6-cve-2026-64560 preview

opace6-cve-2026-64560

GitHubqingle009/opace6-cve-2026-64560

OnePlus Ace 6 temporary root tool (CVE-2026-64560) - device-verified port with corrected bootidParent address

android-securityprivilege-escalationvulnerability-analysis+7
2天前
opace6-cve-2026-64560 preview

opace6-cve-2026-64560

GitHubwangs-official/opace6-cve-2026-64560

Temporary root tool for OnePlus Ace 6 that exploits the CVE-2026-64560 Linux kernel POSIX CPU timer use-after-free to gain root until reboot, without…

android-securityprivilege-escalationvulnerability-analysis+6
3天前
op13-cve-2026-64560 preview

op13-cve-2026-64560

GitHuba23bc/op13-cve-2026-64560

针对 OnePlus 13 构建版本上 CVE-2026-64560 的设备特定 Android 内核漏洞利用,通过 ADB shell 提供临时 root 权限,并附带经过验证的载荷与移植工具。

android-securityprivilege-escalationvulnerability-analysis+8
42天前
CVE-2026-65320-fastcore preview

CVE-2026-65320-fastcore

GitHubrahulreddykarne/cve-2026-65320-fastcore

记录了 fastcore 的 untar_dir() 中 CVE-2026-65320 这一 tar-slip 路径遍历漏洞,并附带一个无害的概念验证,演示了任意文件写入与代码执行。

vulnerability-analysiscode-analysisexploitation+3
3天前
8cryptdo preview

8cryptdo

GitHubaeromodes/8cryptdo

8BitDo 固件加密的逆向工程文档和工具

embedded-systems-securityencryption-decryption-toolsiot-security+6
22天前
binary-cartography preview

binary-cartography

GitHubmrphrazer/binary-cartography

关于逆向工程、恶意软件分析和软件保护的技术网络研讨会。

reverse-engineeringmalware-analysisbinary-analysis+7
1375天前
house_of_apple_2 preview

house_of_apple_2

GitHubjazho76/house_of_apple_2

glibc 2.43 上 House of Apple 2 FSOP 技术的交互式 GDB 演练,附带可复现的沙箱环境,涵盖 vtable 绕过、栈迁移和 ROP。

memory-forensicsexploitationreverse-engineering+7
31个月前
CVE-2026-87575-CVE-2026-87606-CVE-2026-87491-and-CVE-2026-85046.-Escape-the-v8-carcass. preview

CVE-2026-87575-CVE-2026-87606-CVE-2026-87491-and-CVE-2026-85046.-Escape-the-v8-carcass.

GitHubsneakynachos/cve-2026-87575-cve-2026-87606-cve-2026-87491-and-cve-2026-85046.-escape-the-v8-carcass.

链式 Chrome V8 渲染器逃逸概念验证,利用四个 CVE:Float64Array 损坏、Wasm 覆写、弹窗导航重定向以及激活错误归因。

vulnerability-analysisexploitationreverse-engineering+5
513天前
meltdown preview
Archived

meltdown

GitHubisec-tugraz/meltdown

Meltdown 微架构攻击的概念验证演示和 libkdump 库,可在存在漏洞的 Intel CPU 上泄露内核和物理内存。

memory-forensicsvulnerability-analysisexploitation+5
4.2k4年前
Prompt-Injection-in-the-Wild preview

Prompt-Injection-in-the-Wild

GitHubcybershujin/prompt-injection-in-the-wild

按投递方式、编码方式和传播行为分类的公开报告提示注入技术追踪器,包含已确认的模型、来源和 MITRE ATLAS 标签。

ioc-managementthreat-feeds-aggregatorsvulnerability-analysis+6
214天前
SpectralCovert preview

SpectralCovert

GitHubprox0959/spectralcovert

使用香农熵和Sarle双峰系数检测网络隐蔽信道,以标记加密ICMP/TCP载荷外泄和基于时序的泄露。

defensive-toolspacket-sniffing-analysisdata-exfiltration+7
3天前
anycast-census preview

anycast-census

GitHubut-dacs/anycast-census

纵向任播普查系统,通过 ICMP、TCP 和 DNS 探测 IPv4/IPv6 前缀,以检测任播部署并定位 PoP 地理位置,每日发布数据集和 API。

packet-sniffing-analysisreconnaissancenetwork-mapping+5
184天前
Darkcloak preview

Darkcloak

GitHub0x574r/darkcloak

Linux 进程身份伪装工具,通过 11 阶段 prctl 流水线伪造 comm、argv、cmdline、environ、exe 路径和 VMA,以冒充另一个进程。

privilege-escalationpersistence-mechanismsids-ips-evasion+6
113个月前
VectorFreed preview

VectorFreed

GitHubrafabd1/vectorfreed

记录了 VectorFreed 的 librsvg 释放后使用 RCE 利用链(CVE-2026-96889),包含 SVG 生成器 PoC 以及针对 librsvg、Next.js 和 Satori 的修复指导。

memory-forensicsvulnerability-analysisexploitation+4
84天前
cve-2026-43687 preview

cve-2026-43687

GitHubjvidhan/cve-2026-43687

macOS NFS 客户端访问缓存竞争条件(CVE-2026-43687)的逆向工程笔记及自包含 PoC,包含 kext 反汇编差异和 dtrace 竞争捕获。

memory-forensicsvulnerability-analysisexploitation+4
4天前
cve-2026-61732-lab preview

cve-2026-61732-lab

GitHubinertfluid/cve-2026-61732-lab

针对 CVE-2026-61732(Decepticon ChatML 角色边界伪造)的无害、自包含复现

vulnerability-analysisexploitationweb-application-exploitation+5
4天前
上一页1…9899100下一页