Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
安全虚拟化 | Kitploit
分类

安全虚拟化

用于创建和管理隔离环境(VM、容器)以进行安全测试和恶意软件分析的工具。

Kitploit 推荐

精选工具

10 已选择
flare-vm preview#1

flare-vm

GitHubmandiant/flare-vm
8.9k3个月前
distro preview#2

distro

GitHubremnux/distro
1171个月前
commando-vm preview#3

commando-vm

GitHubmandiant/commando-vm
7.8k11个月前
securityonion preview#4

securityonion

GitHubsecurity-onion-solutions/securityonion
4.9k19天前
cuckoo3 preview#6

cuckoo3

GitHubcert-ee/cuckoo3
8179个月前
metasploitable3 preview#7

metasploitable3

GitHubrapid7/metasploitable3
5.7k1年前
vulhub preview#8

vulhub

GitHubvulhub/vulhub
21.1k12天前
GOAD preview#9

GOAD

GitHuborange-cyberdefense/goad
8.1k6个月前
DetectionLab preview#10

DetectionLab

GitHubclong/detectionlab
5.0k3年前
qubes-core-admin preview#11

qubes-core-admin

GitHubqubesos/qubes-core-admin
1474天前
最新相关性最受欢迎最近更新
218 结果
CVE-2026-48356 preview

CVE-2026-48356

GitHubabraxas/cve-2026-48356

针对 CVE-2026-48356 的概念验证与实验包,该漏洞是 Magento Open Source 访客购物车 REST 自定义选项中的未认证任意文件上传漏洞。

payload-generationvulnerability-analysisexploitation+5
5天前
reSolver preview

reSolver

GitHubtheqmaks/resolver

该扩展将流行的 CAPTCHA 解决方案服务集成到 BurpSuite 中,无需人工干预即可处理不同类型的 CAPTCHA。

scripting-automationweb-application-exploitationapi-security-testing+5
147个月前
CVE-2026-52782 preview

CVE-2026-52782

GitHubabraxas/cve-2026-52782

CVE-2026-52782 的复现包和 PoC 脚本,该漏洞是 OpenProject 项目存储设置中的一个经过身份验证的 IDOR,可劫持 Nextcloud/OneDrive 文件夹 ACL。

vulnerability-analysisexploitationweb-application-exploitation+5
5天前
Red-Team-GOAD-Lab-Proxmox preview

Red-Team-GOAD-Lab-Proxmox

GitHubpho5nix/red-team-goad-lab-proxmox

红队家庭实验室搭建指南。在 Proxmox 和 pfSense 中搭建 GOAD 实验室,Operator/C2 与重定向器。

defensive-toolspost-exploitationsecurity-virtualization+7
284天前
CVE-2026-5430 preview

CVE-2026-5430

GitHubabraxas/cve-2026-5430

针对 CVE-2026-5430 的披露包和 Python PoC,该漏洞是 WSO2 API Manager 4.5.0 中的 JWT 算法混淆漏洞,可导致未经身份验证的管理员账户接管。

vulnerability-analysisexploitationweb-application-exploitation+6
15天前
CVE-2026-57836-Confluent_Kafka preview

CVE-2026-57836-Confluent_Kafka

GitHubrahulreddykarne/cve-2026-57836-confluent_kafka

在 confluent-kafka 中为 HashiCorp Vault KMS 禁用 TLS 证书验证

defensive-toolsvulnerability-analysissecurity-virtualization+4
4天前
CVE-2026-61500 preview

CVE-2026-61500

GitHubaramosf/cve-2026-61500

针对 CVE-2026-61500 的 Python PoC 与 Docker 实验环境:恢复 Rejetto HFS V8 PRNG 状态以伪造管理员会话 cookie,并通过 server_code 实现 RCE。

password-attacksvulnerability-analysisexploitation+7
4天前
CVE-2026-62062 preview

CVE-2026-62062

GitHubabraxas/cve-2026-62062

针对 CVE-2026-62062 的概念验证与实验包,该漏洞是 Elementor 4.3.0-4.3.1 中一个未认证的 CSRF REST nonce 绕过漏洞,可导致管理员账户被创建。

vulnerability-analysisexploitationweb-application-exploitation+4
15天前
CVE-2026-87902-PoC-pwnVader preview

CVE-2026-87902-PoC-pwnVader

GitHubpwnvader/cve-2026-87902-poc-pwnvader

Shell PoC for CVE-2026-87902,一个通过页面模板解析实现的未认证 WordPress 核心 LFI,可链式利用 pearcmd.php 实现 RCE。

vulnerability-analysisexploitationweb-application-exploitation+5
8天前
CVE-2026-96512 preview

CVE-2026-96512

GitHubabraxas/cve-2026-96512

CVE-2026-96512 的披露包与 PoC,该漏洞是 sudo NOTBEFORE/NOTAFTER TZ 时间窗口绕过,可实现本地权限提升,并附带实验环境复现与补丁指导。

privilege-escalationvulnerability-analysisexploitation+3
5天前
Comment2Shell preview

Comment2Shell

GitHubdeathshotxd/comment2shell

零点击预认证 WordPress CVE-2026-93485 漏洞利用链:wpautop() 中的存储型 XSS 升级为管理员会话插件上传和自删除 webshell,附带扫描器、shell 和 Nuclei 模板。

vulnerability-scannersexploitationweb-application-exploitation+7
16天前
CVE-2026-12227-visualcomposer-lfi-poc preview

CVE-2026-12227-visualcomposer-lfi-poc

GitHubhassham1/cve-2026-12227-visualcomposer-lfi-poc

针对 CVE-2026-12227 的 Docker 验证实验环境与 safe-oracle PoC,该漏洞是 Visual Composer 中通过 vcv-template 实现的未认证 LFI,并附带一个 nuclei 检测模板。

vulnerability-scannersvulnerability-analysisexploitation+5
6天前
gmh5225 preview

gmh5225

GitHubgmh5225/gmh5225

基于LLVM的安全研究工具链:NeverC,一个C23交叉编译器,以及NeverD,一个二进制分析与反编译引擎,可将PE、ELF、Mach-O、EVM和SBF提升为LLVM IR。

static-analysiscode-analysisreverse-engineering+4
1个月前
CVE-2026-89274-wp-recipe-maker-poc preview

CVE-2026-89274-wp-recipe-maker-poc

GitHubhassham1/cve-2026-89274-wp-recipe-maker-poc

针对 CVE-2026-89274 的 Docker 验证实验环境与 Python PoC,证明在 WP Recipe Maker <= 10.8.1 中可通过 rating-comment reviewBody 执行任意短代码。

vulnerability-scannersvulnerability-analysisexploitation+5
7天前
CVE-2026-27607 preview
Archived

CVE-2026-27607

GitHubnikeee/cve-2026-27607

CVE-2026-27607 的概念验证漏洞利用程序,该漏洞是 RustFS 中缺失的策略后验证,通过 Node.js 脚本和基于 Docker 的易受攻击实例演示该漏洞。

vulnerability-analysisexploitationsecurity-virtualization+2
17个月前
qemu-t8030 preview
Archived

qemu-t8030

GitHubtrungnguyen1909/qemu-t8030

在 QEMU 上模拟的 iPhone 11

embedded-systems-securityios-securitysecurity-virtualization+3
2.2k3年前
matrix-rs preview
Archived

matrix-rs

GitHubmemn0ps/matrix-rs

Rusty Hypervisor - 使用 Rust 编写的 Windows 内核 Blue Pill Type-2 虚拟机监控器(代号:Matrix)

memory-forensicsdynamic-code-analysisids-ips-evasion+3
3564个月前
ESXiArgs-Recover preview
Archived

ESXiArgs-Recover

GitHubcisagov/esxiargs-recover

用于从ESXiArgs勒索软件中恢复的工具

defensive-toolssecurity-virtualizationdata-recovery+1
3003年前
上一页1…111213下一页