Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CTF-s-Tools — 用于索引 CTF 实用工具的仓库 | Kitploit
工具/GitHubGitHub/ph4l4nx/ctf-s-tools
OSINT (开源情报)漏洞利用逆向工程隐写术恶意软件分析数字取证密码学CTF渗透测试学习与教育精选资源实验室与实践
295698个月前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享
隐写术 分类第 20 名
GitHubph4l4nx/ctf-s-tools

CTF-s-Tools

用于索引 CTF 实用工具的仓库

查看仓库

Repository to index interesting Capture The Flag tools and other stuff.

  • Table of Contents
    • Platforms to practice
    • Cryptography
      • Main
      • Secondary
      • Hashes
      • Esoteric Languages
    • Steganography
    • OSINT
      • Threat Hunting
    • Forensics
    • Reversing
    • Exploiting
    • Pentesting
      • Recon
      • Web
      • Exploit Database
      • Docker
      • Credentials
      • CVE Database Vulnerabilities
      • Exploitation
      • Active Directory
      • Privilege Escalation
        • Windows
        • Linux
      • Legit binaries in a system
      • AV bypass
      • Automatic Frameworks
      • Mobile
      • Wifi
      • Utility
    • Malware
      • Online engines
      • Distros to analyze malware
      • Tools
      • Free AVs EDRs and sandboxes
      • Ransomware
      • APTs
      • Blogs and Information
    • Utility
    • Wikis
    • Write-Ups
    • Other tools

练习平台

https://ctftime.org/

https://www.hackthebox.eu/

https://atenea.ccn-cert.cni.es/home

https://tryhackme.com/

https://www.vulnhub.com/

  • Web 黑客挑战:http://webhacking.kr/

  • 学习现代密码学的平台:https://cryptohack.org/

  • 逆向平台:https://crackmes.one/

  • 取证挑战:https://ctf.unizar.es/ && https://freetraining.dfirdiva.com/dfir-ctfs-challenges && https://socvel.com/

  • PicoCTF:https://play.picoctf.org/login

  • 蓝队:https://letsdefend.io/

密码学

主要

https://gchq.github.io/CyberChef/

https://www.dcode.fr/tools-list#cryptography

  • 密码标识符与分析器:https://www.boxentriq.com/code-breaking/cipher-identifier

  • 数据格式识别器:https://geocaching.dennistreysa.de/multisolver/

次要

  • 自动密码谜题求解器(替换密码) https://quipqiup.com/

  • 频率分析:https://crypto.interactive-maths.com/frequency-analysis-breaking-the-code.html

  • 维吉尼亚密码暴力破解:https://guballa.de/vigenere-solver

  • RsaCtfTool:https://github.com/Ganapati/RsaCtfTool

  • 解密表情符号消息 https://cryptoji.com/ & https://cryptii.com/pipes/morse-code-with-emojis

  • Padding-oracle-attacker:https://github.com/KishanBagaria/padding-oracle-attacker

  • 海上信号旗字典:https://en.wikipedia.org/wiki/International_maritime_signal_flags

  • 恩尼格玛机:https://cryptii.com/

  • 因数分解:http://factordb.com/

  • 密码分析资源汇总:https://github.com/mindcrypt/Cryptanalysis

http://rumkin.com/tools/cipher/

  • 实时转换器:https://kt.gy/tools.html#conv/

  • 用于从 Tor 隐藏服务描述符或公钥计算洋葱地址的简单脚本:https://gist.github.com/DonnchaC/d6428881f451097f329e (你需要修改第 14 行才能正常工作 "onion_address = hashlib.sha1(key.exportKey('DER')[22:]).digest()[:10]")。

  • 语音转文字:https://speech-to-text-demo.ng.bluemix.net/

  • 歌词(Rockstar 语言):https://codewithrockstar.com/online

  • 在线生成字符串 MD5 哈希:http://www.md5.cz/

哈希

  • 哈希数据库:https://crackstation.net/

  • Dehashed:https://www.dehashed.com/

  • 哈希破解:http://rainbowtables.it64.com/

  • 哈希数据库:https://www.onlinehashcrack.com/

  • 哈希数据库:https://md5decrypt.net/en/

  • 哈希数据库:https://hashkiller.io/

  • 哈希数据库:https://hashes.com/en/decrypt/hash

深奥语言

  • Ook! 深奥编程语言解码器:https://www.dcode.fr/ook-language

  • Brainfuck 深奥编程语言解码器:https://www.dcode.fr/brainfuck-language

  • Malbolge 深奥编程语言解码器:https://www.malbolge.doleczek.pl/

  • COW 深奥编程语言:https://frank-buss.de/cow.html

隐写术

  • Exiftool

  • Zsteg

  • Exiv2

  • Identify -verbose file

  • 魔数签名:https://asecuritysite.com/forensics/magic && https://www.garykessler.net/library/file_sigs.html → Hexeditor

  • Binwalk -e image

  • Foremost -i image -o outdir

  • Steghide:http://steghide.sourceforge.net/documentation/manpage_es.php (例如:steghide extract -sf file , steghide info file)

  • Stegseek:https://github.com/RickdeJager/stegseek (优于 Stegcracker)

  • StegCracker:https://github.com/Paradoxis/StegCracker

  • 更深入的隐写分析工具:https://aperisolve.fr/

  • 频谱分析仪:https://academo.org/demos/spectrum-analyzer/

  • Stegsolve:https://github.com/zardus/ctf-tools/blob/master/stegsolve/install (运行:java -jar steg_solve.jar)

  • 傅里叶变换:http://bigwww.epfl.ch/demo/ip/demos/FFT/ && https://github.com/0xcomposure/FFTStegPic

  • 数字隐形墨水隐写工具:https://sourceforge.net/projects/diit/

  • 从 8 位 Atari 高速磁带中解码文件:https://github.com/baktragh/turbodecoder

https://incoherency.co.uk/image-steganography/#unhide

http://exif-viewer.com/

https://stegonline.georgeom.net/upload

https://stylesuxx.github.io/steganography/

https://skynettools.com/free-online-steganography-tools/

  • 摩斯码自适应音频解码器:https://morsecode.world/international/decoder/audio-decoder-adaptive.html

  • Audacity(sudo apt-get install audacity)例如:https://www.hackiit.cf/write-up-hackiit-ctf-biological-hazard-ii/

  • AudioStego:https://github.com/danielcardeenas/AudioStego

  • 分析可疑文件和 URL 以检测隐写恶意软件:https://stegoinspector.com/#/

  • 奥雷贝什文字翻译器:https://funtranslations.com/aurebesh

  • 比特币隐写术:https://incoherency.co.uk/stegoseed/

  • 乱码隐写术:https://incoherency.co.uk/mojibake/

  • 国际象棋隐写术:https://incoherency.co.uk/chess-steg/

  • 魔眼求解器/查看器:https://magiceye.ecksdee.co.uk/

  • QR 码解码器:https://online-barcode-reader.inliteresearch.com/ && https://zxing.org/w/decode.jspx

  • Stegosuite: http://manpages.ubuntu.com/manpages/bionic/man1/stegosuite.1.html

  • StegSpy:http://www.spy-hunter.com/stegspydownload.htm

  • StegSecret:http://stegsecret.sourceforge.net/

  • Openstego:https://www.openstego.com/

  • Stegpic:https://domnit.org/stepic/doc/

  • Bytehist:https://www.cert.at/en/downloads/software/software-bytehist

https://www.bertnase.de/npiet/npiet-execute.php

  • 修复图片:https://online.officerecovery.com/es/pixrecovery/

  • 从像素化截图中恢复密码的工具:https://github.com/beurtschipper/Depix

  • 取证图像分析:https://github.com/GuidoBartoli/sherloq

  • 使用零宽字符的 Unicode 隐写术:https://330k.github.io/misc_tools/unicode_steganography.html

  • Stegsnow(零宽字符):https://pentesttools.net/hide-secret-messages-in-text-using-stegsnow-zero-width-characters/

  • SPAM 语言或 PGP:https://www.spammimic.com/decode.shtml

  • f5stegojs:https://desudesutalk.github.io/f5stegojs/

  • 解短链接:https://unshorten.it/

  • PNG 转储:https://blog.didierstevens.com/2022/04/18/new-tool-pngdump-py-beta/

开源情报

  • IP 信息:https://bgp.tools/

  • IP 信息:https://www.maxmind.com/en/geoip-demo

https://sitereport.netcraft.com/? && https://searchdns.netcraft.com/

  • https://iocfeed.mrlooquer.com/

  • https://www.ipaddress.com/

  • GHDB(Google 黑客数据库):https://www.exploit-db.com/google-hacking-database

  • Google 速查表:https://gist.github.com/sundowndev/283efaddbcf896ab405488330d1bbc06

https://ciberpatrulla.com/links/

https://osintframework.com/

  • 帮助你进行 OSINT 研究的工具、流程图和速查表: https://technisette.com/p/tools

  • 资源汇总:https://osint.link/

  • 全球域名数据库:http://web.archive.org/ && https://archive.eu/

  • DNS 搜索:https://dns.coffee/

  • 网络防御搜索:https://www.onyphe.io/

  • 滥用域名/IP:https://www.abuseipdb.com/

https://dns-lookup.jvns.ca/

https://www.greynoise.io/

https://www.brightcloud.com/tools/url-ip-lookup.php

  • URL 信誉检查器:https://www.urlvoid.com/

  • 物联网搜索引擎:https://www.shodan.io/ && 所有过滤器速查表:https://beta.shodan.io/search/filters

  • IVRE:https://ivre.rocks/

  • 威胁情报工具:https://cyberfive.uk/threat-intel-tools/

https://talosintelligence.com/

  • PGP 全球目录:https://keyserver2.pgp.com/vkd/GetWelcomeScreen.event

  • Hurricane Electric BGP:https://bgp.he.net/

  • Email2PhoneNumber:https://github.com/martinvigo/email2phonenumber

  • 蜜罐检测:https://honeyscore.shodan.io/

https://builtwith.com/

  • Pwn 邮箱数据库(TOR): http://pwndb2am4tzkvold.onion/

  • 检查邮箱或密码是否已泄露的网站:https://haveibeenpwned.com/

  • 泄露数据:https://leaks.sh/

下载工具