Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories

工具

全部Android安全身份验证与授权云基础设施安全防御工具磁盘取证嵌入式系统安全通用工具危害指标 (IOC) 管理OSINT (开源情报)数据包嗅探与分析密码破解渗透测试框架钓鱼工具权限提升侦察静态分析漏洞扫描器Web漏洞扫描器Wi-Fi审计蓝牙安全容器安全动态分析 (沙盒)加密/解密工具漏洞利用框架身份管理iOS安全物联网安全内存取证网络映射社会工程学OSINT密码攻击Payload生成持久化机制端口扫描静态代码分析 (SAST)威胁源与聚合器漏洞分析Web代理与拦截代码分析DNS和子域名枚举动态代码分析 (DAST)漏洞利用哈希分析IDS/IPS规避冒充工具横向移动移动应用渗透测试网络取证逆向工程RFID/NFC工具SCADA/ICS安全脚本与自动化无服务器安全ShellcodeWeb应用程序漏洞利用API安全测试配置审计数据泄露调试器取证分析信息收集移动取证网络访问控制后渗透利用安全虚拟化钓鱼攻击WAF绕过Web安全模糊测试网络安全隐写术无线安全数据恢复恶意软件分析数字取证硬件黑客密码学CTF渗透测试云安全DevSecOps移动安全隐私保护命令与控制社会工程学硬件安全实用工具与框架硬件与物联网安全秘密检测二进制分析威胁情报身份与访问管理 (IAM)供应链安全身份验证机器学习入侵检测论文与研究错误配置子域名枚举电子邮件收集学习与教育AI 辅助逆向DNS 模糊测试红队事件响应网络爬虫精选资源远程访问工具Shellcode 生成Payload 开发远程访问木马API 安全反机器人指纹欺骗CAPTCHA 绕过电子邮件安全DNS 分析混沌工程学习路径与课程容器逃逸AI 安全数据库安全固件分析异常检测日志分析对抗性攻击二进制利用实验室与实践
最新相关性最受欢迎最近更新
741 结果
内容在请求的语言中不可用。显示英文版本。
IAGA-Sentinel preview

IAGA-Sentinel

GitHubiaga-team/iaga-sentinel

面向AI代理的加密签名、可重放验证的证据层。管理循环中的操作,生成链接到哈希链追加日志的Ed25519签名收据,并支持欧盟AI法案第12条记录保存和附件IV文档。

container-securitycryptographydevsecops+4
177
9天前
KubeArmor preview

KubeArmor

GitHubkubearmor/kubearmor

运行时安全执行系统。利用LSMs(LSM-BPF、AppArmor)轻松实现工作负载加固/沙箱化及实施最小权限策略。

defensive-toolscontainer-securitycloud-security
2.6k9天前
yc-mk8s-sctphantom-mitigation preview

yc-mk8s-sctphantom-mitigation

GitHubyandex-cloud-examples/yc-mk8s-sctphantom-mitigation

用于缓解漏洞 CVE-2026-64564 (SCTPhantom) 的 DaemonSet

cloud-infrastructure-securitydefensive-toolscontainer-security+3
9天前
bad_garbage preview

bad_garbage

GitHubsgkdev/bad_garbage

CVE-2026-53361 AF_UNIX GC 与 MSG_PEEK 释放后使用容器逃逸

container-securityvulnerability-analysisexploitation+2
2210天前
CVE-2026-17106 preview

CVE-2026-17106

GitHubhackspeak/cve-2026-17106

针对 Docker `docker cp` 任意文件写入的 PoC,利用符号链接和 tar 解压缺陷覆盖主机二进制文件或启动代理,以实现容器逃逸和 root 代码执行。

privilege-escalationcontainer-securityvulnerability-analysis+3
110天前
LeitWacht preview

LeitWacht

GitLableitwacht/leitwacht

Leitwacht 控制平面 — GitLab Runner CI/CD 的运行时安全:策略编写、多租户、审计、GitLab 集成

cloud-infrastructure-securitycontainer-securityconfiguration-auditing+9
10天前
medusa preview

medusa

GitHubpantheon-security/medusa

AI 优先的安全扫描器。v2026.7 新增:Claude Code 失陷检测——在克隆前审查 .claude/ 钩子、权限与技能——另配备常驻的 AI 攻击特征扫描器,以及原生 Rust 与 PHP 规则。此外:medusa scan --git 可审查任意仓库,medusa secrets…

vulnerability-scannerscontainer-securitystatic-code-analysis+8
95710天前
CopyEscape-CVE-2026-17106 preview

CopyEscape-CVE-2026-17106

GitHubmasasron/copyescape-cve-2026-17106

针对博客文章《CopyEscape:利用 docker cp 接管 Docker 主机》的 PoC 仓库

container-securityvulnerability-analysisexploitation+3
211天前
stavrobot preview

stavrobot

GitHubskorokithakis/stavrobot

专注于安全领域的AI个人助理。

general-purpose-utilitiescontainer-securityscripting-automation+4
18413天前
ProjectSecurity-Homelab preview

ProjectSecurity-Homelab

GitHubahndrewalters/projectsecurity-homelab

Hands-on homelab simulating the Log4Shell (CVE-2021-44228) vulnerability. Deploy Docker containers to build a vulnerable target and attacker machine,…

defensive-toolscontainer-securityvulnerability-analysis+4
13天前
agentsh preview

agentsh

GitHubcanyonroad/agentsh

Execution-Layer Security (ELS) 面向AI代理——策略强制型shell,带审计功能。

authentication-authorizationcontainer-securitydynamic-analysis-sandboxing+7
36914天前
open-sammy preview

open-sammy

GitHubowasp/open-sammy

一个基于Web的工具,用于使用OWASP SAMM和DSOMM模型评估和跟踪软件安全成熟度,支持Docker和自动邮件发送。

container-securityvulnerability-analysisconfiguration-auditing+3
2815天前
trivy-operator preview

trivy-operator

GitHubaquasecurity/trivy-operator

Kubernetes 原生安全 Operator,使用 Trivy 自动执行漏洞扫描、配置审计、密钥检测、RBAC 分析与合规性报告。

vulnerability-scannerscontainer-securitycloud-security+1
1.9k16天前
flar preview

flar

GitHubswelljoe/flar

轻量级CLI工具,在隔离的Bubblewrap沙箱中运行AI编码代理,具有严格的文件系统、网络和凭据隔离,以防止提示注入和供应链攻击。

privilege-escalationcontainer-securityids-ips-evasion+5
5116天前
CVE-2026-21019-Kubernetes-CronJob-Suspended-Execution-via-Time-Manipulation preview

CVE-2026-21019-Kubernetes-CronJob-Suspended-Execution-via-Time-Manipulation

GitHubgeorge0papasotiriou/cve-2026-21019-kubernetes-cronjob-suspended-execution-via-time-manipulation

通过操纵节点时钟强制 Kubernetes CronJob 提前执行,复现 CVE-2026-21019;包含存在漏洞的 YAML 清单及 Python 漏洞利用脚本。

cloud-infrastructure-securitycontainer-securityvulnerability-analysis+3
17天前
CVE-2026-21008-Kubernetes-Service-Account-Token-Mounted-in-HostPath preview

CVE-2026-21008-Kubernetes-Service-Account-Token-Mounted-in-HostPath

GitHubgeorge0papasotiriou/cve-2026-21008-kubernetes-service-account-token-mounted-in-hostpath

用于通过 hostPath 挂载泄露 Kubernetes 服务账户令牌的概念验证漏洞利用;包含易受攻击的 Pod YAML 和 Python 令牌窃取脚本。

cloud-infrastructure-securityprivilege-escalationcontainer-security+4
17天前
CVE-2026-21005-Docker-Registry-V2-Schema-1-Image-Poisoning preview

CVE-2026-21005-Docker-Registry-V2-Schema-1-Image-Poisoning

GitHubgeorge0papasotiriou/cve-2026-21005-docker-registry-v2-schema-1-image-poisoning

利用 CVE-2026-21005,通过未认证推送投毒 Docker Registry V2 Schema 1 manifest,实现标签覆盖与供应链入侵。

container-securityvulnerability-analysisexploitation+4
17天前
ipv6_frag_escape preview

ipv6_frag_escape

GitHubsuominen/ipv6_frag_escape

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

container-securityvulnerability-analysisthreat-intelligence+2
17天前
上一页1…567…42下一页