Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories

工具

全部Android安全身份验证与授权云基础设施安全防御工具磁盘取证嵌入式系统安全通用工具危害指标 (IOC) 管理OSINT (开源情报)数据包嗅探与分析密码破解渗透测试框架钓鱼工具权限提升侦察静态分析漏洞扫描器Web漏洞扫描器Wi-Fi审计蓝牙安全容器安全动态分析 (沙盒)加密/解密工具漏洞利用框架身份管理iOS安全物联网安全内存取证网络映射社会工程学OSINT密码攻击Payload生成持久化机制端口扫描静态代码分析 (SAST)威胁源与聚合器漏洞分析Web代理与拦截代码分析DNS和子域名枚举动态代码分析 (DAST)漏洞利用哈希分析IDS/IPS规避冒充工具横向移动移动应用渗透测试网络取证逆向工程RFID/NFC工具SCADA/ICS安全脚本与自动化无服务器安全ShellcodeWeb应用程序漏洞利用API安全测试配置审计数据泄露调试器取证分析信息收集移动取证网络访问控制后渗透利用安全虚拟化钓鱼攻击WAF绕过Web安全模糊测试网络安全隐写术无线安全数据恢复恶意软件分析数字取证硬件黑客密码学CTF渗透测试云安全DevSecOps移动安全隐私保护命令与控制社会工程学硬件安全实用工具与框架硬件与物联网安全秘密检测二进制分析威胁情报身份与访问管理 (IAM)供应链安全身份验证机器学习入侵检测论文与研究错误配置子域名枚举电子邮件收集学习与教育AI 辅助逆向DNS 模糊测试红队事件响应网络爬虫精选资源远程访问工具Shellcode 生成Payload 开发远程访问木马API 安全反机器人指纹欺骗CAPTCHA 绕过电子邮件安全DNS 分析混沌工程学习路径与课程容器逃逸AI 安全数据库安全固件分析异常检测日志分析对抗性攻击二进制利用实验室与实践
最新相关性最受欢迎最近更新
622 结果
内容在请求的语言中不可用。显示英文版本。
AMSI-ETW-Patch preview

AMSI-ETW-Patch

GitHubmr-un1k0d3r/amsi-etw-patch

Patch AMSI and ETW

ids-ips-evasionpost-exploitationred-teaming+1
251
2年前
Unwinder preview

Unwinder

GitHubkudaes/unwinder

Call stack spoofing for Rust

ids-ips-evasionpost-exploitationred-teaming+2
3841年前
Venom preview

Venom

GitHubidov31/venom

Venom is a library that meant to perform evasive communication using stolen browser socket

ids-ips-evasioncommand-and-controlred-teaming+1
3952年前
WTSRM2 preview

WTSRM2

GitHubrad9800/wtsrm2

仅头文件的 C++17 库,用于规避检测的 Windows 开发:编译时 API 哈希、DLL 挂钩移除、硬件断点清除、VEH 移除以及 DLL 通知回调抑制,以规避 EDR 挂钩。

ids-ips-evasionred-teamingpayload-development
1643年前
CobaltWhispers preview

CobaltWhispers

GitHubnvisosecurity/cobaltwhispers

CobaltWhispers is an aggressor script that utilizes a collection of Beacon Object Files (BOF) for Cobalt Strike to perform process injection,…

persistence-mechanismsids-ips-evasionpost-exploitation+4
2403年前
Interceptor preview

Interceptor

GitHubnvisosecurity/interceptor

Interceptor is a kernel driver focused on tampering with EDR/AV solutions in kernel space

ids-ips-evasionpost-exploitationred-teaming
1353年前
secret_handshake preview

secret_handshake

GitHubjconwell/secret_handshake

一个通过mTLS使用x509证书的原型恶意软件C2信道

ids-ips-evasiondata-exfiltrationcommand-and-control+1
1532年前
hwbp4mw preview

hwbp4mw

GitHubrad9800/hwbp4mw

用于 Windows 的硬件断点挂钩引擎,使用调试寄存器挂钩函数、绕过 ETW/AMSI 并规避用户态 EDR 监控。

ids-ips-evasiondebuggerspost-exploitation+2
2733年前
AMSI-patches-learned-till-now preview

AMSI-patches-learned-till-now

GitHubreveng007/amsi-patches-learned-till-now

我已将我迄今为止学到的所有 AMSI 补丁记录下来。

ids-ips-evasionreverse-engineeringpost-exploitation+3
729个月前
HWSyscalls preview

HWSyscalls

GitHubdec0ne/hwsyscalls

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

ids-ips-evasionpost-exploitationpenetration-testing+2
7353年前
Split preview

Split

GitHubkudaes/split

采用分而治之的方法来绕过 EDR

ids-ips-evasionshellcodepost-exploitation+3
2862年前
ntqueueapcthreadex-ntdll-gadget-injection preview

ntqueueapcthreadex-ntdll-gadget-injection

GitHublloydlabs/ntqueueapcthreadex-ntdll-gadget-injection

这种利用滥用 ApcRoutine 与 SystemArgument[0-3] 参数并传入随机 pop r32; ret gadget 来使用 NtQueueApcThreadEx 的新颖方式,可用于隐蔽的代码注入。

ids-ips-evasionshellcodepost-exploitation+3
2663年前
lolbin-poc preview

lolbin-poc

GitHubmrexodia/lolbin-poc

使用微软签名可执行文件作为 lolbin 的小型 PoC。

ids-ips-evasionpost-exploitationpenetration-testing+1
1403年前
Win32_Offensive_Cheatsheet preview

Win32_Offensive_Cheatsheet

GitHubmatthieu-hackwitharts/win32_offensive_cheatsheet

Win32 and Kernel abusing techniques for pentesters

persistence-mechanismsexploitationids-ips-evasion+8
9812年前
BypassAV preview

BypassAV

GitHubmatro7sh/bypassav

该地图列出了绕过杀毒软件和 EDR 的关键技术。

ids-ips-evasionpenetration-testingeducation+2
3.4k1年前
UnhookingPatch preview

UnhookingPatch

GitHubsaadahla/unhookingpatch

绕过 EDR 钩子,通过修补 NT API 存根,并在运行时解析 SSN 和系统调用指令。

ids-ips-evasionpost-exploitationred-teaming+2
3093年前
FilelessPELoader preview

FilelessPELoader

GitHubsaadahla/filelesspeloader

在内存中加载远程 AES 加密的 PE,解密并运行它

ids-ips-evasionpost-exploitationpenetration-testing+3
1.0k2年前
D1rkLdr preview

D1rkLdr

GitHubsaadahla/d1rkldr

采用间接动态系统调用实现的 Shellcode 加载器,支持 MAC 格式的 shellcode,从 PEB 解析 API,并在运行时解析 Syscall 调用及 syscall 指令地址

ids-ips-evasionshellcodered-teaming+1
3233年前
上一页1234…35下一页