Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories

工具

全部Android安全身份验证与授权云基础设施安全防御工具磁盘取证嵌入式系统安全通用工具危害指标 (IOC) 管理OSINT (开源情报)数据包嗅探与分析密码破解渗透测试框架钓鱼工具权限提升侦察静态分析漏洞扫描器Web漏洞扫描器Wi-Fi审计蓝牙安全容器安全动态分析 (沙盒)加密/解密工具漏洞利用框架身份管理iOS安全物联网安全内存取证网络映射社会工程学OSINT密码攻击Payload生成持久化机制端口扫描静态代码分析 (SAST)威胁源与聚合器漏洞分析Web代理与拦截代码分析DNS和子域名枚举动态代码分析 (DAST)漏洞利用哈希分析IDS/IPS规避冒充工具横向移动移动应用渗透测试网络取证逆向工程RFID/NFC工具SCADA/ICS安全脚本与自动化无服务器安全ShellcodeWeb应用程序漏洞利用API安全测试配置审计数据泄露调试器取证分析信息收集移动取证网络访问控制后渗透利用安全虚拟化钓鱼攻击WAF绕过Web安全模糊测试网络安全隐写术无线安全数据恢复恶意软件分析数字取证硬件黑客密码学CTF渗透测试云安全DevSecOps移动安全隐私保护命令与控制社会工程学硬件安全实用工具与框架硬件与物联网安全秘密检测二进制分析威胁情报身份与访问管理 (IAM)供应链安全身份验证机器学习入侵检测论文与研究错误配置子域名枚举电子邮件收集学习与教育AI 辅助逆向DNS 模糊测试红队事件响应网络爬虫精选资源远程访问工具Shellcode 生成Payload 开发远程访问木马API 安全反机器人指纹欺骗CAPTCHA 绕过电子邮件安全DNS 分析混沌工程学习路径与课程容器逃逸AI 安全数据库安全固件分析异常检测日志分析对抗性攻击二进制利用实验室与实践
最新相关性最受欢迎最近更新
5849 结果
Windows-Defender-Security-Auditor-CVE-2026-50656- preview

Windows-Defender-Security-Auditor-CVE-2026-50656-

GitHubeh-amish/windows-defender-security-auditor-cve-2026-50656-

适用于 Windows 终端和服务器的只读 PowerShell 安全审计工具:检查 Defender 配置、补丁状态、凭据、持久化、网络遥测,并搜寻已知攻击活动的 IOC(入侵指标)。

defensive-toolsioc-managementpersistence-mechanisms+8
4天前
CVE-2023-48795 preview

CVE-2023-48795

GitHubhav0cx0/cve-2023-48795

通过抓取 22 端口上的横幅来扫描受 Terrapin 漏洞影响的 OpenSSH 版本 SSH 服务器,便于快速开展内部审计、渗透测试和漏洞评估。

vulnerability-scannersvulnerability-analysisinformation-gathering+2
1年前
CVE-2023-22047---Oracle-PeopleSoft-LFI preview

CVE-2023-22047---Oracle-PeopleSoft-LFI

GitHub0xterror/cve-2023-22047---oracle-peoplesoft-lfi

CVE-2023-22047 是 Oracle PeopleSoft Enterprise PeopleTools 中的一个严重的未认证本地文件包含(LFI)漏洞。此漏洞利用允许攻击者在无需任何认证的情况下读取目标服务器上的任意文件。

vulnerability-analysisexploitationweb-application-exploitation+3
5天前
CVE-2023-22047-Oracle-PeopleSoft-LFI preview

CVE-2023-22047-Oracle-PeopleSoft-LFI

GitHub0xterror/cve-2023-22047-oracle-peoplesoft-lfi

CVE-2023-22047 是 Oracle PeopleSoft Enterprise PeopleTools 中的一个严重的未认证本地文件包含(LFI)漏洞。该漏洞允许攻击者在无需任何认证的情况下读取目标服务器上的任意文件。

vulnerability-analysisexploitationweb-application-exploitation+3
5天前
CVE-2026-8794 preview

CVE-2026-8794

GitHubh4zaz/cve-2026-8794

通过 PaperCut NG 中的认证时序侧信道进行用户名枚举

reconnaissancevulnerability-analysisweb-application-exploitation+4
5天前
cve-2021-21994_POC preview

cve-2021-21994_POC

GitHubmreza-en/cve-2021-21994_poc

通过探测/模糊测试工具验证并利用 VMware ESXi SFCB 身份验证绕过漏洞(CVE-2021-21994),实现未认证的 CIM-XML 枚举。

vulnerability-analysisexploitationinformation-gathering+3
5天前
Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299 preview

Vulnerability Findings Database -- VulnBook-deletion_scheduled-85395299

GitLabt-beckett/vulnbook-deletion_scheduled-85395299

离线优先的漏洞发现跟踪器,可并行搜索 11 个 CVE 数据库,添加 EPSS/KEV 增强信息,并管理协调披露截止日期。

defensive-toolsthreat-feeds-aggregatorsvulnerability-analysis+2
5天前
Livewire2025CVE preview

Livewire2025CVE

GitHube4zyy/livewire2025cve

快速 Python 扫描器,检测存在漏洞的 Laravel Livewire v3 站点(CVE-2025-54068,CVSS 9.2)。将有风险的站点分离到 vuln.txt,安全站点分离到 safe.txt。

vulnerability-scannersweb-vulnerability-scannersvulnerability-analysis+2
37个月前
One-Liner-Collections preview

One-Liner-Collections

GitHubcybertix-pvt-ltd/one-liner-collections

该仓库包含带描述和安装要求的 One Liners 列表。

vulnerability-scannersweb-application-exploitationinformation-gathering+5
5091年前
fingerprint-pro-internals preview

fingerprint-pro-internals

GitHubproofofbots/fingerprint-pro-internals

记录 Fingerprint Pro 商业代理的内部实现,而非开源 FingerprintJS 库

static-analysiscode-analysisreverse-engineering+4
16天前
FTP-vsFTPD-CVE-2011-2523-VAPT-Report preview

FTP-vsFTPD-CVE-2011-2523-VAPT-Report

GitHubsonalisarkar-2003/ftp-vsftpd-cve-2011-2523-vapt-report

针对 vsFTPd 2.3.4 后门 CVE-2011-2523 的 VAPT 报告,涵盖 Nmap 漏洞扫描、Metasploit 漏洞利用、后渗透 root 权限获取及修复措施。

exploit-frameworksvulnerability-analysisexploitation+5
7天前
CVE-2026-72550-poc preview

CVE-2026-72550-poc

GitHubabdugafforov-bobur/cve-2026-72550-poc

CVE-2026-72550 — Friendica 未认证堆叠查询 SQL 注入 PoC (CVSS 9.8 严重)

vulnerability-analysisexploitationweb-application-exploitation+4
6天前
CVE-2026-56292-AcyMailing-SQLi preview

CVE-2026-56292-AcyMailing-SQLi

GitHubnullwhisper/cve-2026-56292-acymailing-sqli

CVE-2026-56292 - 用于 Joomla 的 AcyMailing 未认证 SQL 注入扫描器

vulnerability-scannersweb-vulnerability-scannersexploitation+3
7天前
mmiotic preview

mmiotic

GitHubxoreaxeaxeax/mmiotic

无文档硬件的延迟 X 射线透视

reconnaissancereverse-engineeringinformation-gathering+2
1339天前
ALPC-Enumerator preview

ALPC-Enumerator

GitHubtalha-nazeef-ahmed/alpc-enumerator

一个用于枚举和分类 ALPC 端口的 Windows 用户态工具,包括受 PPL 保护的进程。

reconnaissancevulnerability-analysisreverse-engineering+4
248天前
CVE-2026-24031 preview

CVE-2026-24031

GitHubaramosf/cve-2026-24031

自包含的 Python PoC,用于 Dovecot SQL 认证绕过:无需真实密码即可以任意用户身份登录,并枚举存在漏洞的 2.4.0/3.1.0 IMAP/POP3 服务器上的用户名。

authentication-authorizationvulnerability-analysisexploitation+4
28天前
CVE-2026-48908-by-yora preview

CVE-2026-48908-by-yora

GitHubyora1928/cve-2026-48908-by-yora

影响 SP Page Builder 的 CVE-2026-48908 被动安全检测器

reconnaissancevulnerability-scannersweb-vulnerability-scanners+7
28天前
GhostESP preview

GhostESP

GitHubghostesp-revival/ghostesp

面向 ESP32 的开源无线研究平台。

embedded-systems-securitywi-fi-auditingbluetooth-security+8
8941天前
上一页123…325下一页