GitHub 红队武器库🚨
13.9K subscribers
22 photos
9 videos
25.2K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: muxxerfuzzer
👤 项目作者: FrankSx
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 09:57:06

📝 项目描述:
mXSS Fuzzer v4.1 BOUNTY HUNTER — HTML5 mutation-XSS fuzzer: 3-path differential oracle, 11-engine sanitizer matrix (DOMPurify/js-xss/Angular $sanitize/native Sanitizer API), sandbox exec canaries, ddmin minimal-PoC shrinker, dp-WARN evolver, 4-layer persistence. Local, offline, in-browser.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: Exploit-dev-sandbox
👤 项目作者: sahrfatima
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 09:58:07

📝 项目描述:
Custom-built vulnerable services (SQLi, Command Injection, IDOR) with working PoC exploits, Dockerized isolated lab, and full documentation — MSAK IT Hub Offensive Security capstone.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-27475
👤 项目作者: Trachinus
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 09:24:24

📝 项目描述:
PoC for CVE-2026-27475

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: dsh-pentester
👤 项目作者: fb0sh
🛠 开发语言: TypeScript
Star数量: 6 | 🍴 Fork数量: 2
📅 更新时间: 2026-09-01 10:54:15

📝 项目描述:
基于 DeepSeek Harness 的多 Agent PTES 渗透测试编排插件,支持自动化侦察、漏洞分析、验证与报告,使用 Docker/Kali 隔离工具箱 | Multi-agent PTES penetration testing plugin for DeepSeek Harness with automated recon, vulnerability analysis, validation, reporting, and Docker/Kali toolbox

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: TheAlchemist
👤 项目作者: I-blank-I
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 10:40:26

📝 项目描述:
Burp extension to tamper HTTP traffic at all 4 proxy pipeline stages with custom Java or Python snippets.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: mcp-internal-hosts
👤 项目作者: ni-c
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 10:49:57

📝 项目描述:
Is this host only reachable from where you stand? Classifies loopback, link-local and cloud-metadata hostnames — numerically, in every spelling

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS

📦 项目名称: Cyber-Defense-LSASS-Detection-Lab
👤 项目作者: yusuf-aq
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 09:37:51

📝 项目描述:
End-to-end SIEM deployment with custom rule detection for LSASS credential dumping (MITRE T1003.001)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-82592
👤 项目作者: HackSpeak
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 11:58:55

📝 项目描述:
D-Link DIR-825M formDiskFormat stack overflow + command injection RCE PoC (CVE-2026-82592); for authorized security testing

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS

📦 项目名称: lsass-Detection-Lab
👤 项目作者: yusuf-aq
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 11:26:07

📝 项目描述:
End-to-end SIEM deployment with custom detection rules for LSASS credential dumping (MITRE T1003.001)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #弱口令 #口令

📦 项目名称: netconfig-checker
👤 项目作者: idea1s
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 11:44:54

📝 项目描述:
华为设备配置合规核查工具:解析 display saved-configuration 配置,执行 Telnet/弱口令/SNMP/Trunk/NTP 等 10 条合规规则,支持自定义规则、历史记录与报告导出

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现 #CVE

📦 项目名称: cve-reproduction-reports
👤 项目作者: Chhhhhhhhhhhhhhh
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 12:52:54

📝 项目描述:
CVE 漏洞复现报告集 — 依据官方漏洞披露 + 本地授权环境复现, 记录原理/影响范围/复现步骤/修复方案

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: cve-2025-11142-axis-mediaclip-rce
👤 项目作者: kemrec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 12:30:33

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: TCGuard
👤 项目作者: kheiron13-37
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 13:59:33

📝 项目描述:
Crash, Exploit, Packet & Anti-Bot Protection for Minecraft Servers

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner
👤 项目作者: americoveloz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 13:46:54

📝 项目描述:
Python script to scan vulnerabilities on internet-connected infrastructure

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: jiejieskill
👤 项目作者: Jaycee701
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 10:07:58

📝 项目描述:
ai渗透测试skill

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队 #域控

📦 项目名称: security-skills
👤 项目作者: kwekre
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 06:04:06

📝 项目描述:
1404 安全与渗透测试 Agent Skills — 自包含、跨平台、按 35 类整理 (pentest / CTF / red-team / OSINT / web-security)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #OTP

📦 项目名称: samsung-sysdump-bypass
👤 项目作者: frosmoon
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 13:51:19

📝 项目描述:
Reverse engineering of the Samsung Sysdump (*#9900#) tool, revealing a hardcoded cryptographic key (CWE-798) used to bypass OTP authentication and unlock restricted features.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Quimera-extension
👤 项目作者: B3XAL
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 13:20:22

📝 项目描述:
Quimera browser extension: cookie management plus a client-side vulnerability scanner (Web Storage, DOM, postMessage, cookie flags), fork of Cookie-Editor with an optional bridge to the Quimera Burp extension.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware_analysis
👤 项目作者: ashi310
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 14:06:19

📝 项目描述:
Malware Analysis & Reverse Engineering Framework, MalwareLab is a basic cybersecurity project developed in Python for performing static analysis of suspicious files. The project analyzes files without executing them and provides information such as file metadata, cryptographic hashes, strings, entropy, YARA matches.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: 100-yara-rules
👤 项目作者: Shoninf
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 14:02:51

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: yara-malware-analyzer
👤 项目作者: amruta01-arch
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-01 15:04:07

📝 项目描述:
Web-based Malware Analysis using YARA Rules

🔗 点击访问项目地址