GitHub 红队武器库🚨
13.9K subscribers
24 photos
9 videos
25.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: ssrf-allowlist-bypass-companion
👤 项目作者: GapHunterLabs
🛠 开发语言: Kotlin
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 19:05:46

📝 项目描述:
Flags an outbound HTTP call using an endpoint parameter validated only with startsWith/contains against a raw URL string.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE #metadata

📦 项目名称: Redox-Web-Security-Testing-Methodology
👤 项目作者: Davit777888
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 17:47:40

📝 项目描述:
Targeted API Security Assessment: BAC, IDOR, SSRF & SSTI — Redox Engine (Scoped WSTG)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burpsuite-mcp
👤 项目作者: rylena
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 19:28:57

📝 项目描述:
Burp Suite full-control MCP extension and stdio bridge

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnHawk-Pentest
👤 项目作者: d1n35h703
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 19:41:32

📝 项目描述:
Automated web application vulnerability scanner with SQLi, XSS, traversal, CSRF, and header detection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: exploit-hf-openai-comics
👤 项目作者: MathFrenchToast
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 20:55:34

📝 项目描述:
A comics about the latest security incident where a swarm of openai AI agents infiltrate hugging face, how and why

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Root-My-Galaxy-Payloads
👤 项目作者: Memetic0
🛠 开发语言: C
Star数量: 2 | 🍴 Fork数量: 2
📅 更新时间: 2026-09-03 20:55:00

📝 项目描述:
Root My Galaxy exploit payloads — adds Samsung Galaxy S22+ (SM-S906B, S906BXXSNGZD7, kernel 5.10.237) support

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: basic-vulnerability-scanner
👤 项目作者: shauryagupta0106-bit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 20:39:32

📝 项目描述:
A beginner-friendly Python vulnerability scanner for detecting basic security issues in a controlled local environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: CIPA14-LAB4
👤 项目作者: Loveadeyinka
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 19:39:09

📝 项目描述:
XSS, Session Management & Authentication Resilience Assessment

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: courier
👤 项目作者: praetorian-inc
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 22:02:11

📝 项目描述:
Burp extension client and backend service that will enable two-way communications between Guard and the engineer on web application assessments

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Advanced_Vulnerability_Scanner
👤 项目作者: MahmoudAymanNoureddine
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 21:51:20

📝 项目描述:
An advanced Python-based vulnerability scanner with port scanning, service detection, banner grabbing, CVE mapping, risk assessment, reporting, and SQLite integration.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response #Detection

📦 项目名称: KWT5h13ld
👤 项目作者: SiteQ8
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-08 17:45:57

📝 项目描述:
KWT5H13LD is an open-source blue team security toolkit designed to protect, audit, and harden your infrastructure. One tool for everything — from cloud misconfiguration detection to incident response.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: dumpscan
👤 项目作者: moonrunnerkc
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 22:48:20

📝 项目描述:
Vulnerability scanner whose every result is a reproducible, signed claim. Pins the lockfile, the OSV feed, the version comparators, and the exclusions to four digests inside a signed in-toto predicate, so anyone can replay a scan byte for byte, or get a diff naming exactly which input moved.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burpsuite-cli
👤 项目作者: rylena
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 20:22:54

📝 项目描述:
Agent-first, headless web security testing CLI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: CIP-A104-Lab4-XSS-Session-Auth
👤 项目作者: Ransome-sitara
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 22:06:32

📝 项目描述:
Lab 4 - XSS, Session Management and Authentication Resilience Assessment on DVWA and Mutillidae II

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response

📦 项目名称: GTA-6-Cyberleek-Source-Files-Download
👤 项目作者: intheflesh-seconddegreeburn8572
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 23:46:20

📝 项目描述:
Access the complete GTA 6 Cyberleek source files for download, including scripts and assets, optimized for Windows 10/11.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: sentry
👤 项目作者: alyaanj-ux
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 23:08:02

📝 项目描述:
Local heuristic file scanner for Windows - explainable detections, human-verdict quarantine, desktop triage app

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: veneficus-implant-public
👤 项目作者: abraxas
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 01:00:11

📝 项目描述:
Spicy malware 0day. Full kill-chain malware: exploit, pivot, c2, persistence. Rust converted to pseudo-code - if you're smart you can build it youtself.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #CVE

📦 项目名称: cve-daily
👤 项目作者: laserduor
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 00:55:41

📝 项目描述:
🛡️ 每日 CVE 高危漏洞简报 (CVSS≥7.0 或 CISA KEV) · 自动从 cvelistV5 同步 · Powered by VitePress

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: GRT-MXLoader
👤 项目作者: RTS-Framework
🛠 开发语言: C
Star数量: 5 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 19:55:45

📝 项目描述:
A shellcode generator supporting common payload formats.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: 07-Web-Application-Security
👤 项目作者: kalantz
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-03 23:32:57

📝 项目描述:
A hands-on web application security lab covering SQL injection, XSS, LFI, directory enumeration, information disclosure, Burp Suite, and insecure session handling using DVWA and Mutillidae in an isolated lab environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #内网 #红队

📦 项目名称: Jingwei
👤 项目作者: Domren
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 00:52:52

📝 项目描述:
Jingwei 是一套面向红队/紫队场景的**全生命周期自动化渗透测试平台**。以“模拟高级威胁组织攻击行为”为核心设计理念,覆盖从外部侦察到内网全域占领的完整攻击链路。

🔗 点击访问项目地址