GitHub 红队武器库🚨
13.9K subscribers
24 photos
10 videos
25.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc-test
👤 项目作者: nothingnhm
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 15:18:48

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: Logeshwaran-bit
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 15:46:37

📝 项目描述:
A Python-based network vulnerability scanner using Nmap to identify open ports and potential vulnerabilities.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: NovaC2
👤 项目作者: Cyb3rPh4nt0n
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 16:57:57

📝 项目描述:
A lightweight, asynchronous Command & Control (C2) framework built with Python, FastAPI, and NiceGUI, featuring secure AES-GCM encrypted communication for ethical hacking labs.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-19632
👤 项目作者: ghostpels
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 18:01:17

📝 项目描述:
Unauthenticated account takeover PoC for TranslatePress Multilingual <= 3.3.1 (WordPress)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-Vulnerability-Scanner
👤 项目作者: ng-sudo
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 17:58:46

📝 项目描述:
A web vulnerability scanning tool written in Python for checking already known website Vulnerabilities

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: TryHackMe---Ignite-Writeup
👤 项目作者: HackerRank7
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 17:48:56

📝 项目描述:
Complete walkthrough for the TryHackMe Ignite lab, detailing Fuel CMS 1.4.1 Remote Code Execution (RCE) exploitation and Linux Privilege Escalation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-19900-PoC
👤 项目作者: on3sk-0x1
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 18:09:19

📝 项目描述:
cve-2026-19900-PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: scanner
👤 项目作者: trevorcapps
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 18:54:52

📝 项目描述:
Vulnerability scanner based on nmap and nuclei

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: XSSPECTER
👤 项目作者: Orest002
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 18:49:23

📝 项目描述:
DOM & reflected XSS scanner with payload mutation and headless-Chrome execution detection (Playwright).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: 100-days-of-yara
👤 项目作者: screwz475
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:45:30

📝 项目描述:
no rule of this repo is guaranteed to work properly

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: pdf-malware-analyzer
👤 项目作者: nishchaygaur
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:23:08

📝 项目描述:
A Flask-based PDF security analyzer that uses static analysis, weighted heuristics, YARA rules, and risk scoring to detect suspicious PDF characteristics.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored

📦 项目名称: CVE-2025-29471
👤 项目作者: skraft9
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:09:00

📝 项目描述:
Stored XSS in Nagios Log Server 2024R1.3.1

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: wildfly-rce-poc
👤 项目作者: chern0bit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:56:14

📝 项目描述:
Proof-of-concept exploits for two WildFly RCE paths: pre-authentication CORBA/IIOP deserialization and a Jackson JSON parser bypass. For authorized testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: thugsflooder
👤 项目作者: kawaiipantsu
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:37:38

📝 项目描述:
Scoped network/log load-generation TUI tool for authorized red-team/blue-team exercises — allowlist-only, audit-logged, marked synthetic traffic.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: Dropbox-XSS-to-OneDrive-Bearer
👤 项目作者: Federico1976
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 20:30:56

📝 项目描述:
Research PoC and write-up for a Dropbox Raw HTML sandbox → OneDrive MessagePort trust-boundary issue, demonstrating OAuth bearer acquisition, authenticated OneDrive access, and cross-account impact in a controlled lab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: vulnflask-lab
👤 项目作者: romaniks338
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 20:15:21

📝 项目描述:
Intentionally vulnerable Flask apps for learning web pentesting. Covers SQLi, Stored XSS, RCE, Path Traversal, Broken Auth. For educational use only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: dhruvguptaishere4050-creator
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:52:10

📝 项目描述:
A Flask-based web vulnerability scanner for educational, authorized security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: link-preview-api
👤 项目作者: v01dst
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:56:28

📝 项目描述:
Link unfurler API — URL in, OpenGraph/Twitter/favicon metadata out. SSRF-hardened, redirect-aware

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: compose-dockerfile-rce-poc
👤 项目作者: AbdullahAlmutawa
🛠 开发语言: Dockerfile
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:55:19

📝 项目描述:
PoC: Docker Compose build.dockerfile injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: compose-dockerfile-rce-test
👤 项目作者: AbdullahAlmutawa
🛠 开发语言: Dockerfile
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:51:27

📝 项目描述:
PoC for docker-compose build.dockerfile injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE #POC

📦 项目名称: gha-oidc-auditor
👤 项目作者: gamesapeca
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 23:04:24

📝 项目描述:
Static security analyzer, least-privilege cloud trust policy engine, and zero-prerequisite offensive exploit chain synthesizer for GitHub Actions OIDC workflows.

🔗 点击访问项目地址