GitHub 红队武器库🚨
13.9K subscribers
24 photos
10 videos
25.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: XSSPECTER
👤 项目作者: Orest002
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 18:49:23

📝 项目描述:
DOM & reflected XSS scanner with payload mutation and headless-Chrome execution detection (Playwright).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: 100-days-of-yara
👤 项目作者: screwz475
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:45:30

📝 项目描述:
no rule of this repo is guaranteed to work properly

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: pdf-malware-analyzer
👤 项目作者: nishchaygaur
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:23:08

📝 项目描述:
A Flask-based PDF security analyzer that uses static analysis, weighted heuristics, YARA rules, and risk scoring to detect suspicious PDF characteristics.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored

📦 项目名称: CVE-2025-29471
👤 项目作者: skraft9
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:09:00

📝 项目描述:
Stored XSS in Nagios Log Server 2024R1.3.1

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: wildfly-rce-poc
👤 项目作者: chern0bit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:56:14

📝 项目描述:
Proof-of-concept exploits for two WildFly RCE paths: pre-authentication CORBA/IIOP deserialization and a Jackson JSON parser bypass. For authorized testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: thugsflooder
👤 项目作者: kawaiipantsu
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 19:37:38

📝 项目描述:
Scoped network/log load-generation TUI tool for authorized red-team/blue-team exercises — allowlist-only, audit-logged, marked synthetic traffic.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: Dropbox-XSS-to-OneDrive-Bearer
👤 项目作者: Federico1976
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 20:30:56

📝 项目描述:
Research PoC and write-up for a Dropbox Raw HTML sandbox → OneDrive MessagePort trust-boundary issue, demonstrating OAuth bearer acquisition, authenticated OneDrive access, and cross-account impact in a controlled lab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: vulnflask-lab
👤 项目作者: romaniks338
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 20:15:21

📝 项目描述:
Intentionally vulnerable Flask apps for learning web pentesting. Covers SQLi, Stored XSS, RCE, Path Traversal, Broken Auth. For educational use only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: dhruvguptaishere4050-creator
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:52:10

📝 项目描述:
A Flask-based web vulnerability scanner for educational, authorized security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: link-preview-api
👤 项目作者: v01dst
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:56:28

📝 项目描述:
Link unfurler API — URL in, OpenGraph/Twitter/favicon metadata out. SSRF-hardened, redirect-aware

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: compose-dockerfile-rce-poc
👤 项目作者: AbdullahAlmutawa
🛠 开发语言: Dockerfile
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:55:19

📝 项目描述:
PoC: Docker Compose build.dockerfile injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: compose-dockerfile-rce-test
👤 项目作者: AbdullahAlmutawa
🛠 开发语言: Dockerfile
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 22:51:27

📝 项目描述:
PoC for docker-compose build.dockerfile injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE #POC

📦 项目名称: gha-oidc-auditor
👤 项目作者: gamesapeca
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 23:04:24

📝 项目描述:
Static security analyzer, least-privilege cloud trust policy engine, and zero-prerequisite offensive exploit chain synthesizer for GitHub Actions OIDC workflows.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: kQwiFRvb
👤 项目作者: fireditoo
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 23:22:06

📝 项目描述:
2022算机毕设一套 终稿 基于web渗透技术的注入漏洞扫描工具及防护方法的研究与实现_(论文+python源代码+可执行文件)1.zip

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: EmRamirez12
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-04 23:39:14

📝 项目描述:
An automated network vulnerability scanner built in Python. Integrates Nmap for target scanning and service detection, with results persistently logged to an SQLite database managed by Alembic

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: FYP2025_
👤 项目作者: VIKENNN
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 00:31:17

📝 项目描述:
A modular Python web-server vulnerability scanner with real-time CVE correlation via a custom reverse-index database.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #Exploit

📦 项目名称: veneficus
👤 项目作者: abraxas
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 00:34:56

📝 项目描述:
Super elite end-to-end implant 0day. Full kill-chain. Exploit, escalate, pivot, poison, persistence.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: wm-poc-rce
👤 项目作者: GitWHS
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 02:03:59

📝 项目描述:
isolation-ring poc html

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #漏洞 #命令执行

📦 项目名称: showdoc-registerbyverify-rce
👤 项目作者: Mr-xn
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 00:10:23

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #文件上传 #漏洞

📦 项目名称: windbridge
👤 项目作者: yifanchen12
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 02:01:49

📝 项目描述:
WindBridge 风桥:局域网文件传输、移动端上传与双向文本桥接工具

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: POC-CVE-2026-7873
👤 项目作者: rmhowe425
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 02:50:19

📝 项目描述:
无描述

🔗 点击访问项目地址