GitHub 红队武器库🚨
14K subscribers
24 photos
9 videos
25.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: cve-2026-32475-elementor-pro-lab
👤 项目作者: dinosn
🛠 开发语言: Shell
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 06:37:15

📝 项目描述:
A/B Docker lab + PoC for CVE-2026-32475 (Elementor Pro Forms unauthenticated arbitrary file upload -> RCE via validation/move loop desync)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2023-42793-TeamCity-Unauthenticated-RCE
👤 项目作者: burakacar6
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 06:29:06

📝 项目描述:
A PoC and automated version detection/exploit tool for JetBrains TeamCity Authentication Bypass & RCE (CVE-2023-42793).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-75865
👤 项目作者: ghostpels
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 07:53:02

📝 项目描述:
Unauthenticated arbitrary file upload -> RCE in WPLP Cookie Consent (gdpr-cookie-consent) <= 4.4.1 - technical write-up and PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: scanner
👤 项目作者: Millelith
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 08:03:31

📝 项目描述:
Millelith's vulnerability scanner tools

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: pyvscan
👤 项目作者: mstnisa
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 08:03:18

📝 项目描述:
Modular, non-destructive web application vulnerability scanner (SQLi, XSS, CSRF detection) with a Bootstrap 5 executive HTML report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: desync-saml-orm-ssti-chain
👤 项目作者: MalikHettige
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 07:44:53

📝 项目描述:
Operational research on the modern multi-stage chain

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: GaMMFkst
👤 项目作者: boom5497
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 03:57:01

📝 项目描述:
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于Jboss框架的渗透测试研究_7343e07d-dc1f-43ad-807b-cb4efaff1aa5.zip

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: VKdQQQXC
👤 项目作者: boom5497
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 03:42:47

📝 项目描述:
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于shiro框架的渗透测试研究_e55821e8-81e7-4719-aaf7-abbfc684ba7d.zip

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Megatron
👤 项目作者: d3ath69
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 09:14:49

📝 项目描述:
Lord Megatron is a 1 click vulnerability scanner

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #NTLM Relay #AD

📦 项目名称: AD_ENUM_TOOL_KIT
👤 项目作者: AkhilBangaru
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 10:54:59

📝 项目描述:
An interactive, all-in-one Active Directory enumeration and attack framework that unifies Responder, NTLM relay, IPv6 attacks, password spraying, and Impacket tooling into a single guided workflow.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: jimureport-2.5.1-rce
👤 项目作者: mhtsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 11:30:54

📝 项目描述:
JimuReport 2.5.1 pre-auth RCE: auth bypass via hardcoded X-Sign secret + Aviator expression injection + sandbox escape (CVE PoC)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现 #利用

📦 项目名称: vul-study
👤 项目作者: Qitangwen
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 11:36:26

📝 项目描述:
Web 安全漏洞复现实践仓库,记录漏洞原理、环境搭建、完整利用流程与修复方案,基于 Vulhub.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: VulnX
👤 项目作者: mustafajaved304
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 11:41:39

📝 项目描述:
Automated vulnerability assessment and risk analysis platform with Nmap scanning, CVE intelligence, binary analysis, YARA threat detection, and PDF security reporting

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: mimic
👤 项目作者: grit8086
🛠 开发语言: C
Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 10:56:51

📝 项目描述:
A utility to obfuscate and encrypt shellcode.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: lifelink
👤 项目作者: Suchetan1265
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 12:05:02

📝 项目描述:
Blood donor-hospital matching platform: Spring Boot 3, PostgreSQL, Redis GEO matching, RabbitMQ notifications, Quartz escalation jobs, React frontend

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: mcp-gateway
👤 项目作者: businessmcp
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 12:42:55

📝 项目描述:
SSRF guard and upstream-transport helpers extracted from BusinessMCP's MCP gateway (MIT)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: Vigil-DFIR
👤 项目作者: geezsecurity
🛠 开发语言: HTML
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 13:00:17

📝 项目描述:
Fast, self-hosted DFIR triage for Windows Event Logs (.evtx): Sigma + YARA + heuristic detections, MITRE ATT&CK, attack chains, and one-click PDF/DOCX reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: malice-yara
👤 项目作者: rufftruffles
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 12:38:06

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Lab-Vulnerability-Scanner-
👤 项目作者: HenryTun759
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 13:56:35

📝 项目描述:
Authorized-lab vulnerability scanner (FastAPI + SQLAlchemy) with JWT auth, CVSS v3.1 scoring, SSRF-hardened scanning, and PDF assessment reports. Portfolio project — scan only systems you own or have explicit permission to assess.

🔗 点击访问项目地址