GitHub 红队武器库🚨
14K subscribers
24 photos
10 videos
25.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpIntruder
👤 项目作者: DarkKnightStealth
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 16:14:01

📝 项目描述:
A lightweight alternative to Burp Suite Intruder, built for fast and practical fuzzing. It supports automated payload injection, parameter testing, and customizable attack configurations—simple, focused, and effective for everyday security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: CVE-2026-0920
👤 项目作者: K3ysTr0K3R
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 17:06:40

📝 项目描述:
A PoC exploit for CVE-2026-0920 - LA-Studio Element Kit / Unauthenticated Privilege Escalation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: LocalVulnAI
👤 项目作者: BluHExH
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:00:44

📝 项目描述:
Local AI-powered vulnerability scanner. Scan code and websites offline using Ollama. Find common vulnerabilities with explanations and suggested fixes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Reflected

📦 项目名称: CVE-2026-52774-YESWIKI-XSS
👤 项目作者: 0xTerror
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 17:22:04

📝 项目描述:
a reflected XSS vulnerability in YesWiki's Bazar widget handler.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #EXP

📦 项目名称: abuse-ring-detector
👤 项目作者: kg067823
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:04:42

📝 项目描述:
abuse-ring-detector poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-2025-4255---Buffer-Overflow
👤 项目作者: Tenor-Z
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:02:41

📝 项目描述:
Exploit Framework for CVE-2025-4255

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: TestPHP-securitylab
👤 项目作者: CodeWhizX
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:59:17

📝 项目描述:
# TestPHP – Vulnerable Web Application A deliberately vulnerable PHP web application created for **web application security testing and ethical hacking practice**. ### Vulnerabilities Included * SQL Injection * Reflected Cross-Site Scripting (XSS) ### Technologies PHP, MySQL/MariaDB, Apache, HTML, CSS **Purpose:**

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ci-cd-api-security-lab
👤 项目作者: simranhedaoo14
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 15:00:26

📝 项目描述:
CI/CD API security lab with JWT, BOLA/IDOR & SSRF testing, automated SAST/DAST/SCA, and GitHub Actions security gates.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: PyJWTInspector
👤 项目作者: zjeweler
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:35:27

📝 项目描述:
形化 JWT 漏洞利用工具, 覆盖常见 JWT 漏洞. 解码 / 编码 / 签名校验 / 漏洞一键生成 / 字典爆破 / Payload 导出, 一站式完成.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: POC-CVE-2025-68613
👤 项目作者: rmhowe425
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:01:32

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: virtuprobe-burp-plugin
👤 项目作者: foobar-beer
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:42:42

📝 项目描述:
Burp Suite extension that bridges captured requests to VirtuProbe Studio for organizing and re-running them across projects

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #POC

📦 项目名称: SSTI-VULNE
👤 项目作者: fadilsyhptra
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 07:12:42

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: stylesmuggler-mitigation
👤 项目作者: disrex-group
🛠 开发语言: Unknown
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:13:14

📝 项目描述:
Emergency mitigation for StyleSmuggler, the unpatched Magento/Adobe Commerce RCE (Sansec, 2026-09-05). Web-server rules + CLI guard + compromise scanner.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cyberscan
👤 项目作者: mographiccode-cell
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:55:34

📝 项目描述:
CyberScan - AI-powered Vulnerability Scanner & Network Traffic Classifier

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: directory-listing-vulnerability-scanner
👤 项目作者: ashishvegan
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:32:40

📝 项目描述:
Directory Listing Vulnerability Scanner - Open Source Project by @ashishvegan

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-1529-Keycloak-Exploit-Tool
👤 项目作者: 0xlyvio
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:54:29

📝 项目描述:
Keycloak: Unauthorized organization registration via improper invitation token validation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-64747
👤 项目作者: eddinos2
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:23:59

📝 项目描述:
Root cause + macOS reachability PoC for CVE-2026-64747 (AppleAVE2 kext buffer overflow, fixed 26.6 / 905.40.1). Fully reversed AppleAVE2UserClient wire protocol, mode-5 LRB overflow math, IOKit PoC driving the configure path.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #CVE

📦 项目名称: CVE-2020-10770-keycloak-exploit-poc
👤 项目作者: 0xlyvio
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:57:43

📝 项目描述:
Keycloak Blind SSRF POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: DVWA-Lab4-XSS-Session
👤 项目作者: jewellerybusinesswomenclub-create
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:01:13

📝 项目描述:
DVWA Lab4: Reflected XSS, Stored XSS, Security Levels

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: defacer
👤 项目作者: HackfutSecRoot
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:55:42

📝 项目描述:
defacer tool by hackfut

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Python-RedTeam-C2-Framework
👤 项目作者: Michel-DV
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:45:45

📝 项目描述:
A lightweight Command & Control (C2) architecture implementation in Python. Designed to demonstrate client-server socket communication and remote shell execution for Red Teaming educational purposes.

🔗 点击访问项目地址