GitHub 红队武器库🚨
14K subscribers
24 photos
9 videos
25.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Reflected

📦 项目名称: CVE-2026-52774-YESWIKI-XSS
👤 项目作者: 0xTerror
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 17:22:04

📝 项目描述:
a reflected XSS vulnerability in YesWiki's Bazar widget handler.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #EXP

📦 项目名称: abuse-ring-detector
👤 项目作者: kg067823
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:04:42

📝 项目描述:
abuse-ring-detector poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-2025-4255---Buffer-Overflow
👤 项目作者: Tenor-Z
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:02:41

📝 项目描述:
Exploit Framework for CVE-2025-4255

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: TestPHP-securitylab
👤 项目作者: CodeWhizX
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:59:17

📝 项目描述:
# TestPHP – Vulnerable Web Application A deliberately vulnerable PHP web application created for **web application security testing and ethical hacking practice**. ### Vulnerabilities Included * SQL Injection * Reflected Cross-Site Scripting (XSS) ### Technologies PHP, MySQL/MariaDB, Apache, HTML, CSS **Purpose:**

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ci-cd-api-security-lab
👤 项目作者: simranhedaoo14
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 15:00:26

📝 项目描述:
CI/CD API security lab with JWT, BOLA/IDOR & SSRF testing, automated SAST/DAST/SCA, and GitHub Actions security gates.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: PyJWTInspector
👤 项目作者: zjeweler
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 18:35:27

📝 项目描述:
形化 JWT 漏洞利用工具, 覆盖常见 JWT 漏洞. 解码 / 编码 / 签名校验 / 漏洞一键生成 / 字典爆破 / Payload 导出, 一站式完成.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: POC-CVE-2025-68613
👤 项目作者: rmhowe425
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:01:32

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: virtuprobe-burp-plugin
👤 项目作者: foobar-beer
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:42:42

📝 项目描述:
Burp Suite extension that bridges captured requests to VirtuProbe Studio for organizing and re-running them across projects

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #POC

📦 项目名称: SSTI-VULNE
👤 项目作者: fadilsyhptra
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 07:12:42

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: stylesmuggler-mitigation
👤 项目作者: disrex-group
🛠 开发语言: Unknown
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:13:14

📝 项目描述:
Emergency mitigation for StyleSmuggler, the unpatched Magento/Adobe Commerce RCE (Sansec, 2026-09-05). Web-server rules + CLI guard + compromise scanner.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cyberscan
👤 项目作者: mographiccode-cell
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:55:34

📝 项目描述:
CyberScan - AI-powered Vulnerability Scanner & Network Traffic Classifier

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: directory-listing-vulnerability-scanner
👤 项目作者: ashishvegan
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:32:40

📝 项目描述:
Directory Listing Vulnerability Scanner - Open Source Project by @ashishvegan

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-1529-Keycloak-Exploit-Tool
👤 项目作者: 0xlyvio
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:54:29

📝 项目描述:
Keycloak: Unauthorized organization registration via improper invitation token validation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-64747
👤 项目作者: eddinos2
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:23:59

📝 项目描述:
Root cause + macOS reachability PoC for CVE-2026-64747 (AppleAVE2 kext buffer overflow, fixed 26.6 / 905.40.1). Fully reversed AppleAVE2UserClient wire protocol, mode-5 LRB overflow math, IOKit PoC driving the configure path.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #CVE

📦 项目名称: CVE-2020-10770-keycloak-exploit-poc
👤 项目作者: 0xlyvio
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:57:43

📝 项目描述:
Keycloak Blind SSRF POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: DVWA-Lab4-XSS-Session
👤 项目作者: jewellerybusinesswomenclub-create
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:01:13

📝 项目描述:
DVWA Lab4: Reflected XSS, Stored XSS, Security Levels

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: defacer
👤 项目作者: HackfutSecRoot
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:55:42

📝 项目描述:
defacer tool by hackfut

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Python-RedTeam-C2-Framework
👤 项目作者: Michel-DV
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:45:45

📝 项目描述:
A lightweight Command & Control (C2) architecture implementation in Python. Designed to demonstrate client-server socket communication and remote shell execution for Red Teaming educational purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: yara-rules-malware-detection
👤 项目作者: mhebert-security
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:52:45

📝 项目描述:
YARA rule set for malware detection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malwagon-cli
👤 项目作者: Malwagon
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:46:33

📝 项目描述:
Scan a file for malware from your terminal. Automated malware analysis sandbox CLI with hypervisor-level agentless dynamic analysis, BYOVD kernel driver analysis and AI-assisted reporting. pip install malwagon

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Monitor

📦 项目名称: GTA-6-Steam-Key-Generator-Free-2026
👤 项目作者: arguslacrimalduct7914
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:30:04

📝 项目描述:
Generate free GTA 6 Steam keys in 2026 with our working, fast, and secure key generator for Windows.

🔗 点击访问项目地址