GitHub 红队武器库🚨
14K subscribers
26 photos
9 videos
25.6K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-39987-PoC
👤 项目作者: stapat1245
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 20:10:36

📝 项目描述:
CVE-2026-39987 Proof of Concept

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: amber-unpacker
👤 项目作者: yarienkiva
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 19:39:17

📝 项目描述:
Amber shellcode unpacker.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: go-egress-proxy
👤 项目作者: hollis-labs
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 20:46:12

📝 项目描述:
Host-side, domain-allowlisted HTTP proxy for sandboxed child processes. SSRF guard, CONNECT TLS-port allowlist, hijacked-conn drain on Stop. Composes with go-sandbox via env-var injection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: concurrent-web-crawler
👤 项目作者: brohum10
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 20:24:16

📝 项目描述:
Concurrent Java crawler and BM25 search API with bounded jobs, SSRF defenses, PostgreSQL, Prometheus, Docker, and 19 tests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Beacon

📦 项目名称: beacon-score
👤 项目作者: 0xPersist
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 21:59:20

📝 项目描述:
Multi-signal C2 beacon detector. Correlates Zeek conn.log, dns.log, and ssl.log to score and rank beacon candidates with per-signal breakdowns and ATT&CK mapping.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Recon_2_Exploit
👤 项目作者: Bhuvaneshkumar1
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 00:52:30

📝 项目描述:
Cross-platform Python framework for automated reconnaissance, attack-surface mapping, security auditing, threat-risk analysis, CVE intelligence, and executive PDF reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: StrikeAgent_AtkBrain-Flash
👤 项目作者: xg106265
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 01:56:58

📝 项目描述:
由夜安团队研发的AI渗透测试平台,涵盖红队打点、SRC、CTF,特别是在红队领域有极为亮眼的存在

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #云元数据

📦 项目名称: agentic-ssrf-lab
👤 项目作者: shu1371
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 02:49:37

📝 项目描述:
工具型智能体 SSRF 实战 PoC:Agent 被说服访问内网/云元数据(零依赖可复跑)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: port-vulnerability-scanner
👤 项目作者: kpabellan
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 02:29:27

📝 项目描述:
Port and vulnerability scanner using Nmap.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC #命令执行

📦 项目名称: agentic-rce-lab
👤 项目作者: shu1371
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 02:49:34

📝 项目描述:
Agentic RCE 实战 PoC:工具型智能体命令执行劫持(直接注入+网页诱导,零依赖可复跑)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates

📦 项目名称: BugBountyCI
👤 项目作者: Tawffik
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 01:23:54

📝 项目描述:
Zero Track — AI-assisted bug bounty recon & vulnerability discovery pipeline on GitHub Actions (interesting-host prioritization, Tor-aware reliability, triage-ready artifacts)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: reflix
👤 项目作者: nexovir
🛠 开发语言: Python
Star数量: 28 | 🍴 Fork数量: 4
📅 更新时间: 2026-09-08 03:26:38

📝 项目描述:
A smart fuzzing and parameter injection tool designed to discover reflections and identify potential XSS attack vectors.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: backend-engineering-core-notes
👤 项目作者: a2rp
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 04:56:50

📝 项目描述:
Backend engineering core notes - Node internals, API design, authentication, security, caching, and observability explained with practical examples.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: idccmsV1.70_An-XSS_vulnerability_exists
👤 项目作者: ants01
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 04:36:34

📝 项目描述:
After setting up locally, log in to the backend,用户管理-备注,Write the POC to carry out the attack,poc:dasdasd'"><script>alert(123)</script>,Official website:http://idccms.com/softUpdate/9169.html

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: karuna28-Coder
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 06:35:21

📝 项目描述:
A Flask-based web vulnerability scanner for detecting common web security issues, analyzing security configurations, and generating security reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: gp-scanner
👤 项目作者: Gopyr
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 06:07:40

📝 项目描述:
YAML Template Vulnerability Scanner By Gopyr

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: EMLOG-Pro-2.6.29-An-XSS-vulnerability-exists-that-enables-attackers-to-upload-a-malicious-shell.
👤 项目作者: ants01
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 06:34:39

📝 项目描述:
Register a user, publish an article, and add the attack POC. When the administrator accesses the article, the shell is automatically uploaded. Then, connect using a backdoor tool.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #EXP

📦 项目名称: Jenkins
👤 项目作者: BHAVISHYA-RAJ-14
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 07:06:32

📝 项目描述:
Jenkins Exp

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: cve-2026-40369-exploit
👤 项目作者: dbgbgtf1
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 07:56:15

📝 项目描述:
Exploit inspired by `https://voidsec.com/cve-2026-40369-browser-sandbox-escape/`. Use Feature_RestrictKernelAddressLeak and forge token to Elevate privileges

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: web8-ssti-scan
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 07:43:08

📝 项目描述:
5h4d0wn1k cybersecurity tool - AUTHORIZED USE ONLY. Educational/own-lab. MIT.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: secops-agent-swarm
👤 项目作者: Manmath815
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-08 07:55:51

📝 项目描述:
An AI-powered SecOps Agent Swarm designed to automate the software security process. It detects vulnerabilities from security advisories, scans the codebase, verifies whether the vulnerability can be exploited, generates a fix, tests the fix, and creates a GitHub Pull Request.

🔗 点击访问项目地址