GitHub 红队武器库🚨
14K subscribers
24 photos
8 videos
25.8K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: reburp
👤 项目作者: forefy
🛠 开发语言: Kotlin
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 10:59:46

📝 项目描述:
A Burp Suite extension that exposes the full Montoya API as a local REST API, with Swagger UI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #POC

📦 项目名称: JENKINS_GITHUBACTIONS_MIGRATION
👤 项目作者: rayapathisiva-code
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 10:59:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cybersecurity-vulnerability-scanner
👤 项目作者: Pragathi-Tarase
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 10:43:52

📝 项目描述:
A Python/Flask-based cybersecurity vulnerability scanner for authorized security testing. It checks SSL/TLS, HTTP security headers, cookies, common misconfigurations, and ports, then generates a security score and detailed reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: grype.bzl
👤 项目作者: arkeros
🛠 开发语言: Starlark
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 10:38:27

📝 项目描述:
Bazel rules for Grype, a vulnerability scanner for container images

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-20805-POC
👤 项目作者: ZeroDayEvil
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 11:29:37

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-67401-cPanel-EmailTrack-SQLi
👤 项目作者: jithinkrishnanrs
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 11:27:20

📝 项目描述:
CVE-2026-67401 cPanel & WHM EmailTrack SQL Injection — IOC scanner, compromise detection, patch verification, incident response and remediation toolkit.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ai-security-tool
👤 项目作者: ZeroDayEvil
🛠 开发语言: HTML
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-10 12:00:20

📝 项目描述:
Free open-source AI-powered security terminal & vulnerability scanner (CVE, SBOM). Supports SSH, SFTP, RDP, VNC, Serial, and 12+ autonomous AI agents (DeepSeek, OpenAI) for automated security workflows, CTF & DevSecOps. Cross-platform & Web UI.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-Exploit-Archive
👤 项目作者: m85thegoat
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 11:53:17

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-extension-store
👤 项目作者: OmniCyber-Security
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:04:12

📝 项目描述:
Private extension store for Burp Suite - installs and updates team extensions, Bambdas and BChecks from a catalogue you control

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-0303
👤 项目作者: YonLiud
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:54:32

📝 项目描述:
CVE-2026-0303 POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: smarttrip
👤 项目作者: GwegFromEarth
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:59:17

📝 项目描述:
SmartTrip - POC d'un assistant de voyage IA avec angular, spring boot et spring AI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: casc-analys
👤 项目作者: seismon
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:57:23

📝 项目描述:
💜 CASC-ANAYS — Global analytical complex for web recon: ports, HTTP, DNS, OSINT, subdomains, CVE, SQLi, XSS, LFI and stress-testing. 40+ tools, 7 modules, 4 report formats.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #CVE

📦 项目名称: workflow
👤 项目作者: esteiradeseguranca
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:59:57

📝 项目描述:
Reusable workflow (GitHub Actions + GitLab CI) da Esteira de Segurança — scan de segurança rodando no ambiente do cliente

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #模板注入

📦 项目名称: sstiscan
👤 项目作者: 485961590
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:41:30

📝 项目描述:
sstiscan 是一个基于 Go 1.24+ 的服务端模板注入(SSTI,Server-Side Template Injection)检测引擎,面向 Flask/Jinja2 目标的授权安全测试。它通过「随机基线标记 + 动态算术探针 + 过滤绕过升级 + 上下文比对 + 证据评分」判断参数是否被模板引擎求值,并输出结构化结果;标准语法被 WAF/过滤规则拦截时,自动以无害语法变体逐层重试并标注绕过路径。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: casc-anays
👤 项目作者: seismon
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:15:53

📝 项目描述:
💜 CASC-ANAYS — Global analytical complex for web recon: ports, HTTP, DNS, OSINT, subdomains, CVE, SQLi, XSS, LFI and stress-testing. 40+ tools, 7 modules, 4 report formats.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-78804_Dolibarr_authenticated_SQL_injection
👤 项目作者: repo4Chu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:31:40

📝 项目描述:
The action responsible for setting the per-warehouse stock alert threshold (`seuil_stock_alerte`) accepts user-controlled input and later incorporates it into an SQL query without proper numeric casting or parameter binding. #dolibarr #exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Simple-Vulnerability-Scanner
👤 项目作者: shaikayeshaparveen
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:55:51

📝 项目描述:
A Simple Vulnerability Scanner is a cybersecurity application that scans a system or website for common security weaknesses. It checks for issues such as open ports, weak configurations, outdated software indicators, and common web vulnerabilities, then generates a basic report with the detected risks and recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Acunetix-2026
👤 项目作者: CoatSnailGrab
🛠 开发语言: Shell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:42:49

📝 项目描述:
⭐️ Acunetix | Web Vulnerability Scanner 2026 | Setup Installer v14 | Patch Activator Keygen | License Key Pre-Activated | Full Version Serial | Latest Build Pro Updated | Get Desktop Working Windows 10/11 PC | Direct Genuine Original x64 ⭐️

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: claude-code-rce-win-poc
👤 项目作者: 0xC01DF00D
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:53:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #渗透

📦 项目名称: dsh-redteam-mode
👤 项目作者: Jueze-2019
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:01:35

📝 项目描述:
DSH RedTeam 模式:把 DeepSeek Harness 变成红队作战指挥台——一个靶标名称拉起信息收集/漏洞检测/漏洞利用/内网渗透四个角色,资产与战果实时落入本地 SQLite 事实库(仅供已授权测试)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: GraySentinel-DSOU-45Day-2026
👤 项目作者: Eswar5313
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:06:00

📝 项目描述:
Blue Team detection-engineering lab (GraySentinel DSOU, Day 1 — Zero-Day Discovery). Researched a vCenter rsyslog path-traversal-to-RCE scenario and shipped a 3-tripwire Sigma rule (traversal / cron-write / rsyslog-child-shell, ATT&CK T1053.003), validated with Atomic Red Team, plus a CISO report. Defensive artifacts only — no exploit code.

🔗 点击访问项目地址