GitHub 红队武器库🚨
14K subscribers
24 photos
8 videos
25.9K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-extension-store
👤 项目作者: OmniCyber-Security
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:04:12

📝 项目描述:
Private extension store for Burp Suite - installs and updates team extensions, Bambdas and BChecks from a catalogue you control

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-0303
👤 项目作者: YonLiud
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:54:32

📝 项目描述:
CVE-2026-0303 POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: smarttrip
👤 项目作者: GwegFromEarth
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:59:17

📝 项目描述:
SmartTrip - POC d'un assistant de voyage IA avec angular, spring boot et spring AI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: casc-analys
👤 项目作者: seismon
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 12:57:23

📝 项目描述:
💜 CASC-ANAYS — Global analytical complex for web recon: ports, HTTP, DNS, OSINT, subdomains, CVE, SQLi, XSS, LFI and stress-testing. 40+ tools, 7 modules, 4 report formats.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #CVE

📦 项目名称: workflow
👤 项目作者: esteiradeseguranca
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:59:57

📝 项目描述:
Reusable workflow (GitHub Actions + GitLab CI) da Esteira de Segurança — scan de segurança rodando no ambiente do cliente

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #模板注入

📦 项目名称: sstiscan
👤 项目作者: 485961590
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:41:30

📝 项目描述:
sstiscan 是一个基于 Go 1.24+ 的服务端模板注入(SSTI,Server-Side Template Injection)检测引擎,面向 Flask/Jinja2 目标的授权安全测试。它通过「随机基线标记 + 动态算术探针 + 过滤绕过升级 + 上下文比对 + 证据评分」判断参数是否被模板引擎求值,并输出结构化结果;标准语法被 WAF/过滤规则拦截时,自动以无害语法变体逐层重试并标注绕过路径。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: casc-anays
👤 项目作者: seismon
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 13:15:53

📝 项目描述:
💜 CASC-ANAYS — Global analytical complex for web recon: ports, HTTP, DNS, OSINT, subdomains, CVE, SQLi, XSS, LFI and stress-testing. 40+ tools, 7 modules, 4 report formats.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-78804_Dolibarr_authenticated_SQL_injection
👤 项目作者: repo4Chu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:31:40

📝 项目描述:
The action responsible for setting the per-warehouse stock alert threshold (`seuil_stock_alerte`) accepts user-controlled input and later incorporates it into an SQL query without proper numeric casting or parameter binding. #dolibarr #exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Simple-Vulnerability-Scanner
👤 项目作者: shaikayeshaparveen
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:55:51

📝 项目描述:
A Simple Vulnerability Scanner is a cybersecurity application that scans a system or website for common security weaknesses. It checks for issues such as open ports, weak configurations, outdated software indicators, and common web vulnerabilities, then generates a basic report with the detected risks and recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Acunetix-2026
👤 项目作者: CoatSnailGrab
🛠 开发语言: Shell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:42:49

📝 项目描述:
⭐️ Acunetix | Web Vulnerability Scanner 2026 | Setup Installer v14 | Patch Activator Keygen | License Key Pre-Activated | Full Version Serial | Latest Build Pro Updated | Get Desktop Working Windows 10/11 PC | Direct Genuine Original x64 ⭐️

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: claude-code-rce-win-poc
👤 项目作者: 0xC01DF00D
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 14:53:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #渗透

📦 项目名称: dsh-redteam-mode
👤 项目作者: Jueze-2019
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:01:35

📝 项目描述:
DSH RedTeam 模式:把 DeepSeek Harness 变成红队作战指挥台——一个靶标名称拉起信息收集/漏洞检测/漏洞利用/内网渗透四个角色,资产与战果实时落入本地 SQLite 事实库(仅供已授权测试)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: GraySentinel-DSOU-45Day-2026
👤 项目作者: Eswar5313
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:06:00

📝 项目描述:
Blue Team detection-engineering lab (GraySentinel DSOU, Day 1 — Zero-Day Discovery). Researched a vCenter rsyslog path-traversal-to-RCE scenario and shipped a 3-tripwire Sigma rule (traversal / cron-write / rsyslog-child-shell, ATT&CK T1053.003), validated with Atomic Red Team, plus a CISO report. Defensive artifacts only — no exploit code.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-20805-PoC
👤 项目作者: ZeroDayEvil
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:49:18

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: eye
👤 项目作者: 00xZ
🛠 开发语言: Shell
Star数量: 25 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-10 15:52:09

📝 项目描述:
My personal pretesting recon/low hanging fruit script. Uses Gxss, Dalfox, and a few other scripts to scan all of a domain(and/or subdomains as well) for user inputs, checks if reflected, tests for sqli, xss, open red. and a few more. This is really just for my personal use.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: voidsyscall
👤 项目作者: VoidSecSoftwares
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:55:07

📝 项目描述:
Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No winapi layer.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: SQliLeadToRCE
👤 项目作者: dtkien205
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 15:42:17

📝 项目描述:
Docker-based cybersecurity lab demonstrating SQL Injection to Remote Code Execution (RCE) using PHP, PostgreSQL, and SQLite in a controlled environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-83991-WriteUP-and-PoC
👤 项目作者: ZeroDayVPN
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 16:11:55

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: tesbot-analysis
👤 项目作者: xyraopsec
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 16:29:12

📝 项目描述:
TesBot Malware RE Analysis - Complete reverse engineering, YARA rules, detection tools, and IOC indicators

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: GutenPwn
👤 项目作者: Hayder-Rzaigui
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-10 17:04:22

📝 项目描述:
GutenPwn — A modular, protocol-complete security assessment framework for network printers: PJL, PostScript, PCL, IPP, LPD, SMB — 185+ exploit modules, CVE detection, credential auditing, and post-exploitation, all behind one CLI. Built for authorized penetration testing

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0