GitHub 红队武器库🚨
14.1K subscribers
25 photos
9 videos
26K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #CVE

📦 项目名称: cicd-compass-app
👤 项目作者: sachinthokal
🛠 开发语言: CSS
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 22:04:18

📝 项目描述:
CICD Compass is a production-grade educational and reference DevSecOps application built with Spring Boot (Java 21) and an interactive, dark-themed Mission Control Dashboard. It models and visualizes the 6 critical stages of an enterprise CI/CD delivery lifecycle alongside live runtime telemetry probes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: android-malware-yara
👤 项目作者: Khamami13
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 23:06:03

📝 项目描述:
YARA rules + hybrid scanner untuk deteksi keluarga malware APK Android (static analysis)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: transaction-poc
👤 项目作者: henrickdaniel
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 23:06:18

📝 项目描述:
POC com alguns exemplos e testes para analisar o comportamento do Spring em relação a transação

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #EDR #AV

📦 项目名称: Maldev-C
👤 项目作者: m4n14ck
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 22:44:55

📝 项目描述:
MalDev-C — Técnicas de desarrollo de malware en C para operadores de Red Team. Inyección de procesos, ejecución de shellcode, hooking de APIs, evasión de AV/EDR, persistencia y fundamentos de C2. WinAPI puro. Sin frameworks. Sin dependencias. Solo C e internals de Windows.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: XSSAM
👤 项目作者: clipsncore911
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 23:17:42

📝 项目描述:
XSSAM is a professional XSS Reconnaissance & Validation framework for authorized bug-bounty testing. Featuring an async crawler, JS endpoint mining, and context-aware mutations, it uses Playwright for behavioral validation (sink-hooking) to eliminate false positives. Delivers high-fidelity HTML/JSON reports with proof-of-execution evidence.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: HUGINN
👤 项目作者: BeardedVikingTX
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 21:36:58

📝 项目描述:
Automated recon & vulnerability discovery suite for authorized security testing. Five scanners — SQLi, XSS, SSRF, Open Redirect, Path Traversal — with 896 payload templates, OOB callback confirmation, and report-ready output. Named for Odin's raven. Speak, and the ravens shall listen.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #MFA

📦 项目名称: seleniumbase-mcp
👤 项目作者: seleniumbase
🛠 开发语言: Python
Star数量: 7 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 01:03:02

📝 项目描述:
SeleniumBase MCP Servers. Browser automation that bypasses anti-bot systems and handles web-scraping.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: google-secops-batch-retrohunt
👤 项目作者: hzmndt
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 01:06:06

📝 项目描述:
Batch retrohunt orchestrator across hundreds of YARA-L detection rules for Google SecOps using secops-wrapper SDK with concurrency limits and safe alerting controls.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-analysis-tool
👤 项目作者: rufaidaafrin
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 01:52:54

📝 项目描述:
Python + Nmap network vulnerability scanner with a GUI, built to learn service detection and CVE analysis workflows.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #演练

📦 项目名称: PhishSettings-v2.0
👤 项目作者: lalazi-tech
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 01:28:38

📝 项目描述:
钓鱼演练-用户端-系统设置

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: yara-research
👤 项目作者: rajramdsci
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 02:53:45

📝 项目描述:
Repo for Yara rule generation and validation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: spade
👤 项目作者: RiloArbabillah
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 02:40:37

📝 项目描述:
Automated web vulnerability scanner with 3 modes (quick/standard/detailed). Detects SQLi, XSS, LFI, CMDi, SSRF, XXE, GraphQL introspection, sensitive files, misconfigurations, and more.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-20079-checker
👤 项目作者: DiegoArias008
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 02:39:01

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: ghostlock-cve-2026-43499-4.19-k40
👤 项目作者: ccp-p
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 00:50:52

📝 项目描述:
GhostLock CVE-2026-43499 Redmi K40 (alioth 4.19.157) adaptation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: afl-0day-hunt
👤 项目作者: syrex1013
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 20:56:37

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #CVE

📦 项目名称: IQOOz9t-tmp-root-CVE-64560
👤 项目作者: Momu02
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 04:05:47

📝 项目描述:
IQOOz9turbo对64560提权研究失败总结

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
Forwarded from 阿粿~~
This media is not supported in your browser
VIEW IN TELEGRAM
😂😂😂😂 😂😂😂😂
老品牌,值得信赖、相信品牌的力量

➡️ 豪礼大放送、高端嫩模、劳力士手表、奔驰E300 加入 #球速体育 等你领取, 电子可拉2万一注

🌐球速体育官网: qsty685.cc
TG玩家首选人民币台 不限ip 免实名免绑卡手机号码

🌐N1国际官网: n1727.com
TG玩家首选U台 U存U提出款稳,福利好反水无上限


😀😀😀😀😀😀😀😀😀😀😀😀😀

1.
泰国大老板百家乐存50万出512万
2.
斯里兰卡神秘大哥连续5天总提4000万+
3.
实力盘总PA真人喜提990万一路爆红
4.
pp电子糖果1000小注一拉爆出70万大奖

🔤🔤🔤🔤 以及C币,K豆,OKpay、👌微信,👌支付宝,银行卡等30多种存取款方式,通畅便捷

大额出款额外奖励8888-128888,双重日存彩金128888+4688每日送,周流水彩金68888每周送,双重签到彩金16888+3888送不停

😅😏😃😃🙃😢😅😚😍😀😏😝
【 球速体育 安全有保障】
老品牌值得信赖、安全第一、保障第一
不限ip、免实名、免绑卡、免绑手机号码
每日存款彩金每日送,每笔存款加赠1%

🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩
球速体育频道: @PG012456
N1国际频道:
@N1GFFL
体育推荐:
@qsty789
专属客服:
@shiya168
双向联系:
@shiya168_bot


🌐 N1国际网址:
n1727.com
🌐 球速体育网址:
qsty685.cc
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: SvgValidator
👤 项目作者: interactivetools-com
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 04:49:59

📝 项目描述:
Rejects uploaded SVG files that could run script, load an outside resource, or hang a renderer. Matches what browsers allow for SVG in an <img> tag, streams the file once at about 100 MB/s, and never rewrites it.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-90782-s2opc-status-clobber
👤 项目作者: HarshRajSinghania
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 05:42:31

📝 项目描述:
Standalone PoC for CVE-2026-90782: status-clobbering NULL dereference in S2OPC alloc_notification_message_items() (DataChange fails, Event succeeds)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-85706
👤 项目作者: gabrielunknown
🛠 开发语言: Perl
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 05:14:39

📝 项目描述:
CVE-2026-85706 — GitLab Unauthenticated Arbitrary File Read exploit PoC.

🔗 点击访问项目地址