GitHub 红队武器库🚨
14.1K subscribers
25 photos
8 videos
26.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: TodoApp-Nuclei
👤 项目作者: priyanshisoni14
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 01:01:45

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SQL注入 #漏洞

📦 项目名称: sql-inject-demo
👤 项目作者: dxiangwiki
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 03:02:22

📝 项目描述:
SQL注入教学演示,对比字符串拼接漏洞与参数化查询防御。Node+Express+MySQL,含3个标签页与滑动开关。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: Godot-0day-UNIX-OS-Command-Injection
👤 项目作者: SAAITAAMAA
🛠 开发语言: Unknown
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 02:08:11

📝 项目描述:
Godot 0day : OS Command Injection

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-48907
👤 项目作者: NONAME-ELV
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 05:54:13

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: SDL
👤 项目作者: evilthan9
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 04:09:57

📝 项目描述:
面向合规的漏洞管理系统的设计与实现

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Web-Cache-Poisoning-Lab
👤 项目作者: ManuelKy08
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 05:40:44

📝 项目描述:
Web Cache Poisoning & Cache Deception Lab - 4 real vector: web cache deception (css padding) bocorkan profil privat, poison 302 via unkeyed Host, unkeyed X-Forwarded-Host -> stored XSS massal, refleksi query param unkeyed. Flask + cache in-memory + endpoint curl, toggle RENTAN/FIXED, Docker. Localhost only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #二维码

📦 项目名称: FishingFun
👤 项目作者: kenton1215
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-14 23:51:02

📝 项目描述:
钓鱼爱好者与水族爱好者的分享、学习、展示与消费一体化平台

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #Fastjson #Shiro #漏洞

📦 项目名称: Lyrasuite
👤 项目作者: testitok
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 15:28:58

📝 项目描述:
Java 安全利用链生成器 & JNDI 服务 — 集成多种反序列化利用链、JNDI 注入、Shiro/Fastjson/SnakeYAML 漏洞利用的综合工具

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #红蓝对抗 #靶场

📦 项目名称: security-learning-notes
👤 项目作者: Personfun
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 07:02:09

📝 项目描述:
个人安全学习笔记。涵盖红蓝对抗、靶场实战、内网渗透、应急响应与代码审计。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-76461
👤 项目作者: HORKimhab
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 06:13:45

📝 项目描述:
CVE-2026-76461 - Draft or TODO

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: yara-malware-scanner
👤 项目作者: raihanaydinabrar
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 07:47:50

📝 项目描述:
Python-based malware scanner using YARA for static file analysis.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #CVE

📦 项目名称: vuln-platform
👤 项目作者: shreyaschanda23-sys
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 07:44:22

📝 项目描述:
Full-stack automated vulnerability scanning platform integrating 13 security tools (nmap, nuclei, sqlmap, subfinder, etc.) with CVE/EPSS/KEV enrichment, risk scoring, and real-time scan progress via WebSockets. FastAPI + Celery + React.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: C2-Remote-command-and-control
👤 项目作者: Jchountas
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:03:13

📝 项目描述:
A barebones command and control script for simple educational use across VMs and Cybersecurity labs

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Nebula
👤 项目作者: Trevohack
🛠 开发语言: Rust
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:02:28

📝 项目描述:
The powerful pretty C2 framework

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #AV

📦 项目名称: ps-
👤 项目作者: alygj
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 08:19:19

📝 项目描述:
ps远控shellcode免杀 360 火绒 Windows defender@LyoshaSorokin9

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: Web-Vulnerability-Reproduction
👤 项目作者: xs2024770
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:49:08

📝 项目描述:
DVWA 漏洞复现笔记与实战截图

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #POC #扫描 #利用 #Nuclei

📦 项目名称: ARL-Source-Install
👤 项目作者: wpsec
🛠 开发语言: JavaScript
Star数量: 120 | 🍴 Fork数量: 22
📅 更新时间: 2026-09-15 09:10:06

📝 项目描述:
基于 ARL 深度扩展与持续优化的互联网资产自动化收集平台,面向资产发现、暴露面梳理、风险排查与持续监测等场景,提供域名识别、子域名发现、测绘引擎查询、端口与服务识别、指纹分析、URL 提取、漏洞检测、计划任务与结果汇总等能力 系统适用于乙方专业安全厂商、甲方安全运维部门开展日常资产盘点、攻击面治理与安全运营、安服交付支撑工作。欢迎各位师傅提bug,共同维护~

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnScanner
👤 项目作者: c-herbart
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:47:59

📝 项目描述:
Lightweight Python web vulnerability scanner for authorized security testing, security-header analysis, form/XSS heuristics, port scanning, SSL/TLS inspection, and automated reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: SQLInection-Detector
👤 项目作者: gayathrirockster30
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:52:01

📝 项目描述:
Burp Suite Jython extension for authorized SQL and NoSQL injection detection using passive analysis and configurable active scans.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp-MCP-Me262
👤 项目作者: akhatkulov
🛠 开发语言: Kotlin
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-15 09:51:12

📝 项目描述:
MCP server for Burp Suite Pro — active scans, native fuzzer, Collaborator, reporting, scope-guarded. Works with Claude Code, Cursor, Cline, Windsurf & any MCP client.

🔗 点击访问项目地址