GitHub 红队武器库🚨
14.1K subscribers
25 photos
9 videos
26.2K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-23744
👤 项目作者: wvverez
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 15:59:44

📝 项目描述:
Un exploit para RCE que abusa de un endpoint en MCP. En concreto, a CVE-2026-23744 (MCPJam Inspector)

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpAuditScanTimeline
👤 项目作者: truongvip1
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 15:48:34

📝 项目描述:
Active Scan Timeline Viewer is a Burp Suite Professional extension for reviewing all HTTP traffic emitted by the native Active Scanner. It is not restricted to findings: every Scanner request is listed, along with its response when received.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vuln-scanner
👤 项目作者: touseef-tariq
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 16:58:35

📝 项目描述:
Python-based web vulnerability scanner for learning and authorized

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: Sana-Arshad535
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 16:51:23

📝 项目描述:
A Java-based automated web vulnerability scanner for SQLi, XSS, and Security Headers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: House-of-Liquor
👤 项目作者: Samriddha-Sapkota
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 16:24:59

📝 项目描述:
A deliberately vulnerable Flask web application built on Jinja2 to demonstrate SQL injection and Server-Side Template Injection (SSTI) via nmap, Gobuster, and tplmap to identify and exploit injection flaws.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #入侵

📦 项目名称: AI-HawkeyePy
👤 项目作者: 2714197689
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 16:13:51

📝 项目描述:
夜鹰是用 Python 实现的 Windows 应急响应工具,单文件 EXE,用于主机疑似被入侵后的现场采集:一次采全进程、服务、任务、启动项、账号、外连、日志与 YARA,约 40 秒完成,由规则引擎标为 low 或 suspicious 两档,每条附 risk_reason 供复核。规则可扩展是其主要特征——内置规则固定为 module、risk、reason、when 四段,支持十余种操作符并可用 func 调系统 API,用户还能在 userskills/ 目录用 YAML 改规则,无需改代码。AI 只做辅助、不下入侵结论,分 off、local、auto 三档,失败自动回退本地摘要;另有对话面板 King,具备工具调用与记忆能力。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-88533
👤 项目作者: HEMLOCK-LYK
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 17:54:38

📝 项目描述:
PoC and lab reproduction for CVE-2026-88533

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-48908
👤 项目作者: winrarzipsexploit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 17:50:21

📝 项目描述:
CVE-2026-48908 SP Page Builder (Joomla) unauth RCE suite — authorized testing only

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Squall
👤 项目作者: soliner01
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 17:12:57

📝 项目描述:
A lightweight static-analysis vulnerability scanner for identifying insecure coding choices

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: cybermart-lab-
👤 项目作者: abdulkadar-coder
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 17:58:02

📝 项目描述:
An intentionally vulnerable CyberMart storefront for practicing OWASP Top 10:2025 A05 - Injection. Practice SQL injection (product search), stored XSS (reviews), and OS command injection (network diagnostics) in a realistic e-commerce app. Includes flags to capture and a full solution write-up. For local educational use only - never deploy.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Dom-Explorer-Spaghetti-Edition
👤 项目作者: kibatche
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 17:14:19

📝 项目描述:
Recherches sur les mutated xss au sein du sanitizer de symphony

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #POC

📦 项目名称: traefik-fqdn-management-poc-openshift-aws
👤 项目作者: nubenetes
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 18:06:33

📝 项目描述:
Enterprise PoC: Traefik Proxy v3.0+ FQDN Management on Red Hat OpenShift v4.14+ (ROSA / AWS) comparing Traefik CRDs vs Kubernetes Gateway API

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-87930
👤 项目作者: winrarzipsexploit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 18:44:35

📝 项目描述:
CVE-2026-87930 Joomla Multi-CVE RCE suite — authorized testing only

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-27540
👤 项目作者: winrarzipsexploit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 18:44:29

📝 项目描述:
CVE-2026-27540 WWLC WordPress unauth upload RCE suite — authorized testing only

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: ZoneMinder-1.29.0-Stored-XSS
👤 项目作者: Henryisnotavailable
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 18:31:43

📝 项目描述:
Stored XSS I found in ZoneMinder during OSCP prep.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #RCE #利用

📦 项目名称: Security-Range-wed
👤 项目作者: Prohao42
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 19:00:35

📝 项目描述:
炸炸酥网安靶场是一款开源 WEB 安全学习平台,包含 80+ 独立靶场,覆盖从 HTTP 协议基础到业务逻辑漏洞的完整学习路径。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: BSOCylvD
👤 项目作者: owenbrave
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 15:54:24

📝 项目描述:
2022计算机毕设一套 终稿 (论文+程序源代码+使用说明)基于django的防一般web漏洞的人事管理系统_911fe0c2-b143-4a6f-938f-09a06ca2da8e.zip

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-1961-foreman-poc
👤 项目作者: kalnux
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 19:42:24

📝 项目描述:
PoC for CVE-2026-1961 — command injection in Foreman's WebSocket proxy (lib/ws_proxy.rb) via unsanitized compute resource hostname, leading to RCE as the foreman user. Responsibly disclosed and patched.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: exploitarium
👤 项目作者: nisadmrci
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 20:00:23

📝 项目描述:
Discover and exploit vulnerabilities with automated fuzzing workflows and hand-crafted PoCs for real-world targets.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-32604
👤 项目作者: K3ysTr0K3R
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 20:56:49

📝 项目描述:
A PoC exploit for CVE-2026-32604 - Spinnaker GitRepo Artifact RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: APK_Vulnerability_Scanner
👤 项目作者: 0x1R15
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-17 21:02:00

📝 项目描述:
An APK vulnerability scanner that analyzes Android application packages for security weaknesses, insecure configurations, exposed components, and potential risks, helping developers and security analysts assess application security before deployment or testing.

🔗 点击访问项目地址