GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.6K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-88877-PoC-pwnVader
👤 项目作者: pwnVader
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:15:27

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-87915-PoC-pwnVader
👤 项目作者: pwnVader
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:00:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: capstone
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-22 23:50:03

📝 项目描述:
Academic capstone SIEM: real-time security event management with Isolation-Forest ML anomaly detection, multi-source collectors, YARA/Sigma rules, network monitoring, and a live dashboard (Python).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: r2-malware-sigs
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:49:35

📝 项目描述:
Malware signature matcher: YARA-lite text/hex/regex rules, signature extraction, MD5/SHA1/SHA256 hash database, IOC correlation, and JSON/Markdown reports for authorized triage.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: web3-csrf-tool
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:49:42

📝 项目描述:
CSRF security testing toolkit: token extraction and entropy analysis, form replay, HTML PoC generation, and bypass-technique assessment for authorized web pentests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: aryasalunkhe0511-web
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:32:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web11-cms-scan
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-22 23:27:10

📝 项目描述:
CMS vulnerability scanner - plugin/theme version fingerprinting and known-CVE matching.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: m7-pe-analyzer
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:10:44

📝 项目描述:
Windows PE analyzer - imports, sections, entropy and packer heuristics for malware triage.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: m10-bin-diff
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:10:43

📝 项目描述:
Binary diff tool - patch/version analysis via similarity scoring for malware lineage tracking.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: web12-browser-exploit
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:09:13

📝 项目描述:
Browser exploitation lab - DOM-based attacks and client-side defense exercises.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates

📦 项目名称: Firebase_Nuclei
👤 项目作者: CypherNova1337
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:19:03

📝 项目描述:
Nuclei template for thorough Firebase service discovery - realtime database, firestore, storage, hosting, functions and linked GCP endpoints, with strict matching.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
👤 项目作者: rabakuku
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:49:03

📝 项目描述:
Critical Zero-Authentication Vulnerability Alert! CVE-2026-87902 carries a massive CVSS 9.2 rating affecting nearly every version of WordPress Core from 4.7.0 up through 7.1.1. how attackers chain it with PHP environments to achieve full Remote Code Execution (RCE), and exactly how to mitigate and patch it immediately. 

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-93616-PoC
👤 项目作者: nebula031
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:43:01

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: m6-backup-extract
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:24:07

📝 项目描述:
Backup extraction analyzer - mines device backups for credentials, keys and sensitive data.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Application-for-Vul-Scanner
👤 项目作者: 008479010-source
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:20:53

📝 项目描述:
Vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ayron-tools-api
👤 项目作者: ayronjins
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 03:29:27

📝 项目描述:
SSRF-hardened FastAPI service behind the DNS/TLS and site-metadata tools on ayron.in. Pins connections to pre-validated IPs to defeat DNS rebinding.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: klg-xss-hailamdev
👤 项目作者: xuanhai0913
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 04:36:52

📝 项目描述:
Authorized security research prototype for KLG/XSS analysis.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: cve-2026-87902-wordpress-lfi-lab
👤 项目作者: dinosn
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 05:20:16

📝 项目描述:
Reproduction lab + URL-list scanner + PoC for CVE-2026-87902 / GHSA-7hp8-65ch-5whp — WordPress get_page_template() unauthenticated LFI to conditional RCE (WP 4.7.0-7.1.1, fixed 7.1.2). Authorized/defensive testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fortinet #CVE

📦 项目名称: heretix-management
👤 项目作者: TITeee
🛠 开发语言: TypeScript
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:01:35

📝 项目描述:
Vulnerability management dashboard tracking CVEs across servers, containers, and network appliances (Fortinet, Palo Alto Networks, Cisco, and more), with EPSS/KEV prioritization, SLA tracking, and VEX triage. Self-hosted; Next.js, Prisma, PostgreSQL.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: requestcraft
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:52

📝 项目描述:
GET/POST HTTP request handling from raw bytes to a hardened web app, with the XSS attacks/defenses built on top, in PHP and Node.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: foster-parser
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:32

📝 项目描述:
HTML5 parser internals from scratch: insertion modes, the stack of open elements, the foster-parenting algorithm, and how it enables mutation XSS.

🔗 点击访问项目地址