GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
26.7K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-93616-PoC
👤 项目作者: nebula031
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:43:01

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: m6-backup-extract
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:24:07

📝 项目描述:
Backup extraction analyzer - mines device backups for credentials, keys and sensitive data.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Application-for-Vul-Scanner
👤 项目作者: 008479010-source
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:20:53

📝 项目描述:
Vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ayron-tools-api
👤 项目作者: ayronjins
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 03:29:27

📝 项目描述:
SSRF-hardened FastAPI service behind the DNS/TLS and site-metadata tools on ayron.in. Pins connections to pre-validated IPs to defeat DNS rebinding.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: klg-xss-hailamdev
👤 项目作者: xuanhai0913
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 04:36:52

📝 项目描述:
Authorized security research prototype for KLG/XSS analysis.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: cve-2026-87902-wordpress-lfi-lab
👤 项目作者: dinosn
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 05:20:16

📝 项目描述:
Reproduction lab + URL-list scanner + PoC for CVE-2026-87902 / GHSA-7hp8-65ch-5whp — WordPress get_page_template() unauthenticated LFI to conditional RCE (WP 4.7.0-7.1.1, fixed 7.1.2). Authorized/defensive testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fortinet #CVE

📦 项目名称: heretix-management
👤 项目作者: TITeee
🛠 开发语言: TypeScript
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:01:35

📝 项目描述:
Vulnerability management dashboard tracking CVEs across servers, containers, and network appliances (Fortinet, Palo Alto Networks, Cisco, and more), with EPSS/KEV prioritization, SLA tracking, and VEX triage. Self-hosted; Next.js, Prisma, PostgreSQL.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: requestcraft
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:52

📝 项目描述:
GET/POST HTTP request handling from raw bytes to a hardened web app, with the XSS attacks/defenses built on top, in PHP and Node.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: foster-parser
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:32

📝 项目描述:
HTML5 parser internals from scratch: insertion modes, the stack of open elements, the foster-parenting algorithm, and how it enables mutation XSS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: chainsaw
👤 项目作者: WithSecureOpenSource
🛠 开发语言: Rust
Star数量: 3670 | 🍴 Fork数量: 306
📅 更新时间: 2026-09-23 08:01:09

📝 项目描述:
Rapidly Search and Hunt through Windows Forensic Artefacts

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: SuperSecretTip-TryHackMe-Walkthrough
👤 项目作者: anurag-rvnkr1
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:35:28

📝 项目描述:
Professional TryHackMe SuperSecretTip walkthrough covering source-code disclosure, XOR secret reconstruction, SSTI, RCE, Linux lateral movement, PATH hijacking, cron abuse, and root-context curl configuration exploitation. Flags redacted for portfolio-safe documentation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: heretix-cli
👤 项目作者: TITeee
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:08

📝 项目描述:
Vulnerability scanner CLI: scans OS packages (RPM, DPKG, APK), OSS dependencies (PyPI, npm/yarn/pnpm, Go, Composer, Maven, Gradle, JAR), and Docker images for known CVEs via the heretix API, emits CycloneDX SBOMs, and flags supply-chain attacks (dependency confusion, malicious installs, CI/CD poisoning).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: C2R2-v2
👤 项目作者: G4sp4rCS
🛠 开发语言: Rust
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:43

📝 项目描述:
A modular offensive security framework written in Rust, designed for authorized penetration testing and red team operations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: DYNAMIC-DATA-UPDATES-AND-WEIGHT-OPTIMIZATION-FOR-PREDICTING-VULNERABILITY-EXPLOITABILITY
👤 项目作者: sounthararajan2
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:56:59

📝 项目描述:
This project proposes a novel framework for predicting vulnerability exploitability using dynamic datasets and optimized scoring mechanisms.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored

📦 项目名称: wordpress-7.1-comment-stored-xss
👤 项目作者: Federico1976
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:46:55

📝 项目描述:
Studio tecnico e PoC della Stored XSS non autenticata nei commenti di WordPress 7.1, corretta in WordPress 7.1.1.

🔗 点击访问项目地址
👍2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp-Save-Item-XML-Importer
👤 项目作者: 0xBrAinsTorM
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 10:29:29

📝 项目描述:
Burp Suite extension for importing saved Request/Response XML items back into the Site Map.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE #Nuclei

📦 项目名称: CVE-2026-87902
👤 项目作者: Hassham1
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 11:54:01

📝 项目描述:
WordPress Core <= 7.1.1 unauthenticated LFI to RCE - validation lab, PoC, nuclei template (GHSA-7hp8-65ch-5whp)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: Malware_Detector-YARA_Rules-
👤 项目作者: MonicaMuthu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 12:04:09

📝 项目描述:
无描述

🔗 点击访问项目地址
Forwarded from 广告赞助
🔥 【全新升级】墙势汹汹,大批机场已阵亡?网络软了,试试 ZTNET 魔法防封! 🛡🚀

最近大量节点集体断连?别慌!ZTNET 采用自研独家自愈协议,专门治愈各种“失联”焦虑,让你稳如泰山,直接起飞!🔥💦

魔法防封 - 独家混淆技术,无视封锁,大封锁期也丝滑
4K 看片极速 - 拒绝转圈,深夜高清必备,资源秒加载
AI 生产力全开 - 稳定直通 ChatGPT/Claude/Midjourney
全线加速 - TG/X/IG 瞬间刷新,彻底告别“连接中...”

🚀 全新升级 v1.2.2 定制客户端:一键登录,无需配置,老司机的避风港!

👉 【全平台最新 App 下载】
💻 Windows:安装包下载 | 便携版(Zip)
🍏 Mac (M系列):点击下载
🍎 Mac (Intel):点击下载
🤖 Android:点击下载

【 避难入口:点击注册,永不失联 🚀

别人在抓狂,你在起飞!这波稳了,兄弟们速来体验“魔法”! 😈
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: MicroTrick
👤 项目作者: digiprosec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 12:52:36

📝 项目描述:
cve-2026-86060 PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: GymSIEGE
👤 项目作者: ElenaViewSynthesis
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 12:47:47

📝 项目描述:
▎ Fleet-evaluation harness for security-agent benchmarks (CyberGym-E2E, ExploitGym, ExploitBench), run in real disposable Daytona sandboxes per trial — with Modal-based KVM-capable sandboxes planned for kernel-exploit tasks. Measures agent capability and infra reliability, not simulated.

🔗 点击访问项目地址