GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: shravanp-poojary
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 13:57:25

📝 项目描述:
A beginner-friendly Python network and vulnerability scanner project.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: sweeper
👤 项目作者: jumpman234
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 13:57:47

📝 项目描述:
PDF malware scanner using clamAV+YARA rules

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: YaraRule
👤 项目作者: SUmidcyber
🛠 开发语言: YARA
⭐ Star数量: 3 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-24 13:39:14

📝 项目描述:
Bu repository, siber güvenlik uzmanları, SOC ekipleri ve tehdit avcıları için profesyonel YARA kurallarını bir araya getiren canlı bir bilgi havuzudur. Her kural derinlemesine malware analizi ve reverse engineering çalışmaları sonucunda geliştirilmiştir.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: sse-demo
👤 项目作者: iarroyo
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 14:03:25

📝 项目描述:
Server-Sent Events POC — Ember 7 + SharedWorker + Spring Boot + Nginx (CloudFront timeout simulator)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #UAC

📦 项目名称: ESP32-FRP-BYPASS
👤 项目作者: esp32king
🛠 开发语言: Unknown
⭐ Star数量: 4 | 🍴 Fork数量: 2
📅 更新时间: 2026-09-24 14:05:22

📝 项目描述:
Bypass frp through Esp

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: XenoraSec
👤 项目作者: prithvi-01x
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 14:47:01

📝 项目描述:
Automated vulnerability scanner orchestrating Nmap & Nuclei with intelligent AI risk scoring, real-time analytics, and a modern React dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #内网渗透 #横向移动

📦 项目名称: intranet-pentest-lateral-movement-report
👤 项目作者: Shueka-181
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 14:19:49

📝 项目描述:
内网渗透与横向移动报告

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2018-9276
👤 项目作者: BardLaudian
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 14:56:57

📝 项目描述:
CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #POC #CVE

📦 项目名称: nucleiweb
👤 项目作者: HedyFake
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 15:42:30

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: retro-dice
👤 项目作者: RomanKytseniuk
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 16:55:13

📝 项目描述:
PvP dice duels for USDT resolved with Chainlink VRF v2.5. Solidity + Hardhat contracts, retro arcade React/wagmi dApp, v1 exploit PoC and fix.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2023-49070
👤 项目作者: BardLaudian
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 16:33:04

📝 项目描述:
Apache OFBiz XML-RPC pre-auth deserialization RCE PoC (CVE-2023-49070) — auth bypass + ysoserial gadget chain via /webtools/control/xmlrpc

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Nuclei

📦 项目名称: CVE-2026-12227-visualcomposer-lfi-poc
👤 项目作者: Hassham1
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 17:48:27

📝 项目描述:
CVE-2026-12227 - Visual Composer <= 45.16.0 unauthenticated LFI via vcv-template (CVSS 9.8): Docker validation lab, safe-oracle PoC, nuclei template. Root cause: validate-then-mutate on the theme: prefix. Verified: vendor fix never landed - fires through 45.16.3 on WP <= 7.1.1; masked by WP 7.1.2 core gate.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-94609
👤 项目作者: anthonyk2923
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 17:48:25

📝 项目描述:
CVE-2026-94609: Writeup and POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: discord-username-sniper
👤 项目作者: zephyrcore
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 17:57:02

📝 项目描述:
Proof-of-concept tool demonstrating a Discord username release-timing vulnerability to instantly claim any grace-locked username at the exact moment

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ai-web-vulnerability-scanner
👤 项目作者: rayen-merai
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 18:00:01

📝 项目描述:
ai-powered web vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-12227
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 17:12:08

📝 项目描述:
CVE-2026-12227 (CVSS 9.8): WordPress Visual Composer Website Builder ≤45.16.0 — unauthenticated local file inclusion via vcv-template. Educational PoC only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: YARA-Malware-Scanner
👤 项目作者: talha-cybersec
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 18:30:36

📝 项目描述:
Python YARA malware scanner (CLI + GUI) with custom rules, MD5/SHA256 hashing, entropy analysis, PE detection and HTML reports

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: c2-infrastructure
👤 项目作者: hoardcti
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 18:54:51

📝 项目描述:
Collects command and control (C2) server IPs from public threat intelligence sources and emits them as normalised Hoard CTI records.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: web_vul_scanner
👤 项目作者: ahanya-mohan
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 19:04:47

📝 项目描述:
Educational web vulnerability scanner (authorized use only): pluggable checks, authorization gate, bundled vulnerable target. Python, pytest, GitHub Actions.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-templates
👤 项目作者: APashaDev
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 18:26:49

📝 项目描述:
无描述

🔗 点击访问项目地址