GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: nodes-proxy-rce-poc
👤 项目作者: zwindler
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 20:29:41

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: WordPress-Vulns
👤 项目作者: CronUp
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 20:57:43

📝 项目描述:
A non-invasive passive scanner that detects two critical WordPress vulnerabilities in a single run, with multi-threaded support for bulk scanning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: newtonfalbo
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 20:50:55

📝 项目描述:
Scanner de vulnerabilidades simples

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: diversity-poc
👤 项目作者: IliasSoultana
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 23:03:36

📝 项目描述:
divcc: compiler wrapper producing per-device unique binaries via seeded link-order shuffling, so an exploit built on fixed addresses does not carry across a fleet.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: Social-Feed-with-full-XSS-TAXONOMY
👤 项目作者: Puneesh12
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 22:43:58

📝 项目描述:
Chirp: full-stack social feed demonstrating and defending the complete XSS taxonomy (BCSE320L case study)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: JYscan
👤 项目作者: xiguayiqiu
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-24 15:11:03

📝 项目描述:
JYscan 是GYscan 的 Java 移植版,对应来源为 GYscan 的Go版源码 它是一款面向授权测 试与安全研究的命令行工具箱,侧重资产探测、漏洞检测与安全验证。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-87902_PoC
👤 项目作者: khellwan
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 00:58:57

📝 项目描述:
Proof of concept for vulnerability CVE-2026-87902 in Wordpress

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Execute

📦 项目名称: shellcodewithPID
👤 项目作者: cristian17cruz
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 00:58:26

📝 项目描述:
Takes a PID, injects Meterpreter shellcode into PID process, and execute it // using a remote thread. Windows x64

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: EXPLOIT-CVE-2026-87902
👤 项目作者: joaovicdev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 01:06:41

📝 项目描述:
Lab vulnerável (Docker) + PoC Python para a CVE-2026-87902 — path traversal não autenticado no WordPress Core (page-template -> LFI -> RCE condicional). Uso educacional/autorizado.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-79417
👤 项目作者: connorjaydunn
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 01:03:12

📝 项目描述:
CVE-2026-79417 PoC

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: seminario-owasp-xss-lab
👤 项目作者: marcoarc01
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 01:48:45

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: web-vulnerability-scanner
👤 项目作者: HafidaElkharraz404
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 01:38:16

📝 项目描述:
An automated Python tool to scan web applications for common security vulnerabilities (XSS & SQL Injection).⁠

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates #POC

📦 项目名称: bb-toolkit
👤 项目作者: BshTaha
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 00:07:00

📝 项目描述:
Self-contained, policy-aware recon and hunting pipeline for bug bounty. Proves findings before it alerts you.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43499-poc
👤 项目作者: AthBe1337
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 02:54:21

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE #Nuclei

📦 项目名称: Comment2Shell
👤 项目作者: DeathShotXD
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 02:16:55

📝 项目描述:
Comment2Shell is a zero click pre auth RCE exploit for WordPress CVE-2026-93485. An anonymous comment plants stored XSS that fires when an admin views the post and drops a self deleting webshell. Full chain PoC with scanner interactive shell Nuclei template and Docker

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: python-vulnerability-scanner
👤 项目作者: shikhar5304
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 03:02:06

📝 项目描述:
Enterprise Python Vulnerability Scanner : An automated network security scanner built with Python and Nmap APIs to perform target reconnaissance, identify service misconfigurations, and generate structured audit reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: VectorFreed
👤 项目作者: rafabd1
🛠 开发语言: Python
⭐ Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 03:07:41

📝 项目描述:
This repository documents the VectorFreed RCE chain and includes a PoC for CVE-2026-96889.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-94128
👤 项目作者: lzty
🛠 开发语言: Rust
⭐ Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-25 03:01:45

📝 项目描述:
POC for CVE-2026-94128

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: red-team-automation-framework
👤 项目作者: kanomakhesana-glitch
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 04:06:05

📝 项目描述:
Modular red team automation framework with plugin architecture. Recon, enumeration, exploitation, post-exploitation, reporting modules. MITRE ATT&CK mapping. Phase 3 portfolio project.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: ZERODAY
👤 项目作者: pandeyaby
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 03:41:40

📝 项目描述:
Defensive vulnerability localization daily driver around Antares — keyless operate + fixture/live locate → SARIF. Not a Cisco product. Localization ≠ exploitability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: WebSentinel
👤 项目作者: Curdyy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 03:13:01

📝 项目描述:
Web vulnerability scanner with an interactive CLI, HTTP security header analysis, technology detection, low-impact SQLi heuristics, directory discovery, reports, and Spanish/English support. Created by Curdy.

🔗 点击访问项目地址