GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: garbigo_auth-service
👤 项目作者: peacemakerbill
🛠 开发语言: Java
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 20:05:47

📝 项目描述:
Spring User Authentication Service for Smart garbage system

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-65660-Poc
👤 项目作者: ShadowForge-Cyber
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 20:32:48

📝 项目描述:
Malicious Register Directive Code Injection Exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: sBOMBox
👤 项目作者: renanbotasse
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 20:52:43

📝 项目描述:
SBOMBox — CycloneDX SBOM generator and Python dependency vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-86350
👤 项目作者: abraxas
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 21:59:12

📝 项目描述:
CVE-2026-86350 - Apache Tomcat - Critical 9.1 - Unauthenticated GET /header.jsp - HTTP/2 Request Header Mix-up (Request Smuggling)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-62062
👤 项目作者: abraxas
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 21:36:05

📝 项目描述:
CVE-2026-62062 - WordPress - Elementor Website Builder - High 8.8 - Unauthenticated POST /?rest_route=/wp/v2/users&x=elementor... - Cross-Site Request Forgery to Administrator Account Creation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: STACK-Forge-Ops
👤 项目作者: Aditya369-tech
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 21:59:26

📝 项目描述:
STACK-2026 Developer Guide: Build Modern Apps Step by Step in 2026

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #RCE

📦 项目名称: 2026FastjsonPoC
👤 项目作者: HAYES-cyber
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 22:32:17

📝 项目描述:
【已复现】Fastjson 1.2.66–1.2.83 JsonType 纯库一键 RCE(AutoType 关闭仍可利用;完整 RCE 需 JDK8 + Spring Boot LaunchedURLClassLoader)。仅限授权安全研究与本地防御验证。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Stuxnet-Yara-Rules
👤 项目作者: IT-Kuny
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-25 22:33:39

📝 项目描述:
YARA rules: real Stuxnet IOCs (reference, Florian Roth/Nextron) + Sadpainy/Stuxnet 2026 reconstruction tracking. AI-assisted (Jarvis).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-90817
👤 项目作者: Farih123
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 01:37:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: YARA-Malware-Scanner
👤 项目作者: anajaosid
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 01:56:38

📝 项目描述:
Lightweight python based malware scanner with YARA rules to identify malicious files, web shells, and malware, using testable and harmless samples for testing purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #malware

📦 项目名称: Cryptography-And-Malware-Analysis
👤 项目作者: EmilyGurs
🛠 开发语言: Jupyter Notebook
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 01:38:05

📝 项目描述:
Python scripts for 2048-bit RSA/AES encryption and YARA rule generation for malware string detection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #复现

📦 项目名称: cve-2026-64560-a16
👤 项目作者: Become-ILLUSORY
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 02:20:05

📝 项目描述:
CVE-2026-64560 toolkit: Go single-binary toolchain + realme RMX5010 (A16, SM8750) target port

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #Nuclei

📦 项目名称: sentinel
👤 项目作者: NonMirror
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 02:55:25

📝 项目描述:
轻量级防火墙 + 漏洞扫描子系统 + Vim 键位 TUI — 自研 ModSecurity SecRule 解释器与 nuclei 模板解释器, 规则/模板内置, 运行时零外部依赖

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现 #利用 #CVE

📦 项目名称: ok99rjl
👤 项目作者: annawilsonpixelyge
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 02:00:16

📝 项目描述:
s8q72xbm以防大家不知道,Anthropic开源了自己的漏洞挖掘Harnessacb4anoq508s

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: sentinel-antivirus
👤 项目作者: willischilling
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 02:53:05

📝 项目描述:
Windows antivirus built from scratch in Python: MalwareBazaar fingerprints, YARA rules, archive scanning, background real-time protection, and a desktop app with installer.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-67279
👤 项目作者: HackSpeak
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 03:56:16

📝 项目描述:
MikroTrick (MikroTik RouterOS SSH takeover chain) PoC mirror - CVE-2026-67279 + CVE-2026-86060 (+67276); for authorized lab testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: exp-projectdiscovery-nuclei-burp-plugin
👤 项目作者: osflaky
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 03:59:55

📝 项目描述:
snapshot of projectdiscovery/nuclei-burp-plugin at a pinned commit, for cross platform ci legs

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: ysQpzWdD
👤 项目作者: boom5497
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 03:43:28

📝 项目描述:
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于Jboss框架的渗透测试研究_7343e07d-dc1f-43ad-807b-cb4efaff1aa5.zip

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: hfaBUGTo
👤 项目作者: boom5497
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 03:29:20

📝 项目描述:
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于shiro框架的渗透测试研究_e55821e8-81e7-4719-aaf7-abbfc684ba7d.zip

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Beacon

📦 项目名称: Kut-Security-Suit
👤 项目作者: cihanuralkaya
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 05:00:51

📝 项目描述:
Corporate XDR/EDR/MDM + SOC endpoint security platform in Go; agent-to-C2 over gRPC + mTLS (TLS 1.3). Kurumsal uc nokta guvenlik platformu.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43682
👤 项目作者: petermalone
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 05:51:00

📝 项目描述:
CVE-2026-43682: HFS+ B-tree kernel heap overflow in macOS

🔗 点击访问项目地址