GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-65320-fastcore
👤 项目作者: rahulreddykarne
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 08:40:55

📝 项目描述:
Path Traversal (Tar Slip) in fastcore via untar_dir()

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-18143
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 08:00:40

📝 项目描述:
Unauthenticated arbitrary file upload in Addify Request a Quote for WooCommerce ≤ 2.9.2 via public AJAX afrfq_submit_quote_via_popup — unsafe move_uploaded_file() with attacker-controlled .php filenames into web-accessible RFQ temp storage (popup quote flow required). CVSS 9.8. Python check/exploit PoC → pocbit.org/pocs/cve-2026-18143

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: web-app-security-lab
👤 项目作者: godfredachie-web
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 09:05:13

📝 项目描述:
A hands-on web application penetration testing and threat remediation repository documenting the identification, exploitation, and secure code mitigation of OWASP Top 10 vulnerabilities (including SQL Injection, DOM-based XSS, and Broken Access Control) using OWASP Juice Shop in a Dockerized Ubuntu Linux environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #子域名 #指纹

📦 项目名称: srcradar-mcp-server
👤 项目作者: usdagfhjkda
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 10:04:58

📝 项目描述:
面向 agent 的持久化业务级攻击面知识库。把 srcradar 的"业务名 → 法律实体图谱 → 主动测绘资产(小程序/公众号 + Web 范围 → 子域名/端口/指纹) → 每日增量 diff" 通过 MCP 协议暴露出来,让任何 agent 在攻击前直接拿到已知资产清单与最新变动 —— 跳过信息收集,从已识别的目标开始

🔗 点击访问项目地址
Forwarded from 金银
This media is not supported in your browser
VIEW IN TELEGRAM
⚡️⚡️⚡️⚡️😂😂😂😂
2026世界杯官方指定投注平台

➡️ 豪礼大放送、高端嫩模、劳力士手表、奔驰E300 加入 #182体育 等你领取, 电子可拉2万一注

🌐182体育官网: 182268.com
TG玩家首选人民币台 不限ip 免实名免绑卡手机号码

🌐8K国际官网: 8k2769.com
TG玩家首选U台 U存U提出款稳,福利好反水无上限


😀😀😀😀😀😀😀😀😀😀😀😀😀

1.PG电子赏金女王一举斩获830万并成功提现
2
.PA真人豪赢644万一路长虹一天实现暴富
3
.PG电子爆890万并以成功提现实现财富自由
4
.大哥在PA真人百家乐累计盈利突破1000万

🔤🔤🔤🔤 以及C币,K豆,OKpay、👌微信,👌支付宝,银行卡等30多种存取款方式,通畅便捷

大额出款额外奖励8888-128888,双重日存彩金128888+4688每日送,周流水彩金68888每周送,双重签到彩金16888+3888送不停

😅😏😃😃🙃😢😅😚😍😀😏😝
【 182体育 全网独此一家】
公平、公正、公开、 信誉第一、服务第一
不限ip、 免实名、免绑卡、免绑手机号码

🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩
官方频道: @vip182ty
体育推荐:
@tytj182ty
专属客服:
@vipkf_182ty
双向联系:
@vipkf_182ty_bot


🌐 8K国际网址:
8k2769.com
🌐182体育网址:
182268.com
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-46331-audit
👤 项目作者: Quaerendir
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 10:20:58

📝 项目描述:
cve-2026-46331-audit script

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: COWSlip
👤 项目作者: k4ntux
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 10:23:08

📝 项目描述:
xfs kernel LPE (CVE-2026-64600), disclosed by Qualys on 22 July 2026

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: polycodehub
👤 项目作者: anyuer678
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 11:00:32

📝 项目描述:
PolycodeHub — 全栈在线判题平台(Next.js + Express + Spring Boot + FastAPI + seccomp 沙箱)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: fresh-yara-rules
👤 项目作者: Marjoriefort
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 11:05:50

📝 项目描述:
Collection personnelle de règles YARA forgées sur du malware frais (veille quotidienne MalwareBazaar / corpus VX-Underground).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: specimen
👤 项目作者: rakshit-737
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 10:35:59

📝 项目描述:
Sample-to-story malware analysis pipeline: explainable static gate, CAPE report replay into a provenance graph + ATT&CK timeline, family attribution, and specificity-checked auto YARA/Sigma - benchmarked on EMBER, Avast-CTU CAPEv2 and MalbehavD-V1

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-13249
👤 项目作者: murrez
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 11:59:57

📝 项目描述:
Unauthenticated arbitrary file upload on Honeywell PD45 web admin (firmware F10.19.010040–before F10.22.030745) leading to RCE. Python check/exploit PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: zenfone9-ghostlock
👤 项目作者: CKwasd
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 11:40:13

📝 项目描述:
CVE-2026-43499 (GhostLock) exploit for ASUS Zenfone 9 (SM8475, GKI 5.10.205) + KernelSU late-load.

🔗 点击访问项目地址
Forwarded from 广告赞助
🔥 【全新升级】墙势汹汹,大批机场已阵亡?网络软了,试试 ZTNET 魔法防封! 🛡🚀

最近大量节点集体断连?别慌!ZTNET 采用自研独家自愈协议,专门治愈各种“失联”焦虑,让你稳如泰山,直接起飞!🔥💦

✅ 魔法防封 - 独家混淆技术,无视封锁,大封锁期也丝滑
✅ 4K 看片极速 - 拒绝转圈,深夜高清必备,资源秒加载
✅ AI 生产力全开 - 稳定直通 ChatGPT/Claude/Midjourney
✅ 全线加速 - TG/X/IG 瞬间刷新,彻底告别“连接中...”

🚀 全新升级 v1.2.2 定制客户端:一键登录,无需配置,老司机的避风港!

👉 【全平台最新 App 下载】
💻 Windows:安装包下载 | 便携版(Zip)
🍏 Mac (M系列):点击下载
🍎 Mac (Intel):点击下载
🤖 Android:点击下载

✨ 【 避难入口:点击注册,永不失联 🚀 】

别人在抓狂,你在起飞!这波稳了,兄弟们速来体验“魔法”! 😈
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: POC-WP-CORE-CVE-2026-93485
👤 项目作者: 686f6c61
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 12:55:46

📝 项目描述:
Laboratorio pedagógico de CVE-2026-93485 (Comment2Shell): stored XSS no autenticado en WordPress core vía wpautop -> RCE, con demo del root cause auto-verificada, control 7.1.1 y la vía Post2Shell

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #漏洞 #利用

📦 项目名称: opace6-cve-2026-64560
👤 项目作者: qingle009
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 12:40:00

📝 项目描述:
OnePlus Ace 6 temporary root tool (CVE-2026-64560) - device-verified port with corrected bootidParent address

🔗 点击访问项目地址
Forwarded from Channel Help
This media is not supported in your browser
VIEW IN TELEGRAM
🌈🌈🌈🌈8K国际 信誉至上·财富相伴

🌈🌈🌈🌈🌈 8k2289.com

#东南亚盘总首选最权威综合😃台 集团耗资2亿美金 打造全网最牛逼的线上娱乐平台。😄😄😄😄

#大户首选  免实名 免手机号 电子可3000U一拉
😀😀😀😀😀😀😀😀⚡️😀😀😀

😂😂😂😂 1821912.com
TG玩家首选人民币台不限ip 无需手机号无需绑卡

😀😀😀😀😀😀😀😀😀

😀😀😀😀😀😀😀😀😀😀😀😀

1、
极速糖果 30U爆25000倍满倍75万U
2、
百家乐战神 大哥一天时间狂砍100万U
3、
PP电子极速糖果 单注500爆得500万U
4、
神秘大哥 连续稳定输出一天净赚59万U

😀😀😀😀😀😀😀😀😀😀😀
#全网福利天花板
1、单笔提款50万U+ ,赠送5888U-88888U额外奖励
2、支持任意平台vip等级平移
3、每日存款彩金每日送,每笔存款加增1%

存100送28 存500送58
存1000送108 存3000送318
存10000送1288 存50000送5888
存100000送8888 存200000送12888

😀😀😀😀😀😀😀😀😀😀

🔗 官方网址: 8k2289.com
➡ 官方频道:@PG8K8K
⚡ 申请客服:@vipkf8K
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-29053
👤 项目作者: K3ysTr0K3R
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 13:24:36

📝 项目描述:
CVE-2026-29053 - Ghost CMS < 6.19.0 - Authenticated Remote Code Execution via Malicious Theme

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: rainbet-casino-exploit
👤 项目作者: zephyrcore
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:03:01

📝 项目描述:
A race condition in rainbet.com allowing to predict outcomes of specified games ( original ). POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: threatharbor
👤 项目作者: Kassidi-Iliasse
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 13:59:03

📝 项目描述:
CLI web vulnerability scanner: headers, TLS, cookies, redirects, forms, reflected XSS. HTML/JSON reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: Syscall-Early-Bird-Injection-Trojans
👤 项目作者: Hue-Jhan
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:06:17

📝 项目描述:
Collection of remote shellcode Loaders using Early Bird APC injection, direct/indirect syscalls, ntdll and low level utilities, undetected by Windows Defender and BitDefender

🔗 点击访问项目地址