GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
26.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏扫

📦 项目名称: crackws
👤 项目作者: guaidao2
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:52:19

📝 项目描述:
现代的websocket渗透测试工具,本身支持websocket协议漏扫,同时支持websocket协议转http协议。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-61500
👤 项目作者: aramosf
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:32:18

📝 项目描述:
CVE-2026-61500 Rejetto HFS predictable PRNG session forgery to RCE PoC and Docker lab

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: SMAHG-XDR-DFIR
👤 项目作者: AwaisGardezi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:35:52

📝 项目描述:
Enterprise Malware Intelligence, Dynamic Analysis & Digital Forensics platform - sample/case management, sandbox detonation, YARA/ATT&CK/IOC analysis, threat intel, reporting

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: aegis-lens
👤 项目作者: sourabhbeni
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:01:59

📝 项目描述:
Browser extension (MV3) for in-browser SQL injection, reflected XSS, and security-header probing — companion to aegis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: FirmAudit2
👤 项目作者: JiuZero
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:39:54

📝 项目描述:
FirmAudit2 — AI Agent firmware vulnerability audit pipeline, from unpacking to a CNVD-ready delivery bundle. | 从解包到 CNVD 交付总包,一条固件漏洞审计流水线:Agent 负责挖,平台负责把关 —— 八段引导、四道结果门、命令级复现,全程可回放、可校验、可交付

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-mobile
👤 项目作者: sudokage-sh
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:06:33

📝 项目描述:
Burp Suite Style Mobile Browser Extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-41089-POC
👤 项目作者: 1posix
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:23:58

📝 项目描述:
CVE-2026-41089 LongLogon: pre-auth CLDAP (UDP/389) stack buffer overflow crasher for unpatched Windows Server 2025 Netlogon (lsass 0xc0000409). Stdlib-only Python PoC + lab write-up.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #EXP

📦 项目名称: exp-5
👤 项目作者: vadthyavathcharanteja
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:54:24

📝 项目描述:
devops lab exp 5 jenkins

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-41940-PoC
👤 项目作者: hitechcloud-vietnam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:19:48

📝 项目描述:
A tool for exploiting CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 10.0), allowing unauthenticated attackers to gain root-level WHM access by injecting CRLF sequences into server-side session files via the Authorization header — no credentials required.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: Exploit-Index
👤 项目作者: msdbg
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:52:50

📝 项目描述:
Exploit Index provides a searchable, version-wise database of High and Critical CVEs across major enterprise products, with Proof of Concept (PoC) exploit links and CISA Known Exploited Vulnerability (KEV) tracking, for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2020-14008
👤 项目作者: raflesiait
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:02:59

📝 项目描述:
CVE-2020-14008 - ManageEngine Applications Manager RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE #Nuclei

📦 项目名称: CVE-2026-63030
👤 项目作者: langz337
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:33:01

📝 项目描述:
无描述

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: CSRF-PoC-Generator
👤 项目作者: KLZer0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:45:43

📝 项目描述:
Burp Suite extension for generating CSRF Proof-of-Concepts for educational and authorized security testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97163
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:55:27

📝 项目描述:
CVE-2026-97163 PoC: Joomla UP (lomart.fr) unauthenticated GitHub mini-install / remote action deployment (≤6.0.29). Detects plugin version, probes com_ajax install triggers. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97163

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97161
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:50:57

📝 项目描述:
CVE-2026-97161 PoC: Joomla UP (lomart.fr) unauthenticated path traversal / arbitrary file read via ajax-view (≤6.0.29). Fingerprints plugin, probes configuration.php. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97161

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: vulns
👤 项目作者: dragunovartem99
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:21

📝 项目描述:
Frontend vulnerabilities cheatsheet — sink, payload and fix for each hole, tagged with its CWE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: DemocrHistory
👤 项目作者: Jasssbo
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:23:10

📝 项目描述:
Una Storiografica degli sviluppi dei diversi nuclei di Potere presenti e operanti in Italia dal 43' al 2000, basato su fonti pubbliche e di gruppi informatici come Strano Network.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: 71zk1
👤 项目作者: 71ZK1
🛠 开发语言: Shell
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:11:20

📝 项目描述:
⚡ 71ZK1 — One command from subdomain to vulnerability findings. subfinder → httpx → nuclei, automated.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner
👤 项目作者: yilmaz8596
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:37:17

📝 项目描述:
A vulnerability scanner built with Python

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-94132
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:16

📝 项目描述:
AcyMailing Enterprise for Joomla < 11.1.0: POP3 mailbox actions save MIME attachments without extension checks to media/com_acym/upload/, enabling RCE when an attacker can email the monitored inbox (CVE-2026-94132, CVSS 9.5). Python check/exploit PoC —

🔗 点击访问项目地址
😨1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #POC

📦 项目名称: nutanix-enterprise-ai-poc
👤 项目作者: marco-fabbri
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:07:14

📝 项目描述:
Single-node Nutanix Enterprise AI 2.8 PoC installer for an existing Ubuntu 24.04 VM (Ansible only, hypervisor-agnostic)

🔗 点击访问项目地址