GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-41089-POC
👤 项目作者: 1posix
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:23:58

📝 项目描述:
CVE-2026-41089 LongLogon: pre-auth CLDAP (UDP/389) stack buffer overflow crasher for unpatched Windows Server 2025 Netlogon (lsass 0xc0000409). Stdlib-only Python PoC + lab write-up.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #EXP

📦 项目名称: exp-5
👤 项目作者: vadthyavathcharanteja
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:54:24

📝 项目描述:
devops lab exp 5 jenkins

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-41940-PoC
👤 项目作者: hitechcloud-vietnam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:19:48

📝 项目描述:
A tool for exploiting CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 10.0), allowing unauthenticated attackers to gain root-level WHM access by injecting CRLF sequences into server-side session files via the Authorization header — no credentials required.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: Exploit-Index
👤 项目作者: msdbg
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:52:50

📝 项目描述:
Exploit Index provides a searchable, version-wise database of High and Critical CVEs across major enterprise products, with Proof of Concept (PoC) exploit links and CISA Known Exploited Vulnerability (KEV) tracking, for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2020-14008
👤 项目作者: raflesiait
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:02:59

📝 项目描述:
CVE-2020-14008 - ManageEngine Applications Manager RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE #Nuclei

📦 项目名称: CVE-2026-63030
👤 项目作者: langz337
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:33:01

📝 项目描述:
无描述

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: CSRF-PoC-Generator
👤 项目作者: KLZer0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:45:43

📝 项目描述:
Burp Suite extension for generating CSRF Proof-of-Concepts for educational and authorized security testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97163
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:55:27

📝 项目描述:
CVE-2026-97163 PoC: Joomla UP (lomart.fr) unauthenticated GitHub mini-install / remote action deployment (≤6.0.29). Detects plugin version, probes com_ajax install triggers. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97163

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97161
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:50:57

📝 项目描述:
CVE-2026-97161 PoC: Joomla UP (lomart.fr) unauthenticated path traversal / arbitrary file read via ajax-view (≤6.0.29). Fingerprints plugin, probes configuration.php. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97161

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: vulns
👤 项目作者: dragunovartem99
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:21

📝 项目描述:
Frontend vulnerabilities cheatsheet — sink, payload and fix for each hole, tagged with its CWE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: DemocrHistory
👤 项目作者: Jasssbo
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:23:10

📝 项目描述:
Una Storiografica degli sviluppi dei diversi nuclei di Potere presenti e operanti in Italia dal 43' al 2000, basato su fonti pubbliche e di gruppi informatici come Strano Network.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: 71zk1
👤 项目作者: 71ZK1
🛠 开发语言: Shell
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:11:20

📝 项目描述:
⚡ 71ZK1 — One command from subdomain to vulnerability findings. subfinder → httpx → nuclei, automated.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner
👤 项目作者: yilmaz8596
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:37:17

📝 项目描述:
A vulnerability scanner built with Python

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-94132
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:16

📝 项目描述:
AcyMailing Enterprise for Joomla < 11.1.0: POP3 mailbox actions save MIME attachments without extension checks to media/com_acym/upload/, enabling RCE when an attacker can email the monitored inbox (CVE-2026-94132, CVSS 9.5). Python check/exploit PoC —

🔗 点击访问项目地址
😨1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #POC

📦 项目名称: nutanix-enterprise-ai-poc
👤 项目作者: marco-fabbri
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:07:14

📝 项目描述:
Single-node Nutanix Enterprise AI 2.8 PoC installer for an existing Ubuntu 24.04 VM (Ansible only, hypervisor-agnostic)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-97163-payload
👤 项目作者: qeize
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:51:18

📝 项目描述:
CVE-2026-97163 PoC payload (UP plugin Joomla remote code installation)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-82901
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:12:29

📝 项目描述:
CVE-2026-82901 PoC: WordPress Ultra Addons for Contact Form 7 ≤3.5.50 unauth file upload via signature field when PDF Generator is enabled → wp-content/uploads/uacf7-uploads/. Fix: 3.5.51+. https://pocbit.org/pocs/cve-2026-82901

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #UAC

📦 项目名称: Automated-MUlti-UAC-Bypass
👤 项目作者: x0xr00t
🛠 开发语言: C#
⭐ Star数量: 468 | 🍴 Fork数量: 82
📅 更新时间: 2026-09-26 22:59:32

📝 项目描述:
Automated Multi UAC BYPASS for win10|win11|win12-pre-release|ws2019|ws2022

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: salamander-framework
👤 项目作者: edmasceno
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 22:48:27

📝 项目描述:
Automated batch triage and malware pre-filtering engine. Features Magic Byte masquerading detection, ephemeral archive unpacking, O(1) chunked hashing, and behavioral YARA scanning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞 #Exploit #RCE

📦 项目名称: webshell_seo_0day
👤 项目作者: sqkBpI7t
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 06:23:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞 #Exploit #RCE

📦 项目名称: webshell_seo_0day
👤 项目作者: MDhlzG0b
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 06:23:44

📝 项目描述:
无描述

🔗 点击访问项目地址