GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
26.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: CSRF-PoC-Generator
👤 项目作者: KLZer0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:45:43

📝 项目描述:
Burp Suite extension for generating CSRF Proof-of-Concepts for educational and authorized security testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97163
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:55:27

📝 项目描述:
CVE-2026-97163 PoC: Joomla UP (lomart.fr) unauthenticated GitHub mini-install / remote action deployment (≤6.0.29). Detects plugin version, probes com_ajax install triggers. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97163

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97161
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:50:57

📝 项目描述:
CVE-2026-97161 PoC: Joomla UP (lomart.fr) unauthenticated path traversal / arbitrary file read via ajax-view (≤6.0.29). Fingerprints plugin, probes configuration.php. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97161

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: vulns
👤 项目作者: dragunovartem99
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:21

📝 项目描述:
Frontend vulnerabilities cheatsheet — sink, payload and fix for each hole, tagged with its CWE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: DemocrHistory
👤 项目作者: Jasssbo
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:23:10

📝 项目描述:
Una Storiografica degli sviluppi dei diversi nuclei di Potere presenti e operanti in Italia dal 43' al 2000, basato su fonti pubbliche e di gruppi informatici come Strano Network.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: 71zk1
👤 项目作者: 71ZK1
🛠 开发语言: Shell
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:11:20

📝 项目描述:
⚡ 71ZK1 — One command from subdomain to vulnerability findings. subfinder → httpx → nuclei, automated.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner
👤 项目作者: yilmaz8596
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:37:17

📝 项目描述:
A vulnerability scanner built with Python

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-94132
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:41:16

📝 项目描述:
AcyMailing Enterprise for Joomla < 11.1.0: POP3 mailbox actions save MIME attachments without extension checks to media/com_acym/upload/, enabling RCE when an attacker can email the monitored inbox (CVE-2026-94132, CVSS 9.5). Python check/exploit PoC —

🔗 点击访问项目地址
😨1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #POC

📦 项目名称: nutanix-enterprise-ai-poc
👤 项目作者: marco-fabbri
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:07:14

📝 项目描述:
Single-node Nutanix Enterprise AI 2.8 PoC installer for an existing Ubuntu 24.04 VM (Ansible only, hypervisor-agnostic)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-97163-payload
👤 项目作者: qeize
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:51:18

📝 项目描述:
CVE-2026-97163 PoC payload (UP plugin Joomla remote code installation)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-82901
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 21:12:29

📝 项目描述:
CVE-2026-82901 PoC: WordPress Ultra Addons for Contact Form 7 ≤3.5.50 unauth file upload via signature field when PDF Generator is enabled → wp-content/uploads/uacf7-uploads/. Fix: 3.5.51+. https://pocbit.org/pocs/cve-2026-82901

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #UAC

📦 项目名称: Automated-MUlti-UAC-Bypass
👤 项目作者: x0xr00t
🛠 开发语言: C#
⭐ Star数量: 468 | 🍴 Fork数量: 82
📅 更新时间: 2026-09-26 22:59:32

📝 项目描述:
Automated Multi UAC BYPASS for win10|win11|win12-pre-release|ws2019|ws2022

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: salamander-framework
👤 项目作者: edmasceno
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 22:48:27

📝 项目描述:
Automated batch triage and malware pre-filtering engine. Features Magic Byte masquerading detection, ephemeral archive unpacking, O(1) chunked hashing, and behavioral YARA scanning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞 #Exploit #RCE

📦 项目名称: webshell_seo_0day
👤 项目作者: sqkBpI7t
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 06:23:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞 #Exploit #RCE

📦 项目名称: webshell_seo_0day
👤 项目作者: MDhlzG0b
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 06:23:44

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: rf-survey
👤 项目作者: Chicago-Offline
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 22:45:57

📝 项目描述:
Multi-SDR RF landscape surveying tool: sweep, dwell, decode, and generate ssrf-lite candidate evidence

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: AWS-Cloud-Security-Threat-Hunting-Incident-Response
👤 项目作者: aobakwemokgothu94-jpg
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:52:22

📝 项目描述:
Cloud threat hunting and exploitation simulation on AWS infrastructure. Demonstrated real-world compromise vectors including S3 public access exposure, credential exfiltration via IMDSv1 Server-Side Request Forgery (SSRF), and post-incident forensic log auditing using AWS CloudTrail.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: python-vulnerability-scanner
👤 项目作者: billkot
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 22:44:24

📝 项目描述:
A beginner Python cybersecurity project that scans authorized hosts for open TCP ports and performs basic web security checks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: exp-spring-petclinic-spring-petclinic-microservices
👤 项目作者: osflaky
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 01:03:26

📝 项目描述:
snapshot of spring-petclinic/spring-petclinic-microservices at a pinned commit, for cross platform ci legs

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: C2-Framework.
👤 项目作者: sampadghosh31
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 01:53:49

📝 项目描述:
A modular C2 Framework developed during my final year cyber project at KIIT, featuring DNS/GitHub communication channels, custom agent modules, and a dual GUI/CLI interface

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: nowafplsV2
👤 项目作者: irwankusuma
🛠 开发语言: Java
⭐ Star数量: 7 | 🍴 Fork数量: 3
📅 更新时间: 2026-09-27 04:00:42

📝 项目描述:
Burp Suite extension to bypass WAF by injecting junk data into HTTP requests. V2 adds auto-inject for Active Scanner/DAST, supports JSON/XML/multipart/CSV/YAML/GraphQL. Based on assetnote/nowafpls by Shubham Shah.

🔗 点击访问项目地址