GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
27K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: signator-rules
👤 项目作者: malpedia
🛠 开发语言: YARA
⭐ Star数量: 150 | 🍴 Fork数量: 13
📅 更新时间: 2026-09-28 09:01:44

📝 项目描述:
Collection of rules created using YARA-Signator over Malpedia

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #POC

📦 项目名称: jenkins-poc-1
👤 项目作者: JaimyRenji
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 09:04:33

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: aws-role-to-RCE-exploit-ctf-lab
👤 项目作者: mmerraj
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 09:05:55

📝 项目描述:
AWS Identity & Access Management (IAM): Analyzing IAM policies, finding misconfigurations, and performing user/role privilege escalation.Cloud Reconnaissance: Enumerating public-facing and internal Amazon Web Services (AWS) resources.Exploitation of Cloud Assets: Navigating cloud-native architectures to move laterally, bypass permission boundaries.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-88772-POC
👤 项目作者: FollowerSeize
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 09:58:26

📝 项目描述:
CVE-2026-88772 - Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-100721
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 09:46:59

📝 项目描述:
CVE-2026-100721 PoC: vm2 <3.12.2 NodeVM external allowlist bypass → sandbox escape / host RCE. Local Node lab (evil-left-pad), remote sandbox API mass exploit, colorful CLI. PoCbit — https://pocbit.org/pocs/cve-2026-100721

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: FalconFlank
👤 项目作者: mda1r
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 09:23:40

📝 项目描述:
Crowdstrike Falcon 0day Privilege Escalation Vulnerability

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-88771-POC
👤 项目作者: EXEcution-py
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:03:37

📝 项目描述:
Improper Input Validation (CWE-20) SSVC Scores Exploitation: Active Technical Impact: Total

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: SmarterMail-CVE-2026-24423
👤 项目作者: CyberAlp0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:07:08

📝 项目描述:
Exploit for CVE-2026-24423 — a critical unauthenticated RCE in SmarterMail's ConnectToHub API. Affects all builds prior to 9511.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2026-39987-Marimo-Preauth-RCE
👤 项目作者: LaArana12
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:07:26

📝 项目描述:
Reproduction and root cause analysis of CVE-2026-39987 Marimo pre-auth WebSocket RCE in a local Docker lab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-22777
👤 项目作者: e5dfdd568a75282b712b6d93a7a18e12
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:47:30

📝 项目描述:
CVE-2026-22777 ComfyUI-Manager CRLF Injection leading to RCE chained with CVE-2025-67303

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: citrix-netscaler-cve-2026-88771-rce
👤 项目作者: techupdate24
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:37:06

📝 项目描述:
A complete guide and workflow for integrating Agile sprints with DevOps CI/CD pipelines.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: AVM-FRITZ-Box-CVE-2024-54767-Exploit
👤 项目作者: sysadmin420
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:54:39

📝 项目描述:
Originally an access control issue in the component /juis_boxinfo.xml of AVM FRITZ!Box 7530 AX with FRITZ!Os v7.59 allowed attackers to obtain sensitive information without authentication.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: crackweb
👤 项目作者: guaidao2
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:10:46

📝 项目描述:
现代化的高性能web漏洞扫描工具。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-fingerprint-bridge
👤 项目作者: ParthShethia25
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:27:38

📝 项目描述:
Importable Burp extension for selected-host browser TLS transport

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: burp-fake-useragent
👤 项目作者: MiraclePeformer
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:16:52

📝 项目描述:
Burp Suite extension with an ON/OFF switch that rewrites the User-Agent header on Proxy requests — Random (new fake UA per request) or Fixed (pick a preset UA). Jython.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware_Analysis_Lab
👤 项目作者: Varunpoojari
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:07:02

📝 项目描述:
A Python-based malware analysis toolkit for static analysis of suspicious files.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-POC
👤 项目作者: OffensiveBias20
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:25:55

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-34990-POC
👤 项目作者: offesivezapper
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:19:12

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-rules
👤 项目作者: ArtfulDodger10
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:03:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: u3000py
👤 项目作者: turretsec
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:31:16

📝 项目描述:
Python client for the Thinkware U3000 dashcam's local WiFi control protocol, reverse-engineered from the official Android app. PoC tooling behind CVE-2026-101053, CVE-2026-101054, and CVE-2026-101055.

🔗 点击访问项目地址