GitHub 红队武器库🚨
14.2K subscribers
26 photos
10 videos
27K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-88771-POC
👤 项目作者: EXEcution-py
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:03:37

📝 项目描述:
Improper Input Validation (CWE-20) SSVC Scores Exploitation: Active Technical Impact: Total

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: SmarterMail-CVE-2026-24423
👤 项目作者: CyberAlp0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:07:08

📝 项目描述:
Exploit for CVE-2026-24423 — a critical unauthenticated RCE in SmarterMail's ConnectToHub API. Affects all builds prior to 9511.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2026-39987-Marimo-Preauth-RCE
👤 项目作者: LaArana12
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:07:26

📝 项目描述:
Reproduction and root cause analysis of CVE-2026-39987 Marimo pre-auth WebSocket RCE in a local Docker lab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-22777
👤 项目作者: e5dfdd568a75282b712b6d93a7a18e12
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 10:47:30

📝 项目描述:
CVE-2026-22777 ComfyUI-Manager CRLF Injection leading to RCE chained with CVE-2025-67303

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: citrix-netscaler-cve-2026-88771-rce
👤 项目作者: techupdate24
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:37:06

📝 项目描述:
A complete guide and workflow for integrating Agile sprints with DevOps CI/CD pipelines.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: AVM-FRITZ-Box-CVE-2024-54767-Exploit
👤 项目作者: sysadmin420
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:54:39

📝 项目描述:
Originally an access control issue in the component /juis_boxinfo.xml of AVM FRITZ!Box 7530 AX with FRITZ!Os v7.59 allowed attackers to obtain sensitive information without authentication.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: crackweb
👤 项目作者: guaidao2
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:10:46

📝 项目描述:
现代化的高性能web漏洞扫描工具。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-fingerprint-bridge
👤 项目作者: ParthShethia25
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:27:38

📝 项目描述:
Importable Burp extension for selected-host browser TLS transport

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: burp-fake-useragent
👤 项目作者: MiraclePeformer
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:16:52

📝 项目描述:
Burp Suite extension with an ON/OFF switch that rewrites the User-Agent header on Proxy requests — Random (new fake UA per request) or Fixed (pick a preset UA). Jython.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware_Analysis_Lab
👤 项目作者: Varunpoojari
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 11:07:02

📝 项目描述:
A Python-based malware analysis toolkit for static analysis of suspicious files.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-POC
👤 项目作者: OffensiveBias20
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:25:55

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-34990-POC
👤 项目作者: offesivezapper
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 12:19:12

📝 项目描述:
Technical analysis and proof-of-concept research for CVE-2026-34990, a local privilege-escalation vulnerability affecting CUPS. This repository documents the vulnerability mechanics, CUPS/IPP request flow, authentication-token disclosure, the localhost callback technique, and the subsequent privilege-escalation primitive.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-rules
👤 项目作者: ArtfulDodger10
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:03:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: u3000py
👤 项目作者: turretsec
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:31:16

📝 项目描述:
Python client for the Thinkware U3000 dashcam's local WiFi control protocol, reverse-engineered from the official Android app. PoC tooling behind CVE-2026-101053, CVE-2026-101054, and CVE-2026-101055.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-18110-PoC
👤 项目作者: flenz00
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 13:29:59

📝 项目描述:
Proof-of-Concept for CVE-2026-18110

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Docker #EXP

📦 项目名称: Swift-1.5-TensorFold-Single-DGX-Spark
👤 项目作者: tournierjc
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:02:12

📝 项目描述:
Swift 1.5 (Qwen3.8-Flash-Next 120B, NVFP4) on one DGX Spark with TensorFold: a Docker test rig for the nvfp4-flash-next branch

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #DOM

📦 项目名称: Lab-Stored-DOM-XSS
👤 项目作者: gabrielhusa0-hash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:49:53

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: zucchetti-hr-portal-reflected-xss
👤 项目作者: gerico-lab
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:31:24

📝 项目描述:
A Reflected Cross-Site Scripting exists in Zucchetti HRPortal sw release 26.01.00

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: NOSQLi-Burp-extension
👤 项目作者: 0xsl4m
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 14:45:36

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #越权 #IDOR

📦 项目名称: yueluo-idor-pro
👤 项目作者: 2561769445
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 15:00:51

📝 项目描述:
月落 · 多账号越权(IDOR)自动化检测平台 | Multi-account Broken Access Control Testing

🔗 点击访问项目地址