GitHub 红队武器库🚨
14.2K subscribers
25 photos
10 videos
27.2K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vuln-scanner
👤 项目作者: adeev-mardia
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 08:20:08

📝 项目描述:
A real web vulnerability scanner (SQLi, XSS, command injection, path traversal, IDOR, open redirect) + the deliberately vulnerable Flask app it targets, with an integration test that proves it end to end.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: Daemon-Slayer
👤 项目作者: sickboy8388
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 09:13:35

📝 项目描述:
Evasion wrapper for Sliver C2 beacons — AMSI + ETW bypass, AES-256-GCM encryption, in-process execution

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shiro #反序列化

📦 项目名称: usrink-pro
👤 项目作者: mutolee
🛠 开发语言: Java
⭐ Star数量: 9 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-30 08:56:27

📝 项目描述:
UsrInk-Pro 是一个基于SpringBoot + Mybatis + Shiro + Jwt + Vue3 + ElementPlus 的无状态前后端分离的后台管理系统,轻量、没有重度依赖,模块设计优雅,管理界面美观,可快速进行二次开发。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-26026-PoC
👤 项目作者: wuyou6956-glitch
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:57:39

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-41096-POC
👤 项目作者: wuyou6956-glitch
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:57:29

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: nethserver-nethsecurity-remote-code-execution-rce
👤 项目作者: gerico-lab
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:42:07

📝 项目描述:
Multiple Remote Code Execution (RCE) or Code Injection in NethServer NethSecurity

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpXSSGenerator
👤 项目作者: PinkCloudlet
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:42:27

📝 项目描述:
A Burp Suite extension (Jython, classic IBurpExtender API) that generates XSS payloads for Intruder, based on the PortSwigger cheatsheet — with a unique marker, encoding variants, and support for loading a custom payload list.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Simple-Vulnerability-Scanner
👤 项目作者: Radifakhan
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:31:54

📝 项目描述:
Python-based vulnerability scanner with port scanning, Nmap vulnerability assessment, XSS testing, and automated reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-1668-poc
👤 项目作者: wuyou6956-glitch
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 10:57:21

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #EXP

📦 项目名称: wyrd
👤 项目作者: sre-norns
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-30 12:04:17

📝 项目描述:
A collection of reusable components for all of your SRE project needs

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: Glowhaven-Dashboard
👤 项目作者: GlowhavenIndustries
🛠 开发语言: JavaScript
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 11:58:08

📝 项目描述:
The open-source command center for your company. Monitor KPIs, incidents, services, workflows, GitHub Actions, and automation in one secure, self-hosted workspace with RBAC, OIDC SSO, encrypted secrets, SSRF protection, and tamper-evident audit logs.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: headerscope
👤 项目作者: joaquinbarbetta
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 11:07:21

📝 项目描述:
Scan any website's HTTP security headers, get a grade and concrete fixes. Next.js + TypeScript, SSRF-hardened.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: HTTPoverHTTP
👤 项目作者: Term1N8
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 12:46:30

📝 项目描述:
Custom Burp Extension to Tunnel HTTP Over Burp Suite

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: poc-pdfjs-xss
👤 项目作者: gchem1se
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 13:53:14

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: APK_MalwareTest
👤 项目作者: TheCogentNihit
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 14:01:42

📝 项目描述:
An enterprise-grade Static Analysis pipeline combining XGBoost machine learning with a custom Heuristics engine (Entropy analysis, API matching, Obfuscation tracking, and YARA rules) to detect advanced Android malware, dropper payloads, and banking trojans. Features Dynamic Weighting and a Stealth Penalty to counter evasion techniques.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Yara-s-Bite-Kitchen
👤 项目作者: Ayodeji1234-code
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 13:45:39

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2021-3129
👤 项目作者: cchiaravalentini
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 13:54:58

📝 项目描述:
Reproduction and patch verification of CVE-2021-3129 (Laravel Ignition RCE) in Docker. University project, Data Privacy and Security, LUISS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-102975
👤 项目作者: BomboBombone
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 14:25:55

📝 项目描述:
Sanitized report and local PoC for CVE-2026-102975

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-102973
👤 项目作者: BomboBombone
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 14:25:51

📝 项目描述:
Sanitized report and local PoC for CVE-2026-102973

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-request-wavlink-wl-wn579x3-d
👤 项目作者: Imshad18
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 14:21:16

📝 项目描述:
Unauthenticated RCE in WAVLINK WL-WN579X3-D upload.cgi

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-94545-
👤 项目作者: MRdark-ops
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-30 15:25:26

📝 项目描述:
Next.js next/og unauthenticated RCE (CVE-2026-94545) - PoC

🔗 点击访问项目地址