GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.3K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: rmg-s9110-research
👤 项目作者: yexiaoqq
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-01 23:50:33

📝 项目描述:
Root My Galaxy (CVE-2026-43499) exploit-grooming research log for Samsung Galaxy S23 SM-S9110 (dm1q / android13-5.15). Reverse-engineering notes, experiment journals, and step-by-step beginner-friendly docs.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: dsh-gungnir
👤 项目作者: 86cloudyun-afk
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 00:05:37

📝 项目描述:
GUNGNIR - DSH 红队战役指挥框架:攻击路径合成的工程化。事实库+门闸+跳板池,执行层可插拔。编排层,不含漏洞利用代码;仅限授权测试。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: confirmesc
👤 项目作者: capture0x
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 00:07:01

📝 项目描述:
Linux privesc enumerator that confirms exploitability and gives you the exact root shell command - no GTFOBins searching. MCP server + AI-agent skills included.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE #POC

📦 项目名称: lykos
👤 项目作者: dloucks01
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-01 23:55:46

📝 项目描述:
Binary & source vulnerability analysis with reproducible PoCs: reverse-engineer, detect CWEs, fingerprint known CVEs, taint/fuzz/concolic, and prove exploitability (IP control / working exploits).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Beacon

📦 项目名称: HTAC2
👤 项目作者: TREXNEGRO
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-02 00:07:30

📝 项目描述:
Cloudflare-tunneled HTA C2 for authorized red team engagements

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: proteus
👤 项目作者: ChronoCoders
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 00:20:29

📝 项目描述:
Zero-day static analysis engine for PE/ELF malware detection using entropy analysis, heuristics, YARA rules, and machine learning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CobaltStrike #Beacon

📦 项目名称: BOF-Builder
👤 项目作者: ceramicskate0
🛠 开发语言: C#
⭐ Star数量: 24 | 🍴 Fork数量: 4
📅 更新时间: 2026-10-02 01:49:02

📝 项目描述:
C# .Net 5.0 project to build BOF (Beacon Object Files) in mass

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2 #Beacon

📦 项目名称: redStack-defcon34
👤 项目作者: devZero-Security
🛠 开发语言: Unknown
⭐ Star数量: 28 | 🍴 Fork数量: 4
📅 更新时间: 2026-10-01 12:51:22

📝 项目描述:
DEF CON 34 workshop for redStack: deploy a Mythic/Sliver/Adaptix red team lab on AWS with Terraform and run a full boot-to-breach attack path over OpenVPN.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: cve-2026-19445-sni-uaf
👤 项目作者: abraxas
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 01:46:55

📝 项目描述:
CPython - Critical - SNI SSLContext UAF

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Acunetix-Scanner-2026
👤 项目作者: BarricadeHerbalist
🛠 开发语言: C++
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 03:02:07

📝 项目描述:
Web vulnerability scanner for versions 15 and 16, with premium and pro builds. An activator, patch, serial, activation key, and license key sit with a trial reset and a license generator, plus a full version path for one scan host on a LAN

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: wpforms-xss-fix-bypass
👤 项目作者: dorkerdevil
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-01 13:38:35

📝 项目描述:
Unauthenticated reflected XSS in WPForms <= 2.0.2.1 — bypass of the CVE-2026-88996 Smart Tag escaping at attribute-name position

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware-Analysis
👤 项目作者: leeruien
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 03:47:10

📝 项目描述:
This project aimed to use IOCs and known behaviour of well known malware like Raccoon stealer, Wannacry, Neuron service to detect them using YARA

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE #Nuclei

📦 项目名称: CVE-2026-14378-DevKit-Pro-Auth-Bypass
👤 项目作者: anoxhunterdump-ctrl
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:49:05

📝 项目描述:
Defensive analysis, patch breakdown, and detection scanner for CVE-2026-14378 (WordPress DevKit Pro Plugin <= 2.3.0).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: EternalBlue-VM
👤 项目作者: AnthonyKendall
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:58:41

📝 项目描述:
This is a walkthough in how to exploit the EternalBlue ms17_010 vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: api-test-devops-portfolio
👤 项目作者: yaoki-dev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 02:42:52

📝 项目描述:
外部API連携で起こりやすいSSRF・PII漏洩・不安定なリトライ・Rate Limit対応漏れをpytestで検証し、GitHub Actions+DockerでCI/CD化。カバレッジはGitHub Pagesで公開

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #POC #CVE

📦 项目名称: ThreatPulse-AI
👤 项目作者: realsandeep1271-ui
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:36:23

📝 项目描述:
24/7 serverless CVE & CISA KEV threat intel bot with EPSS scoring, GitHub PoC search, and Telegram alerts

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-19660
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 05:52:42

📝 项目描述:
Divi Membership (DiviEngine) pre-auth admin takeover — CVE-2026-19660 paypal_param bypass. Python PoC with exploit + cookie export.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-14378
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 05:42:01

📝 项目描述:
PoC for CVE-2026-14378: DevKit Pro ≤2.3.0 unauthenticated admin takeover via original_user_id cookie + revert_switch nonce. check/admin + mass scan.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: asphdex-yara-library
👤 项目作者: dRafaleD
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 07:03:30

📝 项目描述:
Original categorized YARA rules with inert fixtures, dual-engine validation, and explicit static-analysis limits

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: ai-vuln-hunter
👤 项目作者: csjad
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 06:53:19

📝 项目描述:
AI 自动化漏洞挖掘系统:五阶段状态机(侦察/扫描/验证/学习/报告)+ 硬约束安全策略层 + OOB 带外验证 + 学习闭环

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: zimbra-cve-2026-73570-ir
👤 项目作者: dahnutz
🛠 开发语言: Shell
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 06:07:51

📝 项目描述:
Detection-first, evidence-preserving incident-response toolkit for Zimbra CVE-2026-73570. Includes read-only host checks, IOC feeds, triage, persistence, containment, and recovery guidance based on sanitized incident evidence.

🔗 点击访问项目地址