GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.3K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Acunetix-Scanner-2026
👤 项目作者: BarricadeHerbalist
🛠 开发语言: C++
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 03:02:07

📝 项目描述:
Web vulnerability scanner for versions 15 and 16, with premium and pro builds. An activator, patch, serial, activation key, and license key sit with a trial reset and a license generator, plus a full version path for one scan host on a LAN

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: wpforms-xss-fix-bypass
👤 项目作者: dorkerdevil
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-01 13:38:35

📝 项目描述:
Unauthenticated reflected XSS in WPForms <= 2.0.2.1 — bypass of the CVE-2026-88996 Smart Tag escaping at attribute-name position

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Malware-Analysis
👤 项目作者: leeruien
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 03:47:10

📝 项目描述:
This project aimed to use IOCs and known behaviour of well known malware like Raccoon stealer, Wannacry, Neuron service to detect them using YARA

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE #Nuclei

📦 项目名称: CVE-2026-14378-DevKit-Pro-Auth-Bypass
👤 项目作者: anoxhunterdump-ctrl
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:49:05

📝 项目描述:
Defensive analysis, patch breakdown, and detection scanner for CVE-2026-14378 (WordPress DevKit Pro Plugin <= 2.3.0).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: EternalBlue-VM
👤 项目作者: AnthonyKendall
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:58:41

📝 项目描述:
This is a walkthough in how to exploit the EternalBlue ms17_010 vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: api-test-devops-portfolio
👤 项目作者: yaoki-dev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 02:42:52

📝 项目描述:
外部API連携で起こりやすいSSRF・PII漏洩・不安定なリトライ・Rate Limit対応漏れをpytestで検証し、GitHub Actions+DockerでCI/CD化。カバレッジはGitHub Pagesで公開

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #POC #CVE

📦 项目名称: ThreatPulse-AI
👤 项目作者: realsandeep1271-ui
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 04:36:23

📝 项目描述:
24/7 serverless CVE & CISA KEV threat intel bot with EPSS scoring, GitHub PoC search, and Telegram alerts

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-19660
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 05:52:42

📝 项目描述:
Divi Membership (DiviEngine) pre-auth admin takeover — CVE-2026-19660 paypal_param bypass. Python PoC with exploit + cookie export.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-14378
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 05:42:01

📝 项目描述:
PoC for CVE-2026-14378: DevKit Pro ≤2.3.0 unauthenticated admin takeover via original_user_id cookie + revert_switch nonce. check/admin + mass scan.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: asphdex-yara-library
👤 项目作者: dRafaleD
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 07:03:30

📝 项目描述:
Original categorized YARA rules with inert fixtures, dual-engine validation, and explicit static-analysis limits

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: ai-vuln-hunter
👤 项目作者: csjad
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 06:53:19

📝 项目描述:
AI 自动化漏洞挖掘系统:五阶段状态机(侦察/扫描/验证/学习/报告)+ 硬约束安全策略层 + OOB 带外验证 + 学习闭环

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: zimbra-cve-2026-73570-ir
👤 项目作者: dahnutz
🛠 开发语言: Shell
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 06:07:51

📝 项目描述:
Detection-first, evidence-preserving incident-response toolkit for Zimbra CVE-2026-73570. Includes read-only host checks, IOC feeds, triage, persistence, containment, and recovery guidance based on sanitized incident evidence.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: YaraCompileReview
👤 项目作者: dhtfish-98
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 07:46:28

📝 项目描述:
Validates defensive detection rule deployment inputs without scanning or executing target content. yara-python remains an attributed external compiler dependency, not a rewritten compiler.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-postman-bridge
👤 项目作者: eyasuasegid
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:03:23

📝 项目描述:
Burp Suite extension for sending HTTP requests directly to existing Postman collections.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpAuditAI
👤 项目作者: InterTraveler
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:04:33

📝 项目描述:
AI-assisted vulnerability auditing extension for Burp Suite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: MAJLIS-2026-RAT-Teardown
👤 项目作者: Rat5ak
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:43:32

📝 项目描述:
Robert tears down the Majlis 2026 invitation RAT: two command channels, OTP 123456, and a snowy village. Report, screenshots, IOCs and YARA.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Protocol-Decoder-Ring
👤 项目作者: Zoye-J
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:52:23

📝 项目描述:
A network protocol analysis sandbox that monitors application communication to detect malicious behavior. Identifies custom protocols, data exfiltration attempts, DNS tunneling, and encrypted C2 channels. Generates Snort/Suricata signatures for threat intelligence sharing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: ios_-
👤 项目作者: jamiesonu100980
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:37:44

📝 项目描述:
扫描ios多版本系统漏洞

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-100520-laranode-path-traversal
👤 项目作者: wvllxe
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:02:51

📝 项目描述:
Path Traversal -> RCE in Laranode < 1.2.1 (CWE-22). PoC + advisory writeup.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: SailFish-C2-LITE
👤 项目作者: hackpatato
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:51:33

📝 项目描述:
A C2 Framework (Command & Control) tool developed for red team operations and educational research. It uses Telegram as its C2 channel and encrypts data with a Base64 + XOR combination.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #UAC

📦 项目名称: dsh-traffic-monitor
👤 项目作者: oupeng130
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:50:15

📝 项目描述:
DeepSeek Harness 插件:按应用统计本机流量——网卡速率与累计、每应用 TCP 连接字节(UAC 提权后精确统计)、设置页看板与浮动小窗。

🔗 点击访问项目地址