GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.3K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: SailFish-C2-LITE
👤 项目作者: hackpatato
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:51:33

📝 项目描述:
A C2 Framework (Command & Control) tool developed for red team operations and educational research. It uses Telegram as its C2 channel and encrypts data with a Base64 + XOR combination.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #UAC

📦 项目名称: dsh-traffic-monitor
👤 项目作者: oupeng130
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:50:15

📝 项目描述:
DeepSeek Harness 插件:按应用统计本机流量——网卡速率与累计、每应用 TCP 连接字节(UAC 提权后精确统计)、设置页看板与浮动小窗。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Reflected-XSS-in-JavaScript-String-
👤 项目作者: gabrielhusa0-hash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:50:27

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Web-bugbounty-checklist-notion
👤 项目作者: Raunaksplanet
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:04:27

📝 项目描述:
Complete bug bounty checklist for web, recon & Android – OAuth, 2FA, OTP, XSS, SQLi, cache, GraphQL, subdomain enumeration, SecLists usage with ready-to-use commands & payloads.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-Recon
👤 项目作者: nusaibnull
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:06:01

📝 项目描述:
An automated Bash script for streamlined reconnaissance and vulnerability scanning. It integrates Subfinder and Nuclei to find subdomains and scan for vulnerabilities, while sending real-time progress and result notifications directly to your Telegram.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #POC

📦 项目名称: vapt-report-generator
👤 项目作者: kailasshankarpr
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:30:56

📝 项目描述:
Python CLI and FastAPI tool that normalizes Burp, Nmap, Nuclei and Nessus output into OWASP/MITRE-mapped HTML, PDF, DOCX and JSON reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-104356-pictshare-weak-delete-code
👤 项目作者: wvllxe
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:02:54

📝 项目描述:
Predictable delete_code via rand() in PictShare < 3.7.1 (CWE-338). PoC + advisory writeup.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-104051-pictshare-info-disclosure
👤 项目作者: wvllxe
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:02:53

📝 项目描述:
Sensitive info disclosure via info API in PictShare < 3.7.1 (CWE-522). PoC + advisory writeup.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: nishm5312-sudo
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:29:42

📝 项目描述:
A Python-based vulnerability scanner that checks common ports on a target and provides basic security recommendations for detected services.

🔗 点击访问项目地址
Forwarded from 金银
This media is not supported in your browser
VIEW IN TELEGRAM
⚡️⚡️⚡️⚡️😂😂😂😂
2026世界杯官方指定投注平台

➡️ 豪礼大放送、高端嫩模、劳力士手表、奔驰E300 加入 #182体育 等你领取, 电子可拉2万一注

🌐182体育官网: 182268.com
TG玩家首选人民币台 不限ip 免实名免绑卡手机号码

🌐8K国际官网: 8k2769.com
TG玩家首选U台 U存U提出款稳,福利好反水无上限


😀😀😀😀😀😀😀😀😀😀😀😀😀

1.PG电子赏金女王一举斩获830万并成功提现
2
.PA真人豪赢644万一路长虹一天实现暴富
3
.PG电子爆890万并以成功提现实现财富自由
4
.大哥在PA真人百家乐累计盈利突破1000万

🔤🔤🔤🔤 以及C币,K豆,OKpay、👌微信,👌支付宝,银行卡等30多种存取款方式,通畅便捷

大额出款额外奖励8888-128888,双重日存彩金128888+4688每日送,周流水彩金68888每周送,双重签到彩金16888+3888送不停

😅😏😃😃🙃😢😅😚😍😀😏😝
【 182体育 全网独此一家】
公平、公正、公开、 信誉第一、服务第一
不限ip、 免实名、免绑卡、免绑手机号码

🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩
官方频道: @vip182ty
体育推荐:
@tytj182ty
专属客服:
@vipkf_182ty
双向联系:
@vipkf_182ty_bot


🌐 8K国际网址:
8k2769.com
🌐182体育网址:
182268.com
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-63292
👤 项目作者: 0xBlackash
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:53:45

📝 项目描述:
CVE-2026-63292

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CraftCMS-CVE-2026-44011-PoC-RCE
👤 项目作者: 0xyngtg
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:47:05

📝 项目描述:
This is a PoC of the CVE-2026-44011 found by precicom-vincent-tl. For more details check: https://github.com/advisories/GHSA-qrgm-p9w5-rrfw

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: AI-FILE
👤 项目作者: kyle41111
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:49:34

📝 项目描述:
A listener profile for the Mythic C2 framework that utilizes AI vendors file API's

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: polyglot-bughunter-x
👤 项目作者: skamy64-ux
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:04:53

📝 项目描述:
Multimodal AI web bug hunter: sees, hears and reads a website while hunting bugs. 43 non-destructive payloads, CVSS v3.1 scoring, offline demo, CLI, Kaggle kernel.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #云元数据 #metadata

📦 项目名称: web-fetch-mcp
👤 项目作者: asd369932
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:47:54

📝 项目描述:
MCP server: SSRF-guarded web/JSON fetching for AI assistants. IP-class validation, 2MB cap, 20s timeout.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-57973
👤 项目作者: riddhimaan-sth404
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:56:52

📝 项目描述:
CVE-2026-57973 is a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Microsoft Windows Subsystem for Linux (WSL2) that allows an authorized local attacker to perform tampering.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: RootMyVivo-rs
👤 项目作者: L-1124
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:46:01

📝 项目描述:
Cross-platform pure-Rust toolchain for unlock-free temporary root and KernelSU late-loading on vivo/iQOO devices (CVE-2026-43499)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: pentrix-xss
👤 项目作者: mizazhaider-ceh
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:52:08

📝 项目描述:
Reflected XSS scanner with reflection context classification. Python 3, zero dependencies.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: bank-app
👤 项目作者: RataDarius
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:58:12

📝 项目描述:
Deliberately vulnerable banking web app — a CTF / pentest lab. PHP + MySQL in Docker, admin session takeover via stored XSS, Puppeteer bot.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: network-pentest
👤 项目作者: dotbiru
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:06:04

📝 项目描述:
Network penetration testing extension for Burp Suite - port scanning, service fingerprinting, vulnerability checks, credential testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-es-logger
👤 项目作者: cymetrics
🛠 开发语言: Kotlin
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:38:10

📝 项目描述:
无描述

🔗 点击访问项目地址