GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.4K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Web-bugbounty-checklist-notion
👤 项目作者: Raunaksplanet
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:04:27

📝 项目描述:
Complete bug bounty checklist for web, recon & Android – OAuth, 2FA, OTP, XSS, SQLi, cache, GraphQL, subdomain enumeration, SecLists usage with ready-to-use commands & payloads.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-Recon
👤 项目作者: nusaibnull
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:06:01

📝 项目描述:
An automated Bash script for streamlined reconnaissance and vulnerability scanning. It integrates Subfinder and Nuclei to find subdomains and scan for vulnerabilities, while sending real-time progress and result notifications directly to your Telegram.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #POC

📦 项目名称: vapt-report-generator
👤 项目作者: kailasshankarpr
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 08:30:56

📝 项目描述:
Python CLI and FastAPI tool that normalizes Burp, Nmap, Nuclei and Nessus output into OWASP/MITRE-mapped HTML, PDF, DOCX and JSON reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-104356-pictshare-weak-delete-code
👤 项目作者: wvllxe
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:02:54

📝 项目描述:
Predictable delete_code via rand() in PictShare < 3.7.1 (CWE-338). PoC + advisory writeup.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-104051-pictshare-info-disclosure
👤 项目作者: wvllxe
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:02:53

📝 项目描述:
Sensitive info disclosure via info API in PictShare < 3.7.1 (CWE-522). PoC + advisory writeup.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: nishm5312-sudo
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:29:42

📝 项目描述:
A Python-based vulnerability scanner that checks common ports on a target and provides basic security recommendations for detected services.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-63292
👤 项目作者: 0xBlackash
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:53:45

📝 项目描述:
CVE-2026-63292

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CraftCMS-CVE-2026-44011-PoC-RCE
👤 项目作者: 0xyngtg
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:47:05

📝 项目描述:
This is a PoC of the CVE-2026-44011 found by precicom-vincent-tl. For more details check: https://github.com/advisories/GHSA-qrgm-p9w5-rrfw

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: AI-FILE
👤 项目作者: kyle41111
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 10:49:34

📝 项目描述:
A listener profile for the Mythic C2 framework that utilizes AI vendors file API's

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: polyglot-bughunter-x
👤 项目作者: skamy64-ux
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:04:53

📝 项目描述:
Multimodal AI web bug hunter: sees, hears and reads a website while hunting bugs. 43 non-destructive payloads, CVSS v3.1 scoring, offline demo, CLI, Kaggle kernel.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #云元数据 #metadata

📦 项目名称: web-fetch-mcp
👤 项目作者: asd369932
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:47:54

📝 项目描述:
MCP server: SSRF-guarded web/JSON fetching for AI assistants. IP-class validation, 2MB cap, 20s timeout.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-57973
👤 项目作者: riddhimaan-sth404
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:56:52

📝 项目描述:
CVE-2026-57973 is a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Microsoft Windows Subsystem for Linux (WSL2) that allows an authorized local attacker to perform tampering.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: RootMyVivo-rs
👤 项目作者: L-1124
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:46:01

📝 项目描述:
Cross-platform pure-Rust toolchain for unlock-free temporary root and KernelSU late-loading on vivo/iQOO devices (CVE-2026-43499)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: pentrix-xss
👤 项目作者: mizazhaider-ceh
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:52:08

📝 项目描述:
Reflected XSS scanner with reflection context classification. Python 3, zero dependencies.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: bank-app
👤 项目作者: RataDarius
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 11:58:12

📝 项目描述:
Deliberately vulnerable banking web app — a CTF / pentest lab. PHP + MySQL in Docker, admin session takeover via stored XSS, Puppeteer bot.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: network-pentest
👤 项目作者: dotbiru
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:06:04

📝 项目描述:
Network penetration testing extension for Burp Suite - port scanning, service fingerprinting, vulnerability checks, credential testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-es-logger
👤 项目作者: cymetrics
🛠 开发语言: Kotlin
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 09:38:10

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: fortimail-zero-day-cve-2026-104286
👤 项目作者: techupdate24
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:48:07

📝 项目描述:
A complete guide and workflow for integrating Agile sprints with DevOps CI/CD pipelines.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: OWASP-Top-10-Vulnerabilities-Simulation-Lab
👤 项目作者: edrees078
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:35:24

📝 项目描述:
A local-only OWASP Top 10 training lab with intentionally vulnerable exercises in SQL injection, cross-site scripting (XSS), broken access control, and 7 more vulnerabilities, featuring PHP, JavaScript, and MySQL exercises for hands-on learning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Beacon

📦 项目名称: specter
👤 项目作者: 0xC9H
🛠 开发语言: C
⭐ Star数量: 5 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:50:36

📝 项目描述:
AdaptixC2 Windows x64 agent focused on EDR evasion - position-independent beacon (C/NASM, no CRT, single .text section) with encrypted sleep, indirect syscalls, hardware-breakpoint hooking, and malleable C2 profiles

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2025-24801-GLPI-10.0.17-and-prior-Authenticated-RCE
👤 项目作者: kevenpanchal
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 12:11:42

📝 项目描述:
无描述

🔗 点击访问项目地址