GitHub 红队武器库🚨
14.3K subscribers
25 photos
11 videos
27.3K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-55559
👤 项目作者: MRdark-ops
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 14:33:27

📝 项目描述:
Unauthenticated RCE in Yamcs mission control via YAML injection in reconfigureInstance()

🔗 点击访问项目地址
Forwarded from Channel Help
🍏🍎🍐🍊🍋🍋‍🟩🍌🍉🍇

😫 M.GAME|新人福利火力全开
⚡️ 注册即享新人专属福利
🤩 新人奖励最高 10,666
🤩 每日打码最高 6,666
🤩 每周打码最高 10,666
😞 电子每日狂送最高 16%
⚡️ 每日红包连送 · 天天都能领
😘 爆奖|连赢|幸运注单 多重福利
⚡️ 新客福利 + 每日福利 + 每周福利
能领的全部领,活动天天不间断!

⚡️ 大额玩家专属通道
支持10倍验资:@cskh
😒 担保域名: M001.GAME|点击查看

😀 M.GAME 官方频道
最新活动 · 红包福利 · 优惠第一时间发布

😡 代理佣金最高50%|纯盈利模式
联系代理招商

⚡️ 官方客服: @CSKH
⚡️ 官方飞投: @mgamezh_bot
⚡️ 福利频道: @tk555
⚡️ 注册网址: M.GAME 【 USDT 】
🤣 注册网址: M.GAME【人民币】

邀请好友注册充值 · 再领166U/人
欢迎各位老板加入 M国际娱乐城
关注官方频道|参与更多优惠活动
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: huellanativa
👤 项目作者: jocelin-portafolio
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 14:32:22

📝 项目描述:
SPA en JavaScript vanilla: perfiles sensoriales para niños neurodivergentes, e-commerce con carrito persistente y monitor IoT simulado. Renderizado seguro sin innerHTML (anti-XSS).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2026-40281-exploit
👤 项目作者: MRdark-ops
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 14:26:07

📝 项目描述:
Gotenberg 8.30.1 unauthenticated RCE exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: PenPot-RCE
👤 项目作者: overgrowncarrot1
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 14:06:40

📝 项目描述:
Penpot <2.15.0 allows for unathenticated RCE CVE-2026-45805

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: malware-analysis
👤 项目作者: sarfraz432
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 14:39:11

📝 项目描述:
Malware analysis, information on malware, reversing, required scripts, yara rules, configuration extractors.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: YaraRuleDraftReview
👤 项目作者: dhtfish-98
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 15:41:10

📝 项目描述:
Bounded offline YARA rule drafting from caller-labeled byte corpora with real native validation and explicit uncertainty.

🔗 点击访问项目地址
Forwarded from Channel Help
This media is not supported in your browser
VIEW IN TELEGRAM
🤩🤩🤩🤩 🤩🤩🤩🤩🤩
0审核|包出款🤩🤩🤩
东南亚大事件联合担保🤩🤩🤩🤩🤩(电子)

🤩亿级域名|78.COM
🤩官方飞投|充提自由
🔝实力派:78.COM 数字够短 品牌够大

🔥香港六合彩 · 独家盈利无上限!
🤩所有的特码🤩🤩倍
🤩连码三中三🤩🤩🤩倍
🤩百家乐全网最高起步返水🤩%
🤩电子|棋牌|捕鱼起步返水🤩.🤩%
🤩十三水|德州自主组队,无抽佣;
🏆电子单注🤩🤩🤩🤩U一拉;
⭐️百家乐真人视讯台红🤩🤩万U;

🚩诚招代理合作(二选一):
1、打码返佣,限指定平台;
2、占成模式,可自由选择占成比例及游戏平台;
🤩🤩🤩🤩:@DL78

💥高额战绩,巅峰记录持续刷新:
🥇PP电子|极速糖果1000
玩家游戏中购买30000u超级免费旋转,高倍爆奖,最终拿下378万U,已出款;

🥈PG电子|麻将胡了
又又又欧气爆棚,3000U一拉,连番触发,单局斩获193万U;

🥉香港六合彩|特码49倍
爱拼才会赢,大佬单码下注18万U,一注直接拿下本期最高派彩 882万U;

🤩CHOICE真人|原AG
西港盘总百家乐多轮连胜,战绩一路走高,两天累计已提款1200万U;

🤩🤩🤩🤩🤩🤩🤩🤩🤩

🤩🤩🤩🤩 : 78.COM 😀
🤩🤩🤩🤩 : @TG78
🤩🤩🤩🤩 : @DF78⭐关注领📱VIP
🤩🤩🤩🤩 : @KF78
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: arc-studio-gitpython-cve-poc
👤 项目作者: hackthesoul
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:20:06

📝 项目描述:
Benign PoC for GitPython CVE-2026-87817 (bug bounty research, arc-bbp)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: Abducted-HTB-Writeup
👤 项目作者: timgad794
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:19:18

📝 项目描述:
🔴 HackTheBox Abducted (Medium) — CVE-2026-4480 (Samba %J) → rclone reveal → SMB-Symlink → systemd Drop-in → Root

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #CVE #metadata

📦 项目名称: mcp-remote-oauth-security
👤 项目作者: playb0t
🛠 开发语言: Unknown
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-02 16:51:43

📝 项目描述:
Seven evidence-bounded OAuth trust-boundary security advisories for geelen/mcp-remote, reviewed through 0.1.38.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #攻防演练 #渗透

📦 项目名称: redforge
👤 项目作者: f5dt1artum
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:57:55

📝 项目描述:
这是一个面向渗透测试与攻防演练的渗透测试与攻防演练平台。长期目标是提供资产发现与指纹识别、端口与服务测绘、漏洞模板匹配、凭证探测、载荷生成、攻击链编排、授权边界强制和结果评分,把攻防演练沉淀为可复用平台。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: IronClaud-Security-WebScanner
👤 项目作者: Ganesh030106
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:30:59

📝 项目描述:
IronClad Security Command Center is an advanced, enterprise-grade web application vulnerability scanner and dynamic Web Application Firewall (WAF) suite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: vsftpd-2.3.4-rce-assessment
👤 项目作者: Spidey1919
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:48:34

📝 项目描述:
Penetration testing portfolio: FTP vulnerability assessment & exploitation in isolated lab. Demonstrates network reconnaissance, CVE-2011-2523 validation, and post-exploitation verification. Complete methodology with evidence, findings, and remediation guidance.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-104826
👤 项目作者: KiwKNR
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 16:14:40

📝 项目描述:
CVE-2026-104826: path traversal to RCE in DropzoneFileExplorer chunked upload handler

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored

📦 项目名称: Instatic-Stored-XSS-CVE-2026-103931
👤 项目作者: overgrowncarrot1
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 17:18:27

📝 项目描述:
CVE-2026-103931

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #EXP #metadata

📦 项目名称: laravel-oidc
👤 项目作者: cboxdk
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 17:57:11

📝 项目描述:
OpenID Connect relying party for Laravel: discovery, PKCE, strict ID token verification, multi-tenant issuers and back-channel logout, with every outbound call through an injectable, SSRF-guarded HTTP client.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: sdk-go
👤 项目作者: openctemio
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-02 17:56:47

📝 项目描述:
Go SDK for OpenCTEM: API client, sensor runtime kit and ready-made scanner integrations (Nuclei, Trivy, Semgrep, CodeQL, subfinder, httpx, naabu, katana) with an SSRF-safe HTTP layer.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: AutoPYaraPyPI
👤 项目作者: Botacin-s-Lab
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 18:55:53

📝 项目描述:
Python Package of AutoPYara

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc
👤 项目作者: 1917965946
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-02 18:52:06

📝 项目描述:
XSS PoC resource host

🔗 点击访问项目地址