GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.8K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-105080-poc
👤 项目作者: beyavuz
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 10:20:51

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Xray #CVE

📦 项目名称: frogbot
👤 项目作者: jfrog
🛠 开发语言: Go
⭐ Star数量: 372 | 🍴 Fork数量: 109
📅 更新时间: 2026-10-06 11:00:35

📝 项目描述:
🐸 Scans your Git repository with JFrog Xray & JFrog advanced security for security vulnerabilities. 🤖

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #威胁情报

📦 项目名称: antivirus-software
👤 项目作者: zhao1136-art
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 08:58:39

📝 项目描述:
御天:Windows 安全防护套件(实时防护 / 原生引擎 / 云查杀 / YARA / 自保护)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: streamlit-protobuf-editor
👤 项目作者: moorada
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 11:56:57

📝 项目描述:
Burp Suite extension for viewing, editing, and re-encoding Streamlit Protobuf WebSocket messages.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: BlueTeam-Portfolio
👤 项目作者: aishasadiqa620-eng
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 12:00:28

📝 项目描述:
SOC Analyst Level 1 Portfolio | Python for Blue Team | Log Analysis, Brute Force Detection | Learning in Public - Day 16 to Day 30

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: enterprise-waf-data-extraction-all
👤 项目作者: KeywordBarrage
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 12:05:00

📝 项目描述:
We do not sell scripts, bypass tools, or source code. We deliver custom, high-frequency SQLite data feeds for complex e-commerce targets under enterprise SLA.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Ruijie-RG-ES-Series-Switches_XSS
👤 项目作者: byseeker
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 13:28:03

📝 项目描述:
Stored XSS in Cloud Server URL Parameter of Ruijie RG-ES Series Switches

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: VulnClaw
👤 项目作者: hansaes
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 13:49:27

📝 项目描述:
基于 AI Agent + MCP 工具链 + 渗透 Skill 编排,配合大语言模型,自然语言输入 → 自动完成「信息收集 → 漏洞发现 → 漏洞利用 → 报告生成」全流程。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yarac
👤 项目作者: SrijanNandi
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 14:00:48

📝 项目描述:
yara pre-compiled rules

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43805-analysis
👤 项目作者: WTCYJ
🛠 开发语言: C++
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 14:45:37

📝 项目描述:
One-day analysis + sanitizer PoC of CVE-2026-43805 (IOKit IODMACommand DriverKit RPC race, CWE-362)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-67401
👤 项目作者: hitechcloud-vietnam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 14:38:33

📝 项目描述:
PoC for CVE-2026-67401 — cPanel/WHM EmailTrack SQL injection leading to arbitrary file write and root RCE. Includes a self-contained vulnerable lab, SQLi detection, and full exploit chain.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: VulnHunter
👤 项目作者: nealbridges
🛠 开发语言: Python
⭐ Star数量: 460 | 🍴 Fork数量: 81
📅 更新时间: 2026-10-06 14:58:36

📝 项目描述:
Agentic AI security scanner that hunts exploitable vulnerabilities like an adversary, proves them with executable PoCs, and fixes them test-first. A maintained fork of Capital One's VulnHunter, rebuilt for any agent harness.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #CVE

📦 项目名称: AI-Assisted-Enterprise-Network-Reconnaissance-Vulnerability-Triage
👤 项目作者: NimishaSinha42
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 14:13:44

📝 项目描述:
Enterprise network reconnaissance lab covering 5,120 targets using SmartScan, Nmap, Nikto, Nuclei, Nighthawk, CVE correlation and AI-assisted vulnerability triage.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: hunter-v1
👤 项目作者: Osaidshalaan
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 14:53:07

📝 项目描述:
Active vulnerability scanner — 211 payloads, baseline confirmation, SARIF output

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-3888-snap-confine-privilege-escalation
👤 项目作者: AlanNewberry
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 16:13:40

📝 项目描述:
Exploit para CVE-2026-3888: race condition en snap-confine con hijack del loader para escalar a root en Linux.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf-lab
👤 项目作者: zoly-zoly
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 16:56:31

📝 项目描述:
A comprehensive 10-level hands-on laboratory designed to master Server-Side Request Forgery (SSRF). From basic internal network probes to advanced bypasses and critical cloud metadata exfiltration. Portable, self-contained, and built for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: Zenphoto-1.4.1.4-CVE-2011-4825-RCE
👤 项目作者: XavLimSG
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 17:58:34

📝 项目描述:
Python 3 reverse-shell exploit for Zenphoto <= 1.4.1.4 / CVE-2011-4825 (EDB-18083)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: SSRF-Lab
👤 项目作者: zoly-zoly
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 17:32:12

📝 项目描述:
A comprehensive 10-level hands-on laboratory designed to master Server-Side Request Forgery (SSRF). From basic internal network probes to advanced bypasses and critical cloud metadata exfiltration. Portable, self-contained, and built for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Argus
👤 项目作者: harshaR-ctrl
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 17:30:36

📝 项目描述:
A github repo vulnerability scanner using gitleaks, OSV and smgrep

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-21589-PoC-Exploit
👤 项目作者: tc4dy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 18:34:46

📝 项目描述:
CVE-2026-21589 – Atlassian Data Center Unauth Arbitrary File Read (CVSS 9.3) | Red/Blue Team suite. 2 tools: Full Exploit (path traversal, WEB-INF read, credential harvest, 8 products, mass scan, SOCKS5/Tor, stealth) & SafeChecker (non-intrusive version audit, IoC guidance, JSON/CSV). Use Ethically, Stay Legal.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-57967
👤 项目作者: c0dem4sters
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 19:56:01

📝 项目描述:
CVE-2026-57967 PoC — Apache ActiveMQ Artemis unauthenticated session hijacking via SESSION_REATTACH (2.50.0–2.56.0)

🔗 点击访问项目地址