GitHub 红队武器库🚨
14.3K subscribers
25 photos
11 videos
27.7K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-23744-POC
👤 项目作者: 01xJB
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:59:24

📝 项目描述:
MCPJam Inspector Remote Code Execution

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-10520-POC
👤 项目作者: 01xJB
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:23:41

📝 项目描述:
Exploit for CVE-2026-10520 | Ivanti Sentry - OS Command Injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ogp-fetcher
👤 项目作者: masaki39
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:30:59

📝 项目描述:
OGP Fetcher API - Extract OG metadata from URLs with SSRF protection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc
👤 项目作者: nithi-02
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:46:21

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: rekit
👤 项目作者: Amz34
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:51:55

📝 项目描述:
Read-only reverse-engineering toolkit: CLI + MCP server for triage, strings, IOCs, disassembly, APK/firmware/PCAP/JS analysis, Ghidra headless decompile, capa, YARA. Missing backends are reported as tool_missing - never faked.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-13043
👤 项目作者: TheMalwareGuardian
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 15:58:32

📝 项目描述:
CVE-2026-13043 - Exploiting Panda / WatchGuard pskmad.sys authentication bypass for privileged IOCTL access, MSR disclosure and arbitrary process memory reads.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Confluence #CVE

📦 项目名称: mcp-atlassian-confluence-dc
👤 项目作者: asMma
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 15:58:16

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: Exploits
👤 项目作者: gosirys
🛠 开发语言: Perl
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:00:51

📝 项目描述:
Archive: exploits/advisories from 2008-2011

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: TRACE-Forensic-Toolkit
👤 项目作者: Gadzhovski
🛠 开发语言: Python
⭐ Star数量: 215 | 🍴 Fork数量: 29
📅 更新时间: 2026-10-07 15:54:46

📝 项目描述:
Open-source digital forensics (DFIR) toolkit with a desktop GUI: analyse E01, AFF4, raw/dd and VMDK disk images, recover deleted files by file carving, build timelines, search evidence and run YARA/Sigma rules. Windows, macOS, Linux.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Beacon

📦 项目名称: hermes-security-skills
👤 项目作者: Yata-Datacom
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:02:46

📝 项目描述:
Hermes Agent skills for defensive security ops: IP-ban orchestration with threat-intent analysis + Linux threat hunting (ICMP/DNS tunnel, C2 beacon, DGA). 防御性安全技能包(封禁编排 / 意图分析 / 威胁狩猎),已脱敏。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: project
👤 项目作者: shivanisri2797
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 15:48:00

📝 项目描述:
A Python-based mini vulnerability scanner that detects open ports, identifies basic services, checks for common security issues, and generates a vulnerability report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: wp2shell
👤 项目作者: manpisetsu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:51:11

📝 项目描述:
CVE-2026-63030 + CVE-2026-60137 exploit RCE chain

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Inject

📦 项目名称: gtlibc
👤 项目作者: heaven-hm
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 14:41:18

📝 项目描述:
GTLibc is library to make game trainer in c/c++ it provide all the necessary methods to make simple game trainer in windows using win32-API with ease.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: ATOR-Rewamped
👤 项目作者: 0xdhanesh
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:32:35

📝 项目描述:
ATOR refactored for 2026 and tools exposed for burp MCP

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: burp-message-crypto
👤 项目作者: FormindGCA
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 15:39:48

📝 项目描述:
Handling encrypted value in HTTP request and response

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-convertor
👤 项目作者: zeekallab
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:49:54

📝 项目描述:
Checks YARA rules for YARA-X compatibility.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-2021-38759
👤 项目作者: Hu2ie
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:48:12

📝 项目描述:
CVE-2021-38759 — Raspberry Pi OS Default Credentials Exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnScanner
👤 项目作者: hamzaaboelezz9-stack
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:33:26

📝 项目描述:
A modular Python vulnerability scanner for authorized web and TCP security testing, with safe checks, passive service detection, offline CVE candidates, and HTML, SARIF JSON, and Markdown reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: Enterprise-Workflow-Management-Platform
👤 项目作者: bunnysunny24
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:06:46

📝 项目描述:
An enterprise-grade, full-stack business automation engine developed with Java 17, Spring Boot, React, JavaScript, and MySQL. The platform delivers a robust, configurable state-machine architecture to digitize and automate multi-user business processes with persistent workflow state, role-based authorization, immutable compliance audit trails, and

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: auth-gateway
👤 项目作者: dezhiguan
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:07:06

📝 项目描述:
统一认证网关与身份提供方 —— JWT/JWKS、OAuth2 令牌交换(RFC 8693)、刷新令牌轮换与智能体授权,基于 Spring Boot 3 / Java 21 | Unified authentication gateway & IdP — JWT/JWKS, OAuth2 token exchange (RFC 8693), refresh-token rotation and agent consent, on Spring Boot 3 / Java 21

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #AV #EDR

📦 项目名称: keylogger-phishing-lab
👤 项目作者: Jzusmd
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:56:29

📝 项目描述:
Laboratorio educativo de ciberseguridad: keylogger en Python, phishing web con exfiltración y bypass de antivirus en VM aislada (Windows 11 x64). Documentado con MITRE ATT&CK. Uso exclusivamente académico.

🔗 点击访问项目地址