GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.7K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: ATOR-Rewamped
👤 项目作者: 0xdhanesh
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:32:35

📝 项目描述:
ATOR refactored for 2026 and tools exposed for burp MCP

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: burp-message-crypto
👤 项目作者: FormindGCA
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 15:39:48

📝 项目描述:
Handling encrypted value in HTTP request and response

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-convertor
👤 项目作者: zeekallab
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:49:54

📝 项目描述:
Checks YARA rules for YARA-X compatibility.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-2021-38759
👤 项目作者: Hu2ie
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:48:12

📝 项目描述:
CVE-2021-38759 — Raspberry Pi OS Default Credentials Exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnScanner
👤 项目作者: hamzaaboelezz9-stack
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 16:33:26

📝 项目描述:
A modular Python vulnerability scanner for authorized web and TCP security testing, with safe checks, passive service detection, offline CVE candidates, and HTML, SARIF JSON, and Markdown reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: Enterprise-Workflow-Management-Platform
👤 项目作者: bunnysunny24
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:06:46

📝 项目描述:
An enterprise-grade, full-stack business automation engine developed with Java 17, Spring Boot, React, JavaScript, and MySQL. The platform delivers a robust, configurable state-machine architecture to digitize and automate multi-user business processes with persistent workflow state, role-based authorization, immutable compliance audit trails, and

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #EXP

📦 项目名称: auth-gateway
👤 项目作者: dezhiguan
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:07:06

📝 项目描述:
统一认证网关与身份提供方 —— JWT/JWKS、OAuth2 令牌交换(RFC 8693)、刷新令牌轮换与智能体授权,基于 Spring Boot 3 / Java 21 | Unified authentication gateway & IdP — JWT/JWKS, OAuth2 token exchange (RFC 8693), refresh-token rotation and agent consent, on Spring Boot 3 / Java 21

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #AV #EDR

📦 项目名称: keylogger-phishing-lab
👤 项目作者: Jzusmd
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:56:29

📝 项目描述:
Laboratorio educativo de ciberseguridad: keylogger en Python, phishing web con exfiltración y bypass de antivirus en VM aislada (Windows 11 x64). Documentado con MITRE ATT&CK. Uso exclusivamente académico.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc
👤 项目作者: warfarin-1
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:22:21

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: CVE-2026-101162-xss-wp-ultimate-review
👤 项目作者: Hasyros
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:11:20

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Sig_Scan
👤 项目作者: realMNohgee
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 17:50:06

📝 项目描述:
Lightweight signature matcher (YARA-lite): scan files for string, hex and regex rules. Zero-Dep Python.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: yara-scanner-for-windows
👤 项目作者: dominikszabo
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 18:55:03

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #红蓝对抗 #靶场

📦 项目名称: AWAI
👤 项目作者: LLYlab
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 18:31:32

📝 项目描述:
AWAI —— 空战 AI 训练平台:红蓝对抗 2D 空战模拟器 + PPO 自博弈强化学习。纯 pygame 手绘、不依赖 gym;跨进程并行仿真 8.36x 加速。An air-combat AI training platform: a 2D dogfight simulator + PPO self-play RL in pure pygame.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: auto-recon
👤 项目作者: grigory-tikhonov
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:05:47

📝 项目描述:
Passive vulnerability scanner: Nmap + NVD + Metasploit correlation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: strongswan-container
👤 项目作者: ThaseG
🛠 开发语言: Shell
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 18:40:47

📝 项目描述:
(In-build) StrongSwan community container image with build-in exporter. Tested with vulnerability scanner and full e2e tests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2019-11043-RCE-IIS
👤 项目作者: s1lentf00thold
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:00:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-105844
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:56:16

📝 项目描述:
CVE-2026-105844 — Payload CMS @payloadcms/plugin-import-export <3.88.0 unauth prototype pollution (CWE-1321, CVSS 4.0 9.3). PoCbit PoC: POST /api/exports/export-preview fields __proto__.overrideAccess → ACL bypass / data leak. check/exploit/mass. Fix 3.88.0+. https://pocbit.org/pocs/cve-2026-105844

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-102782
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:47:39

📝 项目描述:
CVE-2026-102782 — OrdaSoft Joomla Simple Membership <7.4.0 unauth SQLi (CWE-89, CVSS 4.0 9.3). PoCbit PoC: checkLoginPass + login param extractvalue error leak. check/exploit/mass, hits.txt & exploited.txt. Fix 7.4.0+. https://pocbit.org/pocs/cve-2026-102782

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Malicious_Burp_Suite_Extension
👤 项目作者: 3v1lC0d3
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:06:00

📝 项目描述:
A cybersecurity research project demonstrating the security risks associated with installing untrusted third-party extensions in Burp Suite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #Implant

📦 项目名称: sligolo-ng
👤 项目作者: PuzzleSec
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:48:20

📝 项目描述:
A sliver extension to run ligolo-ng agents through a sliver implant

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97332-PoC
👤 项目作者: Kolya080808
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:49:21

📝 项目描述:
Independent PoC and reproducible lab for CVE-2026-97332 — User Private Files < 2.2.0 unauthenticated private file disclosure on WordPress Multisite.

🔗 点击访问项目地址