GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.7K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #红蓝对抗 #靶场

📦 项目名称: AWAI
👤 项目作者: LLYlab
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-06 18:31:32

📝 项目描述:
AWAI —— 空战 AI 训练平台:红蓝对抗 2D 空战模拟器 + PPO 自博弈强化学习。纯 pygame 手绘、不依赖 gym;跨进程并行仿真 8.36x 加速。An air-combat AI training platform: a 2D dogfight simulator + PPO self-play RL in pure pygame.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: auto-recon
👤 项目作者: grigory-tikhonov
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:05:47

📝 项目描述:
Passive vulnerability scanner: Nmap + NVD + Metasploit correlation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: strongswan-container
👤 项目作者: ThaseG
🛠 开发语言: Shell
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 18:40:47

📝 项目描述:
(In-build) StrongSwan community container image with build-in exporter. Tested with vulnerability scanner and full e2e tests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2019-11043-RCE-IIS
👤 项目作者: s1lentf00thold
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:00:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-105844
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:56:16

📝 项目描述:
CVE-2026-105844 — Payload CMS @payloadcms/plugin-import-export <3.88.0 unauth prototype pollution (CWE-1321, CVSS 4.0 9.3). PoCbit PoC: POST /api/exports/export-preview fields __proto__.overrideAccess → ACL bypass / data leak. check/exploit/mass. Fix 3.88.0+. https://pocbit.org/pocs/cve-2026-105844

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-102782
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:47:39

📝 项目描述:
CVE-2026-102782 — OrdaSoft Joomla Simple Membership <7.4.0 unauth SQLi (CWE-89, CVSS 4.0 9.3). PoCbit PoC: checkLoginPass + login param extractvalue error leak. check/exploit/mass, hits.txt & exploited.txt. Fix 7.4.0+. https://pocbit.org/pocs/cve-2026-102782

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Malicious_Burp_Suite_Extension
👤 项目作者: 3v1lC0d3
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:06:00

📝 项目描述:
A cybersecurity research project demonstrating the security risks associated with installing untrusted third-party extensions in Burp Suite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #Implant

📦 项目名称: sligolo-ng
👤 项目作者: PuzzleSec
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 19:48:20

📝 项目描述:
A sliver extension to run ligolo-ng agents through a sliver implant

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97332-PoC
👤 项目作者: Kolya080808
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:49:21

📝 项目描述:
Independent PoC and reproducible lab for CVE-2026-97332 — User Private Files < 2.2.0 unauthenticated private file disclosure on WordPress Multisite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #CVE

📦 项目名称: cyberillsec-sentry
👤 项目作者: GodwillFoka
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:59:27

📝 项目描述:
SENTRY — open-source Cyber Threat Intelligence platform: IOC feeds (STIX/TAXII 2.1, OTX), CVE scoring (CVSS + EPSS + KEV), incident response, threat hunting. Mirror of GitLab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc-zzzx1791405054
👤 项目作者: nischaysharma-me
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 20:39:06

📝 项目描述:
XSS PoC sentinel ZZZXSS123

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞

📦 项目名称: coruna
👤 项目作者: corunalab
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-07 20:12:08

📝 项目描述:
Latest Frontiers in Mobile Security (2026): Focused on gathering and synchronizing the latest threat intelligence regarding iOS Coruna vulnerabilities and DarkSword zero-day exploits. 2026 最新移动安全前沿:专注收集与同步 iOS Coruna 漏洞及 DarkSword 零日(0day)最新威胁情报。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: web-security-scanner
👤 项目作者: AlphaFoxDelta
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 22:09:39

📝 项目描述:
Lightweight web security scanner: security headers, cookie flags, and XSS/SQLi/open-redirect probes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #POC #CVE

📦 项目名称: CVE-2025-58226-PoC
👤 项目作者: QASIM1401
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 23:46:59

📝 项目描述:
CVE-2025-58226 — 3D FlipBook <= 1.16.16 unauthenticated sensitive data exposure: two-stage PoC (enumerate -> leak file URLs -> download) + nuclei template

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: san25-scanner
👤 项目作者: priyanshu-dhaliwal
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 23:55:15

📝 项目描述:
SAN-25: 25-check vulnerability scanner (network, web, TLS, creds, config, DVWA lab). Pure Python, zero deps.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: POC_10072026_Manager_4
👤 项目作者: Ibrahim-Sartawi
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 23:28:01

📝 项目描述:
XSS_to_CSRF_create_New_Admin_account

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: consignado
👤 项目作者: robertosrjr
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-08 00:04:37

📝 项目描述:
PoC de arquitetura para a virada de folha do crédito consignado: absorve 10.000 propostas/s na borda com HTTP 202 em p95 < 100 ms, garante idempotência atômica no DynamoDB e alimenta o Core Banking legado em no máximo 180 TPS com QoS 70/30. Java 25, Spring Boot 4, AWS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-5430-WSO2
👤 项目作者: davidvrns
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-08 00:43:34

📝 项目描述:
Detection PoC for CVE-2026-5430 — unauthenticated JWT algorithm bypass (CVSS 10.0) affecting WSO2 API Manager 4.1.0–4.6.0. Read-only assessment tool with patch confirmation and WAF detection. Authorized use only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现 #利用

📦 项目名称: found-issues
👤 项目作者: sodesu99
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-07 21:35:31

📝 项目描述:
我发现过的 bug / 漏洞 / 设计缺陷记录库 — 任何人都可以在这里提交自己的发现

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #利用

📦 项目名称: Darksword
👤 项目作者: daniel875147-crypto
🛠 开发语言: JavaScript
⭐ Star数量: 1 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-08 01:48:48

📝 项目描述:
DarkSword内核漏洞,支持 iOS13-17.2.1以及18.4-18.7.2

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: k33etfpp8
👤 项目作者: gemini0ani
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-08 01:30:57

📝 项目描述:
x674q9ifJeecgBoot 未授权权限绕过 + SQL 注入组合漏洞分析与复现4j9em1kkcv0m

🔗 点击访问项目地址