GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored #Reflected #DOM

📦 项目名称: sakuda
👤 项目作者: northraystudio
🛠 开发语言: TypeScript
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-10 05:34:01

📝 项目描述:
Self-hosted DAST (dynamic application security testing) in one Docker image — OWASP ZAP, nuclei, katana, httpx and dalfox behind a Nuxt UI: authenticated SPA crawling, OpenAPI-driven active scans, per-engine reports with diffs and history. さくっとDAST.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: CJF
👤 项目作者: AVII-VERSE
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 06:06:38

📝 项目描述:
Advanced multi-threaded Clickjacking & security header vulnerability scanner with live PoC simulator.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: roblox-revival-scanner
👤 项目作者: poggersisskibidi
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 07:01:18

📝 项目描述:
A comprehensive vulnerability scanner for Roblox revival servers, detecting path traversal, RCE, exposed ports, and common misconfigurations

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: AnyDesk-AnyPwn-RCE
👤 项目作者: mhtsec
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 06:55:06

📝 项目描述:
AnyDesk Linux 8.0.2 pre-auth heap overflow RCE (AnyPwn) — PoC with vulnerability analysis & reproduction notes (fixed in 8.0.3)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: lua-doctor
👤 项目作者: doctor-labs
🛠 开发语言: Lua
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 06:30:13

📝 项目描述:
RCE checker and security analyzer for Lua in embedded firmware: taint analysis, payload hunting, bytecode triage, SARIF output

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: resetNightmareModify
👤 项目作者: chunn1111
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 07:44:03

📝 项目描述:
ResetNightmare漏洞的无损利用,包含了scanner.py漏洞检测脚本以及resetNightmare.py漏洞利用脚本

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: AI_Vulnerability_Scanner
👤 项目作者: muazmuhammed10
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 07:46:36

📝 项目描述:
An AI-powered vulnerability scanner built with Python, FastAPI, and React to detect open ports, identify network services, and generate AI-assisted security assessments with defensive recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-102428
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:38:42

📝 项目描述:
CVE-2026-102428 PoC: OrdaSoft Joomla OS CCK (com_os_cck) <=8.3.15 unauth SQLi — order_field/order_direction ORDER BY injection on public listings. Check + mass exploit, POCBIT-102428-OK marker, CVSS 9.3. https://pocbit.org/pocs/cve-2026-102428

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-106445
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:25:40

📝 项目描述:
CVE-2026-106445 — Handlebars 4.0.0–4.7.9 RCE via Function.prototype.constructor bypass (GHSA-p8wg-vrv2-v86f). PoCbit PoC + Docker lab (4.7.9), check/exploit HTTP client, GHSA template chain. Fixed 4.7.10. https://pocbit.org/pocs/cve-2026-106445

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-107806
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:17:35

📝 项目描述:
CVE-2026-107806 — nginx-ui 2.3.8–2.4.x auth RCE via forged backup restore (TestConfigCmd). PoCbit PoC: GET /api/backup, tamper app.ini, POST /api/restore, POST /api/nginx/test. check/exploit, batch url|JWT. Fixed 2.5.0. https://pocbit.org/pocs/cve-2026-107806

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #演练

📦 项目名称: phishlite
👤 项目作者: ghub-monitoring1
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:55:40

📝 项目描述:
轻量级企业钓鱼演练系统

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Scan_Reflected_XSS
👤 项目作者: DoMaiThuTrang200160
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:53:40

📝 项目描述:
Xây dựng công cụ kiểm thử an toàn mạng

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: changeguard
👤 项目作者: Zhihui-Peng
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:02:39

📝 项目描述:
离线 Git 变更交接清单;AI 协作开发实验。路径规则提醒,不是漏洞扫描。免费试用发布前进行来源与许可检查,无购买入口。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: Rainmaker
👤 项目作者: ISrainstop
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:58:35

📝 项目描述:
自研命令与控制框架 — C 植入体 / Go 服务端 / .NET WPF 客户端;协议 v2(RSA-2048 + AES-256-CBC + HMAC-SHA256);六种承载层;跨平台服务端

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #漏洞

📦 项目名称: PentaRange
👤 项目作者: zhuz3732-dev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:56:43

📝 项目描述:
故意设计的 Web 漏洞靶场:SQLi / XSS / 文件上传 / SSRF / 反序列化,每类三档难度,Docker 一键起

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: scope-manager
👤 项目作者: araisantai
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:33:51

📝 项目描述:
Burp Suite Scope HIghlighter Extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: sandrasree
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:50:31

📝 项目描述:
Developed a web-based vulnerability scanner to identify common website security weaknesses and provide security recommendations. The tool analyzes HTTP security headers, verifies HTTPS implementation, scans open ports using Nmap, and performs basic SQL Injection and Cross-Site Scripting (XSS) tests in authorized environments

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: Yara_malware_triage
👤 项目作者: Mouad-sk
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:42:08

📝 项目描述:
A Python-based malware triage tool using YARA rules and SHA-256 hashing to identify suspicious file patterns, collect file metadata, and generate structured analysis reports. Built to demonstrate static analysis, detection rule development, and automated testing.

🔗 点击访问项目地址
Forwarded from 金银
This media is not supported in your browser
VIEW IN TELEGRAM
⚡️⚡️⚡️⚡️😂😂😂😂
大户首选(客户信息安全保障)

➡️ 豪礼大放送、高端嫩模、劳力士手表、奔驰E300 加入 #182体育 等你领取, 电子可拉2万一注

🤩🤩🤩🤩 182268.com
人民币平台 不限ip 免实名、免绑卡


⭐🎰🤩🤩 8k2769.com
USDT台 全网最高返水3%每日无上限


🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩
😀😀😀😀😀😀😀😀😀😀😀😀😀

1.PG电子赏金女王一举斩获830万并成功提现
2
.PA真人豪赢644万一路长虹一天实现暴富
3
.PG电子爆890万并以成功提现实现财富自由
4
.大哥在PA真人百家乐累计盈利突破1000万

🔤🔤🔤🔤 以及C币,K豆,OKpay、👌微信,👌支付宝,银行卡等30多种存取款方式,通畅便捷

大额出款额外奖励8888-128888,双重日存彩金128888+4688每日送,周流水彩金68888每周送,双重签到彩金16888+3888送不停、,每笔存款加赠1%

😅😏😃😃😅😚😍😀😏😝
🤩🤩🤩🤩🤩🤩🤩
🤩🤩🤩🤩🤩🤩🤩

🌐官方频道:
@vip182ty
🌐体育推荐:
@tytj182ty
🌐专属客服:
@vipkf_182ty
🌐双向联系:
@vipkf_182ty_bot

🌐 8K国际网址:
8k2769.com
🌐182体育网址:
182268.com
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: LOTWebSockets.github.io
👤 项目作者: LOTWebSockets
🛠 开发语言: HTML
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 11:01:23

📝 项目描述:
LOTWebSockets is a community-driven project documenting websockets that may be exploited for data exfiltration and C2 communications etc.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: vulhub-solr-cve-2017-12629-rce
👤 项目作者: CyberCTF
🛠 开发语言: HCL
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 10:50:13

📝 项目描述:
Vulhub solr/CVE-2017-12629-RCE: Apache Solr RunExecutableListener RCE (CVE-2017-12629), run with Isoloom

🔗 点击访问项目地址