GitHub 红队武器库🚨
14.3K subscribers
25 photos
11 videos
27.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: resetNightmareModify
👤 项目作者: chunn1111
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 07:44:03

📝 项目描述:
ResetNightmare漏洞的无损利用,包含了scanner.py漏洞检测脚本以及resetNightmare.py漏洞利用脚本

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: AI_Vulnerability_Scanner
👤 项目作者: muazmuhammed10
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 07:46:36

📝 项目描述:
An AI-powered vulnerability scanner built with Python, FastAPI, and React to detect open ports, identify network services, and generate AI-assisted security assessments with defensive recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-102428
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:38:42

📝 项目描述:
CVE-2026-102428 PoC: OrdaSoft Joomla OS CCK (com_os_cck) <=8.3.15 unauth SQLi — order_field/order_direction ORDER BY injection on public listings. Check + mass exploit, POCBIT-102428-OK marker, CVSS 9.3. https://pocbit.org/pocs/cve-2026-102428

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-106445
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:25:40

📝 项目描述:
CVE-2026-106445 — Handlebars 4.0.0–4.7.9 RCE via Function.prototype.constructor bypass (GHSA-p8wg-vrv2-v86f). PoCbit PoC + Docker lab (4.7.9), check/exploit HTTP client, GHSA template chain. Fixed 4.7.10. https://pocbit.org/pocs/cve-2026-106445

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-107806
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:17:35

📝 项目描述:
CVE-2026-107806 — nginx-ui 2.3.8–2.4.x auth RCE via forged backup restore (TestConfigCmd). PoCbit PoC: GET /api/backup, tamper app.ini, POST /api/restore, POST /api/nginx/test. check/exploit, batch url|JWT. Fixed 2.5.0. https://pocbit.org/pocs/cve-2026-107806

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #演练

📦 项目名称: phishlite
👤 项目作者: ghub-monitoring1
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:55:40

📝 项目描述:
轻量级企业钓鱼演练系统

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Scan_Reflected_XSS
👤 项目作者: DoMaiThuTrang200160
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:53:40

📝 项目描述:
Xây dựng công cụ kiểm thử an toàn mạng

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: changeguard
👤 项目作者: Zhihui-Peng
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:02:39

📝 项目描述:
离线 Git 变更交接清单;AI 协作开发实验。路径规则提醒,不是漏洞扫描。免费试用发布前进行来源与许可检查,无购买入口。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: Rainmaker
👤 项目作者: ISrainstop
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 08:58:35

📝 项目描述:
自研命令与控制框架 — C 植入体 / Go 服务端 / .NET WPF 客户端;协议 v2(RSA-2048 + AES-256-CBC + HMAC-SHA256);六种承载层;跨平台服务端

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #漏洞

📦 项目名称: PentaRange
👤 项目作者: zhuz3732-dev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:56:43

📝 项目描述:
故意设计的 Web 漏洞靶场:SQLi / XSS / 文件上传 / SSRF / 反序列化,每类三档难度,Docker 一键起

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: scope-manager
👤 项目作者: araisantai
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:33:51

📝 项目描述:
Burp Suite Scope HIghlighter Extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: sandrasree
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:50:31

📝 项目描述:
Developed a web-based vulnerability scanner to identify common website security weaknesses and provide security recommendations. The tool analyzes HTTP security headers, verifies HTTPS implementation, scans open ports using Nmap, and performs basic SQL Injection and Cross-Site Scripting (XSS) tests in authorized environments

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: Yara_malware_triage
👤 项目作者: Mouad-sk
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 09:42:08

📝 项目描述:
A Python-based malware triage tool using YARA rules and SHA-256 hashing to identify suspicious file patterns, collect file metadata, and generate structured analysis reports. Built to demonstrate static analysis, detection rule development, and automated testing.

🔗 点击访问项目地址
Forwarded from 金银
This media is not supported in your browser
VIEW IN TELEGRAM
⚡️⚡️⚡️⚡️😂😂😂😂
大户首选(客户信息安全保障)

➡️ 豪礼大放送、高端嫩模、劳力士手表、奔驰E300 加入 #182体育 等你领取, 电子可拉2万一注

🤩🤩🤩🤩 182268.com
人民币平台 不限ip 免实名、免绑卡


⭐🎰🤩🤩 8k2769.com
USDT台 全网最高返水3%每日无上限


🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩🤩
😀😀😀😀😀😀😀😀😀😀😀😀😀

1.PG电子赏金女王一举斩获830万并成功提现
2
.PA真人豪赢644万一路长虹一天实现暴富
3
.PG电子爆890万并以成功提现实现财富自由
4
.大哥在PA真人百家乐累计盈利突破1000万

🔤🔤🔤🔤 以及C币,K豆,OKpay、👌微信,👌支付宝,银行卡等30多种存取款方式,通畅便捷

大额出款额外奖励8888-128888,双重日存彩金128888+4688每日送,周流水彩金68888每周送,双重签到彩金16888+3888送不停、,每笔存款加赠1%

😅😏😃😃😅😚😍😀😏😝
🤩🤩🤩🤩🤩🤩🤩
🤩🤩🤩🤩🤩🤩🤩

🌐官方频道:
@vip182ty
🌐体育推荐:
@tytj182ty
🌐专属客服:
@vipkf_182ty
🌐双向联系:
@vipkf_182ty_bot

🌐 8K国际网址:
8k2769.com
🌐182体育网址:
182268.com
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: LOTWebSockets.github.io
👤 项目作者: LOTWebSockets
🛠 开发语言: HTML
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 11:01:23

📝 项目描述:
LOTWebSockets is a community-driven project documenting websockets that may be exploited for data exfiltration and C2 communications etc.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: vulhub-solr-cve-2017-12629-rce
👤 项目作者: CyberCTF
🛠 开发语言: HCL
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 10:50:13

📝 项目描述:
Vulhub solr/CVE-2017-12629-RCE: Apache Solr RunExecutableListener RCE (CVE-2017-12629), run with Isoloom

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: StaticMalwareAnalizer
👤 项目作者: Ackermann32
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 11:14:02

📝 项目描述:
Framework per l’analisi statica di malware che include tre moduli: Disassembler (analisi binaria con radare2), String & Signature Extractor (estrazione IOC con FLOSS e YARA) e Feature Extractor (calcolo entropie e correlazioni). Tutti operano senza eseguire il file, producendo report JSON per l’analisi.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: AI-gateway
👤 项目作者: Naruto859
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 12:04:21

📝 项目描述:
Custom AI reverse-proxy gateway: routes Anthropic/OpenAI agents (Hermes, Claude Code) through residential proxies to bypass an upstream WAF; SSE-safe streaming bridge + proxy pool + content filter + dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: linux-vulnerability-scanner
👤 项目作者: yuvasreeb
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 12:02:09

📝 项目描述:
A Linux-based Vulnerability Scanner that detects open ports, running services, weak security configurations, and outdated software using Nmap and Python.

🔗 点击访问项目地址
Forwarded from 广告赞助
🔥 【全新升级】墙势汹汹,大批机场已阵亡?网络软了,试试 ZTNET 魔法防封! 🛡🚀

最近大量节点集体断连?别慌!ZTNET 采用自研独家自愈协议,专门治愈各种“失联”焦虑,让你稳如泰山,直接起飞!🔥💦

✅ 魔法防封 - 独家混淆技术,无视封锁,大封锁期也丝滑
✅ 4K 看片极速 - 拒绝转圈,深夜高清必备,资源秒加载
✅ AI 生产力全开 - 稳定直通 ChatGPT/Claude/Midjourney
✅ 全线加速 - TG/X/IG 瞬间刷新,彻底告别“连接中...”

🚀 全新升级 v1.2.2 定制客户端:一键登录,无需配置,老司机的避风港!

👉 【全平台最新 App 下载】
💻 Windows:安装包下载 | 便携版(Zip)
🍏 Mac (M系列):点击下载
🍎 Mac (Intel):点击下载
🤖 Android:点击下载

✨ 【 避难入口:点击注册,永不失联 🚀 】

别人在抓狂,你在起飞!这波稳了,兄弟们速来体验“魔法”! 😈
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: PYAS_cyanmod
👤 项目作者: upcyan
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 12:51:11

📝 项目描述:
A hybrid Windows endpoint security platform powered by machine learning, YARA rules, cloud analysis, and kernel-level behavioral protection.

🔗 点击访问项目地址