GitHub 红队武器库🚨
14.3K subscribers
25 photos
10 videos
27.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-agent
👤 项目作者: tsan-experimental
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 22:55:48

📝 项目描述:
Comprehensive vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-108592-poc
👤 项目作者: asvorg
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 23:55:33

📝 项目描述:
CVE-2026-108592 — Environment Variable Exposure PoC in mini-swe-agent

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: sqli-cve-2026-102428
👤 项目作者: MRdark-ops
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 23:55:00

📝 项目描述:
PoC: OrdaSoft Joomla OS CCK (com_os_cck) 8.3.15 unauth SQLi —mass+exploit+dork

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: WGwJRyrJ
👤 项目作者: eriklaldo
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-10 16:56:54

📝 项目描述:
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于Jboss框架的渗透测试研究_7343e07d-dc1f-43ad-807b-cb4efaff1aa5.zip

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: nandni8-cell
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 00:59:16

📝 项目描述:
python-based website vulnerability scanner for authorized security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnhawk
👤 项目作者: umutisym
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 01:58:51

📝 项目描述:
🦅 Focused vulnerability scanner. Zero dependencies. Educational. Bilingual (TR/EN).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #漏洞

📦 项目名称: xunruicms-ssti-CNVD-2026-22278
👤 项目作者: YURI888-cyber
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 02:01:04

📝 项目描述:
迅睿CMS SSTI远程代码执行漏洞 PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: injectorz
👤 项目作者: rizlmaulanaa
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 02:45:08

📝 项目描述:
Staged loader with automatic persistence for Sliver C2

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: whoami-burp
👤 项目作者: xtawb
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 02:52:32

📝 项目描述:
Burp Suite extension: save each account's session (cookies, JWT, tokens) under a name and a colour, recognise it in the proxy, and replay it in Repeater.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: flengine-loader-threat-analysis
👤 项目作者: Hasslius
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 03:34:05

📝 项目描述:
Technical analysis of an evasive 0/70 FUD DLL loader leveraging direct syscalls, module stomping and broken Authenticode signatures.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43805
👤 项目作者: whysocscs
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 04:04:43

📝 项目描述:
Binary diff analysis and non-destructive PoC for CVE-2026-43805

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: Decrypt-App-FairPlay
👤 项目作者: yAngbin1108
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 05:00:11

📝 项目描述:
appdump ⚠️测试版‼️测试版‼️测试版‼️ 小白谨慎下载,目前修复闪退 有砸壳和自签软件提取功能 此为通用版测试,若重启闪退请立即删除‼️ 利用的 DarksWord 漏洞 故只支持 iOS17-18.7.1 iOS26-26.0.1 A19 和 M5 芯片及以上不支持

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用

📦 项目名称: Decrypt-FairPlay
👤 项目作者: yAngbin1108
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 06:40:54

📝 项目描述:
AppDump 目前修复闪退 有砸壳和自签软件提取功能 此为通用版测试,若重启闪退请立即删除‼️ 利用的 DarksWord 漏洞 故只支持 iOS17-18.7.1 iOS26-26.0.1 A19 和 M5芯片及以上不支持(UI和内核漏洞的运行借鉴的是lara(致谢),希望大家可以去看看哈)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #Phishing

📦 项目名称: shiyu-anti-phishing-trainer
👤 项目作者: BBTTCC123
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 06:59:16

📝 项目描述:
识渔计划 · 反钓鱼攻防训练营 —— 第十四届全国大学生数字媒体科技作品及创意竞赛参赛作品(移动与网络应用开发赛道)。纯前端 H5 反钓鱼攻防训练游戏。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: euphoric-habromaniac
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 06:54:05

📝 项目描述:
Modular Python CLI vulnerability scanner: port scan, banners, security headers, CVE lookup, tech detection, SSL info.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: nexus-video-downloader-Ai
👤 项目作者: rananisarsb51214
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 07:54:52

📝 项目描述:
Paste URL ✓ Validate URL ✓ Analyze source ✓ Show metadata ✓ Show genuinely available formats ✓ Start authorized download ✓ Display progress ✓ Generate temporary signed download URL ✓ Track job status ✓ Store history ✓ Clean temporary files ✓ Handle failures ✓ Rate-limit abuse ✓ Prevent SSRF

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: owasp-vulnerability-scanner
👤 项目作者: gocar112
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 08:34:21

📝 项目描述:
A web vulnerability scanner based on OWASP Top 10 vulnerabilities. Helps identify common security vulnerabilities in web applications.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: ARTEX
👤 项目作者: hackliu
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 08:15:43

📝 项目描述:
AI 自主渗透测试系统(Go 后端 + Next.js 前端):多智能体驱动的自动化安全测试与漏洞挖掘平台

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: was500-web-app-security
👤 项目作者: rabbiaman03
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-11 08:59:33

📝 项目描述:
WAS500: HTML/CSS/JS labs with web security lessons (XSS via innerHTML, client-side validation bypass)

🔗 点击访问项目地址