GitHub 红队武器库🚨
13.3K subscribers
19 photos
7 videos
22K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored #Reflected

📦 项目名称: Vulnweb-Pentest-Report
👤 项目作者: vpawankumar2025-crypto
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 09:37:37

📝 项目描述:
Web application penetration testing report on testphp.vulnweb.com (Acunetix's intentionally vulnerable test app) — covering SQL Injection, authentication bypass, reflected & stored XSS, and open redirect, with PoC steps, business impact, and remediation. Mini project for the Elewayte Ethical Hacking externship.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner-Mini-Project-
👤 项目作者: balajibava006-cyber
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 09:52:58

📝 项目描述:
A lightweight, Python-based vulnerability scanner designed to detect common security flaws, open ports, and outdated software configurations in target systems. Developed as a mini project.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpDataExtractor
👤 项目作者: Mehran-Seifalinia
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 09:30:08

📝 项目描述:
Develop a Burp Suite extension (using Java with the Montoya API) that exports all logged HTTP requests and responses from the Proxy History, applying intelligent filtering, deduplication, and summarization to produce a structured JSON output. The tool must be optimized for performance, memory efficiency, and provide a clean UI within Burp.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: Langflow-cve-2026-33017-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 10:57:15

📝 项目描述:
CVE-2026-33017 exploitation tool for Langflow <1.9.0. Features reverse shells, command execution, file operations, persistence, and automated testing. Validates critical RCE vulnerability impact. For authorized security assessments only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2025-64512
👤 项目作者: matesz44
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 11:00:27

📝 项目描述:
CVE-2025-64512: pdfminer.six pickle deserialization rce; pickle.gz + pdf generator w/ custom payloads

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SENTRIX
👤 项目作者: NamdevShivansh
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 11:02:54

📝 项目描述:
Web application vulnerability scanner built for learning pentesting — Flask backend, live dashboard, multi-module scan engine

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: gestion-stock-securise
👤 项目作者: 14672-art
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 10:59:48

📝 项目描述:
📦 Application web sécurisée de gestion de stock orientée Merchandising. Projet réalisé après 2 mois de formation. Focus sur la robustesse du code et la protection contre les failles XSS (sans framework/sans back-end).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: plankton
👤 项目作者: dx7er
🛠 开发语言: Python
Star数量: 22 | 🍴 Fork数量: 2
📅 更新时间: 2026-07-19 11:51:06

📝 项目描述:
Command-line web vulnerability scanner that runs the OWASP Top 10 (2021) against a target URL. Colorful terminal output and a styled HTML report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: WatchTower-AI
👤 项目作者: atikshded
🛠 开发语言: Apex
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 11:43:50

📝 项目描述:
AI-enhanced website vulnerability scanner with Gemini-powered security insights.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #漏洞

📦 项目名称: spring-cloud-gateway-security
👤 项目作者: zk1991-github
🛠 开发语言: Java
Star数量: 15 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 12:04:54

📝 项目描述:
Spring Cloud Gateway 整合 Spring Security,基于响应式实现网关与鉴权功能的融合

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-49176_LPE_POC
👤 项目作者: DavidCarliez
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 12:16:29

📝 项目描述:
Local privilege-escalation proof of concept for the Windows WalletService vulnerability fixed in July 2026.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: ADB-2026-0073-POC
👤 项目作者: lilsheepyy
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 12:43:08

📝 项目描述:
ADB 2026-0073 Proof Of Concept RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: wp2shell-compromise-scanner-plugin
👤 项目作者: eyesecurity
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 13:24:55

📝 项目描述:
Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: hfs-ch
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 14:00:38

📝 项目描述:
Network vulnerability scanner: host/port discovery (nmap), CVE lookup via NVD API, per-device risk scoring, CLI and Streamlit web interface

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: desktop-vulnerability-scanner
👤 项目作者: Sarjin744
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 13:47:57

📝 项目描述:
A modern PySide6 desktop vulnerability scanner with multi-threaded port checks, CVE lookups, PDF reporting, and subnet scans.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Application-Security-Testing
👤 项目作者: bilalahmedss
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 12:51:30

📝 项目描述:
Hands-on application-security lab covering SQL injection, XSS, CSRF, command injection, file-upload risks and OWASP Top 10 remediation using DVWA, Docker and Burp Suite.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Redtrack-Burp
👤 项目作者: OtherPeoplesEnemy
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 13:34:53

📝 项目描述:
Red Track Burp Extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: V3nom-Intel
👤 项目作者: v3nomtech
🛠 开发语言: JavaScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 13:45:31

📝 项目描述:
Open-source threat intelligence console. Aggregates live CVEs (NVD), CISA KEV, EPSS exploit scores, abuse.ch IOCs, active C2 servers on a global map, data breaches, and infosec news into one dark-mode dashboard. Static site, no login, no tracking.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: kong-dynamic-upstream
👤 项目作者: davidgrldo
🛠 开发语言: Lua
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 13:50:53

📝 项目描述:
Gravitee-style dynamic upstream routing for Kong Gateway OSS — header/template-based endpoint override with SSRF-safe allowlisting

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE #metadata

📦 项目名称: SafeURLKit
👤 项目作者: adamtheturtle
🛠 开发语言: Swift
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 11:46:33

📝 项目描述:
SSRF-style URL policy validation for Swift, with a WHATWG-conformant host parser. Foundation-only, no dependencies.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: wp2shell
👤 项目作者: N45HT
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 14:57:50

📝 项目描述:
[CVE-2026-63030/CVE-2026-60137] Pre Authentication RCE in WordPress Core

🔗 点击访问项目地址