GitHub 红队武器库🚨
13.3K subscribers
19 photos
7 videos
22K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: dependabot-test-metadata-google-internal
👤 项目作者: workuni59-lang
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 18:49:39

📝 项目描述:
Dependabot SSRF test - metadata-google-internal

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: wp-cve-2026-63030-check
👤 项目作者: Lukols-Dev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:05:15

📝 项目描述:
Non-intrusive exposure checker for the WordPress wp2shell pre-auth RCE chain (CVE-2026-63030 / CVE-2026-60137).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: PressVector
👤 项目作者: vulnquest58
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:20:53

📝 项目描述:
PressVector - Advanced WordPress Vulnerability Scanner CVE-2026-63030 (REST batch route confusion) / CVE-2026-60137 (SQLi) Developer: Vulnquest

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #AV #对抗

📦 项目名称: apkMainSha
👤 项目作者: cjcldd
🛠 开发语言: Unknown
Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-19 09:07:59

📝 项目描述:
apk免杀平台

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: SOXSS
👤 项目作者: CTPache
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 18:29:04

📝 项目描述:
XSS comand and control with WS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: WebAppVAPT
👤 项目作者: ganeshkrishnareddy
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 18:01:09

📝 项目描述:
Comprehensive web application vulnerability assessment covering SQLi, XSS, CSRF, CORS, auth bypass, and misconfigurations. Includes automated scripts and OWASP methodologies.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: aegisdroid
👤 项目作者: 0xhroot
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:46:45

📝 项目描述:
Advanced Android Security, Threat Hunting & Digital Forensics Framework for authorized device auditing, APK analysis, YARA scanning, evidence-based threat assessment, and mobile DFIR.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: FileTrove
👤 项目作者: steffenfritz
🛠 开发语言: Go
Star数量: 59 | 🍴 Fork数量: 6
📅 更新时间: 2026-07-19 19:33:51

📝 项目描述:
FileTrove indexes files and creates metadata from them.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: vulnerable-web-app
👤 项目作者: Vikentiuiy
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 21:01:06

📝 项目描述:
Intentionally vulnerable web app (Java/JS/SQL): builds+runs in Docker, 28 exploitable vulns, POC exploit suite, reference SARIF + SAST checker. DO NOT DEPLOY.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: api-security-scanner
👤 项目作者: Tabaxi3000
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 20:53:22

📝 项目描述:
Full-stack API vulnerability scanner targeting the OWASP API Security Top 10 with configurable scan modules and a React dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Safe-Commit
👤 项目作者: dev4nshuu
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 20:42:19

📝 项目描述:
Safe commit - cpp based security vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Pandora-Sandbox
👤 项目作者: sltcnb
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:22:52

📝 项目描述:
Automated malware static-analysis toolkit: PE parsing, IOC & string extraction, YARA, heuristic threat scoring. DFIR-focused.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: wordpress-batch-rce-lab
👤 项目作者: ZenithGenius
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 21:36:05

📝 项目描述:
CVE-2026-63030: WordPress REST batch-endpoint array desync. Mechanism, detection, mitigation, and a safe reproduction lab.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: YARA-Scanner
👤 项目作者: FatimaCyberLabs
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 21:32:12

📝 项目描述:
Python CLI for scanning files against YARA rules to detect malware patterns

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: lightweight-vulnerability-scanner
👤 项目作者: wittymastodon
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 22:03:55

📝 项目描述:
Educational Python vulnerability scanner featuring concurrent TCP scanning, service fingerprinting, SQLite CVE enrichment, and OWASP mapping.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: sec-notes
👤 项目作者: 0xnull-sec
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 22:05:42

📝 项目描述:
Security research notes, CVE walkthroughs, and lessons from 0xNull team — pentesting, OSINT, exploit dev, threat hunting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2 #Beacon

📦 项目名称: redStack-defcon34
👤 项目作者: BaddKharma
🛠 开发语言: Unknown
Star数量: 3 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-19 19:38:23

📝 项目描述:
DEF CON 34 workshop for redStack: deploy a Mythic/Sliver/Adaptix red team lab on AWS with Terraform and run a full boot-to-breach attack path over OpenVPN.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: OpenNetAdmin-18.1.1-ReverseShell
👤 项目作者: JoeyLipton
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:31:56

📝 项目描述:
Python version of the OpenNetAdmin 18.1.1 RCE that provides a shell

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: prestashop-admin-rce
👤 项目作者: nmagill123
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 23:57:29

📝 项目描述:
PoC of getting an RCE on Prestashop with admin credentials

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: Rat5ak-Nadsec-2026-CVE-CERTIFIED-HOOD-CLASSICS
👤 项目作者: Rat5ak
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 00:16:02

📝 项目描述:
Stuff I be lookin @

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: wordpress-skelersecurity-core-security-CVE-2026-63030
👤 项目作者: skelersecurity
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-19 19:21:29

📝 项目描述:
The wp2shell vulnerability chain represents one of the most significant WordPress Core security issues in recent years. Because exploitation begins with an unauthenticated request and can ultimately result in Remote Code Execution, organizations should treat remediation as an emergency.

🔗 点击访问项目地址