GitHub 红队武器库🚨
13.3K subscribers
19 photos
7 videos
22K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-suite-executor-scripts-2026
👤 项目作者: felixhillebqw2716
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 18:05:03

📝 项目描述:
Reusable Burp Suite scripts for security testers, with automation snippets, extension examples, and targeted utilities collected in one repository.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: Aegis-tool
👤 项目作者: maxi-schaefer
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 17:21:18

📝 项目描述:
Authorized-use security assessment pipeline: subdomain enum, port/service fingerprinting, TLS/header checks, sensitive-path & XSS/SQLi detection, CVE correlation, and takeover detection, with an interactive HTML report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-63030
👤 项目作者: Ch4120N
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 18:41:40

📝 项目描述:
CVE-2026-63030 - WordPress REST Batch Route-Confusion SQL Injection Proof of Concept

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: YellowKey-Bitlocker-CVE-2026-45585
👤 项目作者: yellowkeys
🛠 开发语言: TypeScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 18:15:43

📝 项目描述:
YellowKey BitLocker CVE-2026-45585 is an open-source utility to extract, backup, and organize BitLocker recovery keys on Windows encrypted drives. Automate volume decryption, manage drive encryption states via command-line tools, export secure configuration files, and track recovery key logs. Download direct repository setup files.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Weblogic #EXP

📦 项目名称: adf-weblogic-clone-recovery
👤 项目作者: tagtuner
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 08:16:20

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Basic-Vulnerability-Scanner
👤 项目作者: Obscure-07
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 18:57:06

📝 项目描述:
A Python-based TCP banner grabbing vulnerability scanner using only the standard library.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-12191
👤 项目作者: hakaioffsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 19:39:49

📝 项目描述:
PoC for CVE-2026-12191

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulners-cli
👤 项目作者: kidoz
🛠 开发语言: Go
Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 20:45:17

📝 项目描述:
CLI vulnerability scanner powered by Vulners — search, audit, scan, offline mode

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #CVE

📦 项目名称: cve-hunter
👤 项目作者: Fazliddin2105
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 20:27:53

📝 项目描述:
Autonomous Penetration Testing Platform — 20 parallel AI agents, OWASP Top 10 (2021+2025) full coverage, tool-verified findings, zero false positives

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Execute #Evasion #EDR

📦 项目名称: Butter-s-Quantum
👤 项目作者: hamzaazer
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 19:07:22

📝 项目描述:
This is a full, production-ready, cross-platform (Windows/Linux/macOS) framework. It does not ask for permissions. It does not ask for input., It uses AES-256-GCM for all traffic, and it generates a unique key per session using a hardware-derived seed. The shellcode is encrypted and only decrypted in memory, never touching the disk

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: MaleDiction
👤 项目作者: TiredMir
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 18:44:59

📝 项目描述:
A Shellcode injector combined with shellcode encoding and API call obfuscation from WSummerhill's Diction method

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #EXP

📦 项目名称: gitlab-achievements
👤 项目作者: BoxBoxJason
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 21:59:04

📝 项目描述:
Event driven gitlab achievements awarder (self hosted instances)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: argo-rce-poc
👤 项目作者: raulpazemecxas-stack
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 21:58:55

📝 项目描述:
argo-rce-poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #DOM

📦 项目名称: xss-scanner
👤 项目作者: globalgenesiss
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 20:32:28

📝 项目描述:
Automatizacao de recon de domínio, crawling de parâmetros/formulários e teste automatizado de XSS refletido com menu interativo

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: gcp-web-security-scanner
👤 项目作者: Seanfrvr
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 19:16:49

📝 项目描述:
Deployed and scanned a vulnerable GCP web app, then remediated a real XSS vulnerability

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-0776
👤 项目作者: whenx
🛠 开发语言: Python
Star数量: 8 | 🍴 Fork数量: 2
📅 更新时间: 2026-07-20 22:47:30

📝 项目描述:
Security research and proof-of-concept for CVE-2026-0776 affecting Discord Desktop Client.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: LPE-Toolkit
👤 项目作者: coupdegrace223
🛠 开发语言: Perl
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 22:55:35

📝 项目描述:
Localroot binary exploit toolkit (xpl2026) - private mirror

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: ida-free-autotriage
👤 项目作者: 0r1ng
🛠 开发语言: PowerShell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 22:37:02

📝 项目描述:
Automated static malware triage for IDA Free 9.4 and FLARE-VM. Includes PowerShell orchestration, IDC automation, IOC extraction, YARA/MKYARA support, confidence-aware findings, tool validation, architecture detection, and false-positive hardening for safer, faster, and more reliable reverse engineering.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #POC

📦 项目名称: fastjson-1.2.83-poc
👤 项目作者: guaidao2
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 23:29:17

📝 项目描述:
fastjson漏洞验证poc。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Vulnerability-Assessment-and-Penetration-Testing-DVWA
👤 项目作者: jasleenkaur76578-ai
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 22:08:59

📝 项目描述:
A cybersecurity project demonstrating Vulnerability Assessment and Penetration Testing (VAPT) on DVWA using Kali Linux with Nmap, Nikto, WhatWeb, and manual testing of SQL Injection, Command Injection, XSS, and File Upload vulnerabilities.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: SQL-Injection-and-XSS-Prevention-Firewall-Proxy
👤 项目作者: Kiyotakakirito
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-20 19:07:19

📝 项目描述:
无描述

🔗 点击访问项目地址