GitHub 红队武器库🚨
13.4K subscribers
19 photos
7 videos
22.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2 #Implant

📦 项目名称: TrashPandaPaws
👤 项目作者: BenjiTrapp
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 16:02:04

📝 项目描述:
Red Team hardware implant — RPi4/CM4 inline Ethernet tap with PoE, dual cover identities (Cisco Phone / HP Printer), 802.1X NAC bypass, and Sliver C2

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #CVE

📦 项目名称: AutoBugBounty
👤 项目作者: Anas-Magane
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 16:53:42

📝 项目描述:
AutoScan — Legendary Bug Bounty Automation Framework | Full-scope recon pipeline in a single Python script: subdomain enum, CVE scan, JS secret detection, dir bruteforce, parameter discovery & final report

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates

📦 项目名称: credshound
👤 项目作者: haxxm0nkey
🛠 开发语言: Go
Star数量: 45 | 🍴 Fork数量: 4
📅 更新时间: 2026-07-21 16:47:30

📝 项目描述:
Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: WP2Shell-CVE-2026-63030-POC
👤 项目作者: Bhanunamikaze
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 17:51:48

📝 项目描述:
PoC detector & safe validator for the WP2Shell WordPress vulnerability chain: CVE-2026-63030 (REST batch-route confusion) + CVE-2026-60137 (author__not_in SQL injection). For authorized security testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: wp2shell-poc
👤 项目作者: Colere-Sys
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 17:49:42

📝 项目描述:
Analysis and end-to-end implementation of the patched wordpress RCE vulnerability - CVE-2026-60137 and CVE-2026-63030

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: fastjson-1.2.83-rce-jdk8-jdk25
👤 项目作者: cuuemo
🛠 开发语言: Java
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:00:31

📝 项目描述:
Fastjson 1.2.68~1.2.83 RCE PoC — JDK 8/17/25 全版本通杀,checkAutoType @JSONType + /dev/fd bypass

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #RCE #POC #EXP

📦 项目名称: Fastjson-1.2.83-
👤 项目作者: Maybe-fish
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 10:02:11

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #RCE #POC

📦 项目名称: FastjsonExploit
👤 项目作者: Axyanzzzz
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 09:33:21

📝 项目描述:
fastjson1.2.83 fatjar利用

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF #Sandbox

📦 项目名称: CVE-2026-6875-PoC-Exploit
👤 项目作者: tc4dy
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:07:37

📝 项目描述:
CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell, batch threading, WAF bypass, persistence, lateral movement, credential dump, fileless exec, clean tracks. 🛡️ CVSS 9.5 actively exploited. Authorized & Legal use only. Stay Legal. 🔒

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: CTF_SQL_Injection_Bypass
👤 项目作者: Sofia6002
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:07:46

📝 项目描述:
Web CTF challenge — SQL injection WAF evasion, schema enumeration, and AES credential decryption.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-57588-Nessus-XML-Import-SQL-Injection-PoC
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:25:43

📝 项目描述:
PoC for CVE-2026-57588 - SQL injection in Nessus 10.12.0 XML import. Generates malicious .nessus files to enumerate databases, exfiltrate credentials, and test time-based blind injection. For authorized security research. Author: Sudeepa Wanigarathna. Patched in 10.12.1.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
👤 项目作者: mrmtwoj
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 17:49:07

📝 项目描述:
CVE-2026-60137Temporary Emergency Mitigation for CVE-2026-60137 & CVE-2026-63030 (wp2shell)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-samer-ecommerce-backend
👤 项目作者: Ada-bug
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:33:41

📝 项目描述:
An api for an e-commerce website with a : Product, category, cart and order API. They also have fully functional CRUD operations. Testing is available in te postman folder!

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: grype-snap
👤 项目作者: popey
🛠 开发语言: Unknown
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:04:58

📝 项目描述:
Snap package for Grype, a vulnerability scanner for container images and filesystems

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: dudonmainer
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 18:55:09

📝 项目描述:
A simple Python web vulnerability scanner.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: bootlicka-POC
👤 项目作者: paul-goon
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:46:10

📝 项目描述:
a shitty poc utilizing CVE-2026-0059.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-53595_exploit
👤 项目作者: 0xdak
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:37:44

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #CVE #Stored #DOM

📦 项目名称: Minima-private
👤 项目作者: WilliamMajanja
🛠 开发语言: JavaScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:04:36

📝 项目描述:
Minima protocol - security-hardened (BouncyCastle WOTS+, SSRF, XSS, SQLi, path traversal fixes)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: XSS-Educational-Payloads
👤 项目作者: abhirup1400-ship-it
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 17:23:34

📝 项目描述:
This repository contains Cross-Site Scripting (XSS) payloads designed strictly for educational purposes, defensive security research, and skill development for beginners.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Nessus-Professional-Download-2026
👤 项目作者: ClassSorcerer
🛠 开发语言: PHP
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:57:13

📝 项目描述:
⭐️ Nessus Professional | Vulnerability Scanner Pro v10.2 | Setup Installer | Keygen License | Full Version Activation | Latest Build Updated | Security Assessment Tool | Risk Management Software | Comprehensive Network Analysis | Windows 10/11 PC | Direct Genuine Original ⭐️

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: TheDarkMark
👤 项目作者: Yyax13
🛠 开发语言: Go
Star数量: 23 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 19:53:28

📝 项目描述:
TheDarkMark is a C2 framework designed to be fast and parallel.

🔗 点击访问项目地址