GitHub 红队武器库🚨
13.4K subscribers
19 photos
8 videos
22.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: nuclei-tripse
👤 项目作者: Yuri0x
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 08:23:33

📝 项目描述:
my bounty template

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: cve-2021-44228-log4shell_rce_reproduction
👤 项目作者: razureink
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 08:52:12

📝 项目描述:
CVE-2021-44228 Log4Shell - Apache Log4j2 JNDI Injection RCE

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: Advanced-SOC-and-Threat-Detection
👤 项目作者: ayushkp930
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 09:02:24

📝 项目描述:
SOC lab for high-fidelity threat hunting: detects Sliver C2 beacons via Zeek/Suricata, handles fileless LotL attacks with ELK/Sigma, deploys Python-Volatility for memory forensics, tracks DNS/ICMP exfiltration in Splunk, and utilizes FSRM canary files with PowerShell triggers for automated open-source ransomware containment & host isolation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-9198
👤 项目作者: ywh-jfellus
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 09:42:55

📝 项目描述:
Proof of Concept for CVE-2026-9198 - IBM Langflow Unauthenticated RCE via Auto-Login Bypass

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara2stix
👤 项目作者: muchdogesec
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 09:50:45

📝 项目描述:
A command line tool that converts the YARA Rules into STIX 2.1 Objects.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-63030
👤 项目作者: shinthink
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 10:50:32

📝 项目描述:
WordPress Core Pre-Auth RCE via REST Batch Route Confusion + SQLi (CVE-2026-63030 + CVE-2026-60137)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: MODERN-BLOG
👤 项目作者: Punith2412
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 10:55:03

📝 项目描述:
A full-stack Flask blog CMS with AI-assisted content tools (Groq, Anthropic), CKEditor rich-text posts, an in-browser Python/JS code playground, and an interactive quiz system. Hardened via automated Selenium testing: fixed broken access control, stored XSS, and 500 errors; added RBAC, RSS/sitemap, rate limiting, and real image uploads.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-scanner-
👤 项目作者: vikirocker09
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 11:06:03

📝 项目描述:
Vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-2026-65761
👤 项目作者: shinthink
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 11:07:18

📝 项目描述:
EasyStore Joomla Pre-Auth SQL Injection via filter_sortby Direction (CVE-2026-65761, CVSS 9.3)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-65650
👤 项目作者: swornim619
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 11:55:58

📝 项目描述:
PoC for CVE-2026-65650 - Elgg avatar upload DoS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: waf-bypass-automation
👤 项目作者: viktorefimov2002-bot
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 12:05:35

📝 项目描述:
discover nemesida/waf-bypass report and recheck detected bypassed cURL requests to write SecRules for them

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: my-nuclei-templates
👤 项目作者: Tjalling112
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 11:57:41

📝 项目描述:
My personal Nuclei vulnerability templates

🔗 点击访问项目地址
Forwarded from 广告赞助
一个包含数据,工具,源码,远控,网络安全等等各种的工具分享频道,更新的很快,各大频道同步
欢迎大家加入,也欢迎大家投稿
https://t.me/zpyth
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Application-Vulnerability-Scanner
👤 项目作者: poojanenavath123
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 12:40:34

📝 项目描述:
Python-based web application vulnerability scanner using Requests and BeautifulSoup for educational and authorized security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: XSS-Immune-JWT-Authentication-Architecture
👤 项目作者: IamAhsan1
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 12:59:37

📝 项目描述:
A highly secure, production-ready authentication system utilizing a Double HttpOnly Cookie architecture to render user sessions 100% immune to Cross-Site Scripting (XSS) attacks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: PoC-CVE-2026-46331
👤 项目作者: cherrycherrymay
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 13:02:55

📝 项目描述:
Pedit COW – Linux Kernel Local Privilege Escalation (CVE-2026-46331)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: PatrowlIntelLabs
👤 项目作者: Patrowl
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 12:26:02

📝 项目描述:
Weaponized-but-safe: Dockerized vulnerable apps + battle-tested Nuclei templates for real-world web & Internet-facing CVEs. Original research by Patrowl.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: oidc-ssrf-poc-8706363
👤 项目作者: or-akl
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 13:04:39

📝 项目描述:
无描述

🔗 点击访问项目地址
Forwarded from Channel Help
This media is not supported in your browser
VIEW IN TELEGRAM
🌈🌈🌈🌈8K国际 信誉至上·财富相伴

🌈🌈🌈🌈🌈8k2289.com

#东南亚盘总首选最权威综合😃台 集团耗资2亿美金 打造全网最牛逼的线上娱乐平台。😄😄😄😄



8K国际·品牌实力
1、不限IP,电子真人0审核0风控包出款
2、每日提款不限额度和次数,大额无忧
3、返水无上限,实时返水,免打码直提
4、真人视讯,单注限红可下20万U一口
5、大哥首选,电子3000U一拉业内最高
6、资金储备超2亿U,全网上押1000万U



天选之人:PP电子极速糖果 30U爆25000倍满倍大奖75万U 😀
赌神在线:百家乐战神 大哥一天时间狂砍100万U 😀
糖果大水:PP电子极速糖果 单注500爆得500万U巨奖 😀
福星高照:百家乐神秘大哥 连续稳定输出一天净赚59万u 😀


每日存款彩金每日送,每笔存款加赠
1⃣🔤
8K国际
#无风控 电子真人零审核包出款

🔗 官方网址: 8k2289.com
官方频道:@PG8K8K
申请客服:@vipkf8K
Please open Telegram to view this post
VIEW IN TELEGRAM
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: CVE-2025-27520
👤 项目作者: electricsheep08
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 13:59:56

📝 项目描述:
exploit for CVE-2025-27520 A Remote Code Execution (RCE) vulnerability caused by insecure deserialization in the latest version (v1.4.2) of BentoML. It allows any unauthenticated user to execute arbitrary code on the server. It exists an unsafe code segment in serde.py. This vulnerability is fixed in 1.4.3.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: pwnfox-for-BurpBrowser
👤 项目作者: SrirammananS
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 13:57:53

📝 项目描述:
无描述

🔗 点击访问项目地址