GitHub 红队武器库🚨
13.4K subscribers
19 photos
8 videos
22.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #RCE

📦 项目名称: fastjson-1.2.83-rce-jar-generator
👤 项目作者: heihu577
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 11:32:47

📝 项目描述:
用于生成 fastjson 1.2.83 RCE 所需要的 Jar 包,含内存马注入功能。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-48908-Joomla-SP-Page-Builder-RCE
👤 项目作者: imXur
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:57:50

📝 项目描述:
Technical analysis and advisory for CVE-2026-48908: Unauthenticated Arbitrary File Upload to RCE in JoomShaper SP Page Builder.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-14266
👤 项目作者: liyuxuan504-byte
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:32:43

📝 项目描述:
7-Zip XZ Decoder Heap Buffer Overflow - Full analysis, root cause, PoC, and RCE exploitation roadmap

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Beacon

📦 项目名称: redops-hub-website
👤 项目作者: AbdoFawzi777
🛠 开发语言: Dart
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:03:23

📝 项目描述:
Mobile command center for Red Team operators. Vuln tracking, C2 monitoring, encrypted payload vault. Built with Flutter + Firebase.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #EXP

📦 项目名称: glsec
👤 项目作者: glsec
🛠 开发语言: Go
Star数量: 19 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 12:45:57

📝 项目描述:
Static security scanner and linter for GitLab CI. Finds .gitlab-ci.yml misconfigurations, supply-chain risks, and leaked secrets. Offline, SARIF output, OWASP CICD-SEC and CWE mappings.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #渗透

📦 项目名称: InformationCollecter-With-AI-analyzing
👤 项目作者: SilasWu50
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:59:56

📝 项目描述:
接入ai分析的集成信息收集工具,集成了多个主流github上优秀的信息收集工具,并通过ai进行自动化信息整理,精准高效暴露突破口给予渗透人员

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Syntecxhub_Vulnerability_Scanner
👤 项目作者: Kalsoom-Gill
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:05:15

📝 项目描述:
A simple Python-based vulnerability scanner that detects open ports, identifies common services, checks possible security issues, and generates a scan report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #NTLM Relay #AD

📦 项目名称: adscan
👤 项目作者: ADScanPro
🛠 开发语言: Python
Star数量: 492 | 🍴 Fork数量: 54
📅 更新时间: 2026-07-25 13:10:09

📝 项目描述:
Free Active Directory pentesting tool for Linux. Automates AD and LDAP enumeration, Kerberoasting, ASREPRoast, password spraying, ADCS/ESC1, DCSync, RBCD, gMSA, shadow credentials, NTLM relay and credential dumping across 104 techniques, mapping BloodHound-compatible attack paths to Domain Admin. NIS2 / ISO 27001 reports. No Windows needed.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #渗透

📦 项目名称: WebScanner-with-AI
👤 项目作者: SilasWu50
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:58:29

📝 项目描述:
这是一款接入ai分析的集成信息收集工具,集成了多个主流github上优秀的信息收集工具,并通过ai进行自动化信息整理,精准高效暴露突破口给予渗透人员

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp2Postman
👤 项目作者: tobiasGuta
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:30:41

📝 项目描述:
Burp2Postman is a Java/Montoya Burp Suite extension that sends selected HTTP requests directly to Postman. It does not export a collection file and does not hardcode workspace, collection, or folder IDs.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: flan-go-scan
👤 项目作者: therandomsecurityguy
🛠 开发语言: Go
Star数量: 17 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 13:39:54

📝 项目描述:
A modular, extensible vulnerability scanner in Go.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: XSS-PoC
👤 项目作者: XSS-PoC
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:02:48

📝 项目描述:
Interactive XSS payload generator

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: DOM_OWASP_JUICE_SHOP
👤 项目作者: devisalone
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:21

📝 项目描述:
Demonstration of OWASP JUICE SHOP DOM XSS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vuln_scanner
👤 项目作者: shahadali-4
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:56

📝 项目描述:
A lightweight Python web vulnerability scanner with PDF reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules

📦 项目名称: yara-scanner
👤 项目作者: davidattip
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:53:41

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-suite-executor-scripts
👤 项目作者: tyler-youngzxv6238
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:04:13

📝 项目描述:
A 2026 collection of practical Burp Suite scripts for security testers, combining hands-on automation, extension examples, and focused utilities in one organized repository.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-60206
👤 项目作者: Debajyoti0-0
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:32:38

📝 项目描述:
Technical analysis and Proof-of-Concept for CVE-2026-60206, a critical Oracle WebLogic Server SAML authentication bypass vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Webrecon-
👤 项目作者: happysharma80119-lgtm
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:49:37

📝 项目描述:
WebRecon — Subdomain Enumeration & Reflected XSS Scanner WebRecon is a Python-based reconnaissance and web application security tool designed to streamline the early stages of a penetration test or bug bounty engagement. It combines active and passive subdomain discovery with automated reflected Cross-Site Scripting (XSS) detection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #malware

📦 项目名称: Smart-YARA-Rule-Generator
👤 项目作者: mokhtarfertit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:53:00

📝 项目描述:
smart YARA its tools for make malware analysis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: CyberShield-
👤 项目作者: klavanyaraj2006
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 16:05:49

📝 项目描述:
Website Security Vulnerability Scanner using Flask

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #Exploit #利用 #CVE

📦 项目名称: sploitus-skills
👤 项目作者: scagogogo
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 16:19:03

📝 项目描述:
A Go CLI tool and library for searching, exporting, and downloading exploit data from Sploitus database (sploitus.com). 支持搜索、导出、下载漏洞利用数据的命令行工具和Go库。

🔗 点击访问项目地址