GitHub 红队武器库🚨
13.4K subscribers
20 photos
8 videos
22.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-suite-executor-scripts
👤 项目作者: tyler-youngzxv6238
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:04:13

📝 项目描述:
A 2026 collection of practical Burp Suite scripts for security testers, combining hands-on automation, extension examples, and focused utilities in one organized repository.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-60206
👤 项目作者: Debajyoti0-0
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:32:38

📝 项目描述:
Technical analysis and Proof-of-Concept for CVE-2026-60206, a critical Oracle WebLogic Server SAML authentication bypass vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Webrecon-
👤 项目作者: happysharma80119-lgtm
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:49:37

📝 项目描述:
WebRecon — Subdomain Enumeration & Reflected XSS Scanner WebRecon is a Python-based reconnaissance and web application security tool designed to streamline the early stages of a penetration test or bug bounty engagement. It combines active and passive subdomain discovery with automated reflected Cross-Site Scripting (XSS) detection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #malware

📦 项目名称: Smart-YARA-Rule-Generator
👤 项目作者: mokhtarfertit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:53:00

📝 项目描述:
smart YARA its tools for make malware analysis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: CyberShield-
👤 项目作者: klavanyaraj2006
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 16:05:49

📝 项目描述:
Website Security Vulnerability Scanner using Flask

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #Exploit #利用 #CVE

📦 项目名称: sploitus-skills
👤 项目作者: scagogogo
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 16:19:03

📝 项目描述:
A Go CLI tool and library for searching, exporting, and downloading exploit data from Sploitus database (sploitus.com). 支持搜索、导出、下载漏洞利用数据的命令行工具和Go库。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: EXPLOIT-CVE-2026-26216
👤 项目作者: joaovicdev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 17:21:08

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: NeoJS
👤 项目作者: B14CKSPID3R
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 17:58:33

📝 项目描述:
NeoJS is an advanced Burp Suite extension that streamlines JavaScript code downloading and categorization into a hierarchical structure. It extracts HTTP requests, endpoints, parameters, and source maps, while supporting custom tool integration for comprehensive domain-based analysis—all through an intuitive interface.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: txd-poc
👤 项目作者: nweb
🛠 开发语言: Assembly
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 18:45:35

📝 项目描述:
GTA:SA RCE PoC exploit.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: WatchGuard-CVE-2025-9242-PoC-and-Mass-Scanner
👤 项目作者: UnusualGiraffe
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 18:40:34

📝 项目描述:
Unauthenticated RCE version-pinned proof of concept + mass scanner for WatchGuard Fireware CVE-2025-9242.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: cveharvest
👤 项目作者: takorunikatora
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 19:06:34

📝 项目描述:
CVE intelligence dashboard — NVD harvesting, exploit enrichment, neon PyQt6 GUI with notification system

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: EXPLOIT-CVE-2026-40901
👤 项目作者: joaovicdev
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 19:57:34

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Website-Vulnerability-Scanner
👤 项目作者: CelestianBeing
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 19:55:32

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: scanpro
👤 项目作者: mukidulislamzihad
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 19:49:04

📝 项目描述:
Lightweight Python network & web vulnerability scanner with CVE lookup, TLS audit, and CLI/GUI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Session-Hijack
👤 项目作者: pranjali-sawant
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 19:34:22

📝 项目描述:
A browser-based web security simulator demonstrating SQL Injection and Cross-Site Scripting (XSS) in a connected attack narrative

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Tirodhana
👤 项目作者: rangta10
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 21:02:34

📝 项目描述:
Tirodhana is a modular payload transformation framework built for cybersecurity education, malware analysis, and defensive research. It allows users to apply encoding and string obfuscation techniques, compare static detection results, perform YARA scans, and generate analysis reports through an interactive command-line interface.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: loki
👤 项目作者: adityamiskin
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 21:55:24

📝 项目描述:
Agent-powered vulnerability scanner for any codebase

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: OOBBridge
👤 项目作者: tobiasGuta
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 22:56:42

📝 项目描述:
OOBBridge is a Java 21 Burp Suite extension that connects Burp's request-editing workflow to an existing, self-hosted Interactsh deployment through the local OpenSSH client.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: JavaScript-Secret-Miner
👤 项目作者: DecryptiousOnGH
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 23:37:53

📝 项目描述:
Multi-threaded tool to mine secrets, API keys, and credentials from JavaScript files. CLI + Burp Suite extension.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: b0dj0xstrike
👤 项目作者: b0dj0x
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 23:59:31

📝 项目描述:
b0dj0xstrike is an all-in-one XSS vulnerability discovery tool that automates the entire attack chain: subdomain enumeration → port scanning → live host detection → link harvesting → JavaScript analysis → parameter discovery → XSS detection → payload generation → WAF bypass → DOM analysis → reporting.

🔗 点击访问项目地址