GitHub 红队武器库🚨
13.4K subscribers
19 photos
8 videos
22.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #文件上传 #EXP

📦 项目名称: Employment-Recommendation-System
👤 项目作者: zhangsan594226632
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:49:28

📝 项目描述:
【万字文档+源码】 基于SpringBoot+Vue就业推荐系统-可用于毕设-课程设计-练手学习-学习资料分享-本文介绍了一个基于SpringBoot和Vue3的毕业生就业推荐系统设计方案。系统采用前后端分离架构,包含毕业生、企业和管理员三类角色,旨在解决高校就业信息不对称问题。毕业生可投递简历、查看面试通知;企业能发布岗位、管理简历;管理员统一管理平台数据并可视化统计招聘信息。系统实现了从注册登录、简历投递到面试管理的完整求职流程,具备文件上传、权限控制等基础模块。数据库设计了用户表、企业表、招聘岗位表等核心数据表,支持三方角色协同工作。该平台为高校毕业生求职、企业招聘和校方管理提供了规范化的线上解决方案。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fscan #内网 #漏洞 #POC

📦 项目名称: fscan-gui
👤 项目作者: nas-tool
🛠 开发语言: Vue
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 07:42:03

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: safe-fetch-guard
👤 项目作者: anatolyben
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 13:20:41

📝 项目描述:
SSRF-safe URL validation and bounded, redirect-controlled HTTP fetch for untrusted outbound requests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Professional-Vulnerability-CVE-Scanner
👤 项目作者: waniaazam000-cpu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:57:01

📝 项目描述:
This project is a Python-based vulnerability scanner. It scans a website or IP address to find: Open ports Running services Software versions Known vulnerabilities (CVEs) Risk level Finally, it generates a PDF report and a JSON report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #RCE #反序列化

📦 项目名称: FastjsonAutoPwn
👤 项目作者: milantgh
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:53:14

📝 项目描述:
FastjsonAutoPwn

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #RCE #反序列化 #POC #EXP

📦 项目名称: fastjson-1.2.83
👤 项目作者: mua520
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:31:01

📝 项目描述:
fastjson-1.2.83

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-polyproto
👤 项目作者: th3-bl1nd3r
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 15:45:38

📝 项目描述:
A vendor-neutral API traffic decoder for Burp Suite — auto-detects gzip/zstd/brotli, gRPC/gRPC-Web, HTTP chunked, and protobuf/JSON/form/XML, with a rule engine and lossless edit+replay.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2 #Implant

📦 项目名称: SliverLoader
👤 项目作者: bytebl33d
🛠 开发语言: C#
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:26:14

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #Beacon

📦 项目名称: SliverCloak
👤 项目作者: bytebl33d
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:56:10

📝 项目描述:
Go-based build program to clone, run modules, and compile custom Sliver client and server binaries.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: cPanel-WHM-CVE-2026-41940-auth-bypass-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:52:26

📝 项目描述:
Critical authentication bypass exploit for cPanel/WHM CVE-2026-41940. Leverages CRLF injection in cpsrvd daemon to gain root WHM access without credentials. Includes version detection, verbose logging, proxy support, JSON reporting, and post-exploitation account enumeration. For authorized security testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-templates
👤 项目作者: 0XFFFF-XD
🛠 开发语言: Unknown
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-26 16:57:12

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Evasion #EDR

📦 项目名称: offensive-maldev
👤 项目作者: SlugRegister
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:44:42

📝 项目描述:
Offensive security techniques including AMSI bypass, EDR evasion, process hollowing, and shellcode loading

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: tmf630-toolkit
👤 项目作者: opentmf
🛠 开发语言: Java
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:06:17

📝 项目描述:
The adaptation of TMF-630 REST API Design Guidelines for Spring Web MVC.

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vanguard-agentic-security-harness
👤 项目作者: 0xsharz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:52:44

📝 项目描述:
Agentic vulnerability scanner that builds the target's environment, runs a real exploit inside it, and watches the vulnerability fire.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: MalwareLens_AI
👤 项目作者: Surajit-Samanta
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:54:39

📝 项目描述:
Static-analysis malware triage workbench (RF + MLP) with MBC/ATT&CK mapping, campaign clustering, and AI-assisted YARA rule generation — built for AICS-108

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: detection-rules
👤 项目作者: elfx32
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:29:49

📝 项目描述:
yara / sigma

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: sockpuppets
👤 项目作者: ajm4n
🛠 开发语言: Python
Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 18:48:34

📝 项目描述:
SockPuppets - WebSocket-based command and control. Not a good C2.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #越权 #POC

📦 项目名称: keel
👤 项目作者: LuckyOneTwoThree
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:38:49

📝 项目描述:
A keel for human + AI project management. Markdown as the database, Git as the audit log, Python as the constitution enforcer — decisions never forgotten, AI never overreaches, drafts expire. | 给「人 + AI 协作的项目管理」装一根龙骨。用 Markdown 当数据库,用 Git 当审计日志,用 Python 脚本当宪法执行者 —— 决策不失忆,AI 不越权,草稿会过期。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: sheetratexploit
👤 项目作者: whoamicrash
🛠 开发语言: C#
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 21:51:41

📝 项目描述:
Proof of Concept (PoC) эксплойт для панели SheetRat, демонстрирующий удаленное выполнение кода (RCE) через комбинацию Path Traversal и DLL Hijacking

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: trivy-installer
👤 项目作者: maniakh
🛠 开发语言: Shell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 22:51:44

📝 项目描述:
Installs Trivy vulnerability scanner on Ubuntu, Debian and CentOS using official Aqua Security repositories.

🔗 点击访问项目地址