GitHub 红队武器库🚨
13.4K subscribers
19 photos
8 videos
22.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-54121-CertiGhost
👤 项目作者: marcgoam
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 11:48:41

📝 项目描述:
CVE-2026-54121 (Certighost) AD CS DC-impersonation PoC. Patched SAN handling + MAQ-safe account reuse.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: Cloud-pentest-guide
👤 项目作者: abdallaabdalrhman
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 11:09:03

📝 项目描述:
Practitioner field guide + hands-on lab walkthrough for AWS, Azure, and GCP red teaming — IAM/Entra ID enumeration, privilege escalation, metadata SSRF, and automated tooling.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response #Detection

📦 项目名称: tyrian-detection-pack
👤 项目作者: zshguy
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 11:10:54

📝 项目描述:
Sigma detections for real ATT&CK techniques, with a compiler that emits Wazuh, Splunk and Sentinel from one source. 36 rules, 33 techniques, MIT.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #取证

📦 项目名称: forensic-collector
👤 项目作者: stushansusu
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 12:02:23

📝 项目描述:
一个 Windows 桌面取证工具,用于快速采集计算机上的各类数字痕迹和证据,适合安全调查、应急响应和内部审计场景。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #红蓝对抗 #演练

📦 项目名称: yuqing
👤 项目作者: simonliu1358
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 11:28:35

📝 项目描述:
舆情演练红蓝对抗

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vaelion-XSS
👤 项目作者: pratikkhairnar160
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 12:02:52

📝 项目描述:
Advanced XSS vulnerability scanner using Selenium and real browser execution verification for authorized security testing and bug bounty research.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Mactoy1
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 11:47:48

📝 项目描述:
A Python-based mini vulnerability scanner for port scanning and security checks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #malware

📦 项目名称: Putty_Patrol
👤 项目作者: Stefan-Krijt
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 13:00:06

📝 项目描述:
Malware analysis of a malicious PuTTY executable (Trojan.Dropper) that extracts a PowerFun PowerShell reverse shell. Includes IOCs, YARA rule, and full analysis report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #EXP

📦 项目名称: fastjson2Exp
👤 项目作者: Vme18000yuan
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 12:58:16

📝 项目描述:
fastjson2 RCE Exp

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: glpi-logbleed
👤 项目作者: 5kr1pt
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 13:53:12

📝 项目描述:
PoC for CVE-2026-53629, blind SQL injection in the GLPI history log filter

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: flask-kvsession-pickle-rce
👤 项目作者: deepanshhooda
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 14:03:19

📝 项目描述:
PoC: Flask-KVSession & Flask-KVSession-fork Pickle Deserialization RCE (CVE pending)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #漏洞

📦 项目名称: AIS3_IIS_ASP.NET_Deserialization2RCE
👤 项目作者: zyyuy0u
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 12:56:55

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: wapiti-scanner.github.io
👤 项目作者: wapiti-scanner
🛠 开发语言: HTML
Star数量: 5 | 🍴 Fork数量: 4
📅 更新时间: 2026-07-27 14:53:32

📝 项目描述:
Website for the Wapiti web vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vuln-scanner-sylure
👤 项目作者: Saharnaz-ch
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 14:43:34

📝 项目描述:
Bilingual web vulnerability scanner with business-friendly enhanced security reports (EN/AR)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43499
👤 项目作者: dnlid
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 15:22:53

📝 项目描述:
CVE-2026-43499: Linux kernel futex PI use-after-free research package

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-65008
👤 项目作者: zer0dayf
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 14:32:46

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: derekwango
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 16:35:48

📝 项目描述:
Web-based vulnerability scanner that orchestrates Kali/Debian security tools (nmap, nikto, whatweb, sqlmap, testssl.sh) via Docker. Built with PHP/MariaDB, features a dark cybersecurity UI, scan result persistence, and a planned CVE/NVD mapping layer.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #RCE

📦 项目名称: fastjson2-rce
👤 项目作者: heart147
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 16:58:12

📝 项目描述:
fastjson2 ≤ 2.0.62 利用多态反序列化(ObjectReaderSeeAlso)+ URLClassLoader.findClass 点号转斜杠替换,绕过 AutoType 白名单及 JDK ClassLoader.checkName,实现远程代码执行。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response #Detection

📦 项目名称: BlueTeam
👤 项目作者: mattp8638
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-27 12:34:56

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-66731-Negative-Chunk-Size-Parsing-Causes-Memory-Corruption-leading-to-Server-Crash
👤 项目作者: theopaid
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 17:44:53

📝 项目描述:
Security Advisory: Negative Chunk-Size Parsing Causes Memory Corruption in facil.io

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-66730-Infinite-Loop-DoS-in-facil.io-MIME-Parser
👤 项目作者: theopaid
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 17:41:51

📝 项目描述:
Security Advisory: Infinite Loop DoS in facil.io MIME Parser (Partial Boundary)

🔗 点击访问项目地址