GitHub 红队武器库🚨
13.4K subscribers
20 photos
8 videos
22.6K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Nemesis-Scanner
👤 项目作者: ErfanNahidi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-28 21:42:51

📝 项目描述:
Nemesis Scanner – Shadow Edition | An advanced, cross‑platform network reconnaissance and vulnerability scanner built on Nmap. Designed for penetration testers, red teams, and security auditors who need fast, thorough scans on any operating system.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: RAT-Simulation-And-Yara-Malware-Scanner
👤 项目作者: khemrinmang
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 22:44:31

📝 项目描述:
During my coursework project, I have created a RAT Simulation between two virtual machines that essentially connects the two machines via command prompt and you are able to access the other's VM without them knowing. Combined with a YARA-based malware scanner that actively scans your computer for suspicious files that can have suspicious patterns.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-51302-PoC
👤 项目作者: extratao
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 23:56:37

📝 项目描述:
Clickbait. The CVE is AI slop.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2026-66748-Camaleon-CMS---Authenticated-RCE-via-select_eval-Custom-Field
👤 项目作者: theopaid
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 23:10:42

📝 项目描述:
Security Advisory: Camaleon CMS - Authenticated RCE via `select_eval` Custom Field

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: Ultimate-CVE-2026-61511
👤 项目作者: codeb0ssx
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 00:52:11

📝 项目描述:
vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vulnerability in the vB5_Template_Runtime::runMaths() method within the template runtime that allows unauthenticated remote attackers to execute arbitrary PHP code

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #邮件 #Phishing

📦 项目名称: Hx0-DataGuard
👤 项目作者: asaotomo
🛠 开发语言: Unknown
Star数量: 12 | 🍴 Fork数量: 2
📅 更新时间: 2026-07-29 00:43:55

📝 项目描述:
本地运行的浏览器安全助手,支持页面与 API 扫描、输入防泄漏、网页邮箱与 EML 钓鱼邮件识别、规则管理及多格式报告导出。(A local-first browser security assistant for page and API scanning, input leak prevention, phishing email analysis, rule management, and multi-format report export.)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Stored-XSS-via-Content-Tag-Names-Microweber-
👤 项目作者: theopaid
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:57:46

📝 项目描述:
Security Advisory: Stored XSS via Content Tag Names - Microweber CMS 2.0.20

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: code-security-scanner-nextjs-ts-v50
👤 项目作者: ejajmahmud
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:27:32

📝 项目描述:
Automated Code Quality & Vulnerability Scanner enterprise system built with TypeScript / Next.js React App

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Atlas-burpsuite-extension
👤 项目作者: Raunaksplanet
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:02:32

📝 项目描述:
Passive attack-surface mapper for Burp Suite. Watches HTTP traffic, deduplicates endpoints, presents them in a live table.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpCustomHook-archived
👤 项目作者: KaiHT-Ladiant
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:48:42

📝 项目描述:
Burp Suite extension that serves a custom HTML webhook page via a dedicated local HTTP server

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: grype
👤 项目作者: marcinbojko
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:40:52

📝 项目描述:
Chocolatey package for Grype, a vulnerability scanner for container images and filesystems

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: ArtFramework
👤 项目作者: ZJustin117
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:59:35

📝 项目描述:
ART Framework — presentation framework for Slay the Spire (C1/C2 dual-track UI)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Zeus-Malware-Hunt-lab-with-Suricata-Splunk-Volatility-YARA
👤 项目作者: osama-moussa
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:36:06

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: chatsite-ai
👤 项目作者: Zephyrex21
🛠 开发语言: TypeScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 04:11:18

📝 项目描述:
Chat with any website — paste a URL, get a grounded AI conversation about its actual content. Next.js 16 + Prisma 7 + Gemini, built portfolio-grade with full CI/CD, testing, and SSRF-hardened scraping.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: thm-tempest-investigation
👤 项目作者: Amal-shaji7
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 05:51:24

📝 项目描述:
Incident response investigation of a compromised Windows endpoint. Reconstructed the full attack chain using Sysmon logs, Windows Event Logs, and network packet capture covering initial access, C2, discovery, privilege escalation, and persistence.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE

📦 项目名称: log4j
👤 项目作者: leosp1983
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 16:13:59

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-49176_BOF
👤 项目作者: 777erp
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:57:57

📝 项目描述:
CVE-2026-49176 WalletService LPE — standalone PoC + Cobalt Strike BOF (SYSTEM command on interactive session)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Nemesis-Python
👤 项目作者: Nemesis-Tools
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:55:38

📝 项目描述:
A Selenium-based web vulnerability scanner · HTTP/HTTPS · 323 techniques · HackerOne-format reports (auto CWE/CVSS)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: CDAC-Major-Project-VAPT
👤 项目作者: shantanu1245
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:37:28

📝 项目描述:
Conducted VAPT on Altoro Mutual (testfire.net) in a controlled lab using Kali Linux, Burp Suite, Nmap, and SQLmap. Performed reconnaissance and security testing, identifying SQLi, Stored/Reflected XSS, CSRF, Broken Access Control, weak authentication, and network misconfigurations. Documented PoCs and recommended remediations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Portable-Malware-Scanner
👤 项目作者: PotateBulle
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:02:34

📝 项目描述:
Scanner de logiciels malveillants portable et multi-moteur pour Windows, utilisant SHA-256, YARA, ClamAV et Microsoft Defender, avec des rapports JSON unifiés.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: python-simple-vulnerability-scanner
👤 项目作者: dinalliyanage
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:04:23

📝 项目描述:
A custom Python-based vulnerability scanner that detects open TCP ports, fingerprints active services, and identifies default web page misconfigurations.

🔗 点击访问项目地址