GitHub 红队武器库🚨
13.5K subscribers
20 photos
8 videos
22.7K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: crossfyre_toolchain
👤 项目作者: clickswave
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 01:20:48

📝 项目描述:
Recon and vulnerability scanning tools that run in your terminal. Find subdomains, scan ports, discover hidden paths, fingerprint what's running, and check it for vulns.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnerabilityScanner
👤 项目作者: manmitha219
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 04:10:39

📝 项目描述:
A Python based vulnerability scanner to detect open ports and security issues.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: Kimai-CVE-2026-49865-POC
👤 项目作者: cyeezy08
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 05:51:02

📝 项目描述:
PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: zap-lookup
👤 项目作者: disclose
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 05:33:03

📝 项目描述:
OWASP ZAP add-on: right-click a host to find its security-disclosure contact via lookup.disclose.io (the open-source-proxy sibling of the Burp & Caido plugins)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: CyberGuard-C2
👤 项目作者: juwel-ux
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 05:50:59

📝 项目描述:
Advanced C2 Framework for Ethical Hacking & Security Research

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: Black-cat
👤 项目作者: 0rangec3t
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 05:48:06

📝 项目描述:
Claude Code 红队渗透测试 Skill — Hypothesis-Driven Cognitive Architecture。一个假设-证据驱动的红队skill

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability_Scanner
👤 项目作者: anushkasengupta
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 05:59:49

📝 项目描述:
A Python vulnerability scanner for port scanning, banner grabbing, and outdated software detection — built for penetration testing practice.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SecureScan
👤 项目作者: gouthami-tammishetti
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 06:46:46

📝 项目描述:
Web Application Vulnerability Scanner using Flask

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #EDR

📦 项目名称: HashDump-BypassEDR
👤 项目作者: AabyssZG
🛠 开发语言: PowerShell
Star数量: 251 | 🍴 Fork数量: 32
📅 更新时间: 2026-07-30 06:57:06

📝 项目描述:
Windows绕过EDR实现DumpHash

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: Argus
👤 项目作者: Biswadebs-Lab
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 06:10:42

📝 项目描述:
Modular malware detection platform with automatic YARA rule synchronization and rule-based file scanning.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-16723
👤 项目作者: EQSTLab
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 07:44:53

📝 项目描述:
Fastjson RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: cosmos
👤 项目作者: vortaile
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 07:46:56

📝 项目描述:
COSMOS is a cross-platform forensic static analyzer for Windows PE files. Performs PE structure parsing, hex viewing, content analysis (entropy, strings, IOC, metadata, anomalies), YARA scanning (1,000+ rules), signature verification, and hashing. Includes a 0–100 risk verdict engine, multi-format report export, and optional VirusTotal integration.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Application-Vulnerability-Scanner
👤 项目作者: raashidpathancrypto
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 07:59:40

📝 项目描述:
Web Application Vulnerability Scanner Developed a Python-based Web Application Vulnerability Scanner to automate the identification of common web security vulnerabilities. The tool performs Reflected XSS and SQL Injection testing, analyzes HTTP security headers, and automatically discovers and tests web forms.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: CVE-64600-Refluxfs-POC
👤 项目作者: litosmartin
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:00:04

📝 项目描述:
A POC for the recently discovered Qualys bug on COW with XFS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #POC

📦 项目名称: WIKI-POC
👤 项目作者: 7estUser
🛠 开发语言: Python
Star数量: 35 | 🍴 Fork数量: 6
📅 更新时间: 2026-07-30 07:21:20

📝 项目描述:
漏洞库

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-60004
👤 项目作者: EQSTLab
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:22:17

📝 项目描述:
Gitea diffpatch RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-64600-Refluxfs-PoC
👤 项目作者: litosmartin
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:11:04

📝 项目描述:
A POC for the recently discovered Qualys bug on COW with XFS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2024-28000
👤 项目作者: AliHzSec
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:36:35

📝 项目描述:
Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a vulnerable environment with Docker and includes a Go-based brute-forcer that cracks the weak mt_rand hash to create an administrator account.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: vulnerable-boutique-ctf
👤 项目作者: izzaddiin123
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:43:26

📝 项目描述:
Vulnerable web app contains of 20 vulnerabilities including XSS,SSRF,SSTI,RCE,Insecure direct object refernce,Insecure Deserialization,jwt auth bypass,Race condition,and more others

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: stored-xss-chat-lab
👤 项目作者: LazizbekDev
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 09:07:52

📝 项目描述:
Hands-on stored XSS lab: multi-user chat with intentional vulnerabilities, cookie/session theft, and a safe channel — for classrooms and self-study

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: Log-Triage
👤 项目作者: geezsecurity
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 08:38:53

📝 项目描述:
Fast, self-hosted DFIR triage for Windows Event Logs (.evtx): Sigma + YARA + heuristic detections, MITRE ATT&CK, attack chains, and one-click PDF/DOCX reports.

🔗 点击访问项目地址