GitHub 红队武器库🚨
13.5K subscribers
20 photos
8 videos
23K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: Cyber-Defenders-lab-
👤 项目作者: abiral-timalsina
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:29:44

📝 项目描述:
My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and LLMNR/NBT-NS credential poisoning — each with step-by-step packet analysis, screenshots, and a full Wireshark filter/command reference. Personal SOC Analyst Tier 1 learning log.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #Evasion

📦 项目名称: apk-antivirus-evasion-20260801
👤 项目作者: scdnai
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:01:41

📝 项目描述:
APK爆毒免杀处理方案 - https://www.133l.com

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Execute #Evasion

📦 项目名称: RepentanceStealer
👤 项目作者: Nuf1p
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-31 20:09:59

📝 项目描述:
x64 PIC shellcode that enable chrome CDP in-memory and extract/exfiltrate cookies

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: uefi_bootkit_softlanding
👤 项目作者: ARES-SYS
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:53:29

📝 项目描述:
First public analysis of SoftLanding UEFI bootkit: Ring -2 implant, CVE-2025-7029, 240+ Gigabyte boards, GPU AI evasion, dual C2. YARA + Sigma + Suricata included.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Python-Vulnerability-Scanner
👤 项目作者: vardhanpetakamsetty2005-max
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:07:46

📝 项目描述:
Python-based Vulnerability Scanner using Nmap with automated PDF reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: malware-lab
👤 项目作者: m55681518-byte
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:33:05

📝 项目描述:
Spy vs Defender - educational malware lab: 20 technique demos, HTML game, YARA/Sigma detection rules, Windows Sandbox launcher

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner-tool
👤 项目作者: pavankumar-bhadram
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:59:01

📝 项目描述:
Automated Vulnerability Assessment & Security Audit Framework with CVSS v3.1 Scoring, 16 Security Audit Engines, OWASP/ISO/PCI Mappings & Graphical Executive HTML Dashboards.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: xssadvancehunt
👤 项目作者: tripatpu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:40:05

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Weblogic #CVE

📦 项目名称: IHateWeblogic
👤 项目作者: gpipperr
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:00:00

📝 项目描述:
Oracle Forms and Reports on WebLogic is powerful but notoriously difficult to diagnose. This script library exists because the author has spent too many hours debugging obscure configuration issues, font problems, segfaults, and SSL mismatches on Oracle Middleware installations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-53625-GLPI-PoC
👤 项目作者: 7h30th3r0n3
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:46:16

📝 项目描述:
GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical PoC for the GLPI vulnerability allowing a Technician to take full control of any Super-Admin account through REST API authtype manipulation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-13158
👤 项目作者: MinhHK68
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:01:12

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: NessusScan
👤 项目作者: signature-creator
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:43:40

📝 项目描述:
A basic network scan using the Nessus Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: auth-bypass-scanner
👤 项目作者: Thar-un
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:38:47

📝 项目描述:
4xx auth/authz bypass scanner — 54 verbs, 1137 headers, 22+ path tricks, FP suppression, Burp integration

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: security-research-orchestrator-prompt
👤 项目作者: dinosn
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:03:55

📝 项目描述:
High-assurance, artifact-agnostic prompt for authorized security labs, exploit-chain research, PoC validation, and evidence-led reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: darkcrypt
👤 项目作者: darkness215
🛠 开发语言: C
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:43:08

📝 项目描述:
AES-256-CBC shellcode loader with Hell's Gate direct syscalls and Early Bird APC injection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vamp-subdomain-takeover
👤 项目作者: belky-me
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:34:09

📝 项目描述:
VampSecure Labs — Subdomain Takeover Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: CyberSentinel
👤 项目作者: mizan989
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:23:37

📝 项目描述:
Automated Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #取证

📦 项目名称: LERScan
👤 项目作者: LTSHFWJT
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:26:11

📝 项目描述:
Linux主机应急响应扫描和取证工具

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates #POC #CVE

📦 项目名称: waf-efficacy
👤 项目作者: shaanz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:17:23

📝 项目描述:
WAF efficacy testing platform: nuclei + gotestwaf + false-positive corpus, Precision/Recall/F1 scoring, web UI, containerized

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnerabilityScanner
👤 项目作者: sriambal
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 16:01:13

📝 项目描述:
A Django-based Vulnerability Scanner that scans websites for open ports, identifies missing HTTP security headers, detects server information, and generates vulnerability reports to help understand basic web security and vulnerability assessment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2025-57819-RCE
👤 项目作者: TeteREN
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 15:20:36

📝 项目描述:
CVE-2025-57819-RCE_PoC

🔗 点击访问项目地址