GitHub 红队武器库🚨
13.5K subscribers
20 photos
8 videos
23K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: ghostlock-myron-tw
👤 项目作者: jason5545
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 13:30:47

📝 项目描述:
GhostLock (CVE-2026-43499) kernel exploit port for REDMI K90 Pro Max Taiwan firmware (myron, WPMTWXM) — offsets, build guide, prebuilt binary

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: naveenvanam789
👤 项目作者: naveenvanam789
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 14:04:56

📝 项目描述:
Hi, I'm Naveen 👋 I'm an Associate Software Engineer at Tech Mahindra, based in Hyderabad, India, with about a year and a half of experience building backend systems and full-stack applications. My core stack is **Java and Spring Boot**, and I work regularly with **MySQL** and **Git** in my day-to-day development work.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Evasion #EDR

📦 项目名称: PwnyBolty
👤 项目作者: mr-rizwan-syed
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 12:05:53

📝 项目描述:
Turn a Microsoft-signed binary into a red team implant — no admin rights, no custom signing. ClickOnce delivery via AppDomainManager hijack with shellcode execution, file drop, reverse SSH + SOCKS5 tunnel modes, and a web UI for quick payload generation and deployment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: safe-install
👤 项目作者: haycarlitos
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 13:49:15

📝 项目描述:
Detect fake-job-interview malware before it runs. safe-install scans npm repos for the Contagious Interview (DPRK) attack, checks sites for ClickFix clipboard hijacks, and guides incident response if your wallet or machine was already compromised. Built from a real forensic teardown.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-15409
👤 项目作者: Ch4120N
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 14:59:05

📝 项目描述:
Proof-of-Concept exploit for CVE-2026-15409 (SonicWall SMA 1000 RCE) via Erlang distribution over WebSocket. Achieves unauthenticated remote code execution as couchdb user.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: POC-CVE-2026-54121-Certighost-
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 14:42:38

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #EDR

📦 项目名称: edr-bypass-kit-
👤 项目作者: rootdz1337
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 15:02:26

📝 项目描述:
edr bypass kit dz

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnscanner-pro
👤 项目作者: S-aghori
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 14:30:16

📝 项目描述:
Automated web vulnerability scanner for bug bounty and penetration testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #CVE

📦 项目名称: tameng
👤 项目作者: koodoxz
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 14:22:06

📝 项目描述:
🛡️ Single-binary, ML-assisted Web Application Firewall in Go — signature engine, actor tracking, DDoS escalation, honeypots. No sidecars.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: POC-CVE-2026-54121-Certighost
👤 项目作者: sam00
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 15:55:03

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: POC-CVE-2026-32621-Apollo-Federation-XSS-Vulnerability
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:02:10

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE #RCE

📦 项目名称: CVE-2026-3891
👤 项目作者: Ch4120N
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:01:32

📝 项目描述:
PoC for CVE-2026-3891 – Unauthenticated File Upload RCE in Pix for WooCommerce ≤ 1.5.0. Automated nonce retrieval, PHP upload, and command execution.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: dark-scanner
👤 项目作者: shakir310
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 15:52:39

📝 项目描述:
Python Flask-based Web Vulnerability Scanner. Scans directories, checks SSL/headers, and generates PDF reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: dom-xss-lab
👤 项目作者: uells
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 15:42:47

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: test-xss-swagger-CVE-2019-1749
👤 项目作者: delbertgiovanni
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 15:37:19

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #AV

📦 项目名称: Bitrat-Hvnc-Rat-Remote-Control-Av-Bypass
👤 项目作者: Leweth
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:04:30

📝 项目描述:
BitRAT CrackedIt is meticulously constructed utilizing the C++ programming language. It stands as the most recent iteration of the premier PC RAT for the year 2023. Regarded as a prized tool

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #OTP

📦 项目名称: Phone-Number-Email-Verification-Bypass
👤 项目作者: Leweth
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:04:23

📝 项目描述:
I have successfully circumvented phone number and email verification for you. This method is applicable to all websites.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ghost-scanner
👤 项目作者: gireeshsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:50:29

📝 项目描述:
GHOST - Vulnerability Scanner & OSINT Tool for Kali Linux

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring4Shell #CVE #RCE #POC

📦 项目名称: Spring4Shell-POC
👤 项目作者: PrinceH4k
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:30:52

📝 项目描述:
Proof of Concept for exploiting the CVE-2022-22965 (Spring4Shell) vulnerability in an isolated environment, with Remote Code Execution (RCE) demonstrated.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Beacon

📦 项目名称: calabasas-c2
👤 项目作者: stuxve
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-03 16:47:29

📝 项目描述:
无描述

🔗 点击访问项目地址