GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: GDbEDbHP
👤 项目作者: boom5497
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:39:11

📝 项目描述:
【Python计算机毕业设计分享】基于Python的web渗透漏洞扫描工具研究与应用,MySQL Python开发 毕业设计 实战项目【附源码、文档报告、代码讲解】

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc
👤 项目作者: chenzhixin13149201-cell
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:32:01

📝 项目描述:
XSS PoC payloads

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Smart-File-Scanner-Using-YARA
👤 项目作者: M4N45-060
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:55:07

📝 项目描述:
A Python-based cybersecurity project that detects suspicious files using YARA rules with GUI and CLI scanning support.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: ibrahim-mukhtar-saidu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:52:39

📝 项目描述:
A beginner-friendly Python web vulnerability scanner with security header analysis, technology detection, risk scoring, and automated reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: bug-finder-platform
👤 项目作者: yash2277-ctrl
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:46:09

📝 项目描述:
Security vulnerability scanner and bug reporting platform with AI analysis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: ghostlock-honor-aak
👤 项目作者: oopnv70-lab
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 20:56:45

📝 项目描述:
GhostLock (CVE-2026-43499) exploit adapted for Honor AAK-AN00 (MagicOS 10, kernel 6.6.89-android15)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-59243_exploit
👤 项目作者: 0xdak
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 20:21:27

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #CVE #metadata

📦 项目名称: CVE-2026-67620-poc
👤 项目作者: abdugafforov-bobur
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:05:26

📝 项目描述:
CVE-2026-67620 - Flowise SSRF via incomplete cloud-metadata deny-list (Oracle OCI 192.0.0.192 + Alibaba 100.100.100.200 bypass the DEFAULT_DENY_LIST)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-60004-gitea-0day
👤 项目作者: Sachinart
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:54:53

📝 项目描述:
CVE-2026-60004 — Gitea <= 1.27.0 Pre-Auth RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: Embedded-Router-Exploitation
👤 项目作者: arhip4043-cell
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 20:58:31

📝 项目描述:
End-to-End exploitation of a commercial Netgear Router: from Web Command Injection (RCE) to persistent Telnet access and MIPS bare-metal C execution.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: L4-DNS-isolation
👤 项目作者: inbitwetrust
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:52:41

📝 项目描述:
Investigating L3/L4 network isolation techniques on Linux to constrain DNS-based exfiltration and DoH covert channels. This experimental architecture explores kernel-level routing and Anycast bootstrapping as a framework to limit rogue C2 callbacks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: vNKcduoIWW
👤 项目作者: px2ysv789z
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:32:11

📝 项目描述:
【Java计算机毕业设计分享】基于SSM的漏洞扫描器管理系统,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: FileTriage
👤 项目作者: Paspke
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:29:01

📝 项目描述:
Recursive file triage tool that inspects content and structure (PDF, Office, PE/ELF, archives, email) for suspicious contradictions

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: RadiantSec
👤 项目作者: darkness215
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 19:26:48

📝 项目描述:
My corner of the internet. HTB writeups, red team notes, and AV/EDR evasion research.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: KcIcjbJE
👤 项目作者: owenbrave
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 20:40:20

📝 项目描述:
【Java计算机毕业设计分享】基于Shiro框架的渗透测试管理系统,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: rce-poc
👤 项目作者: mindbleed
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 23:39:36

📝 项目描述:
DevAI RCE PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf-lab
👤 项目作者: usfa7med
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-05 00:04:14

📝 项目描述:
A practical SSRF security lab featuring real-world bypass techniques, cloud metadata simulation, DNS rebinding, and secure SSRF defenses.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: capstone-test-website-spring
👤 项目作者: vurs
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-05 00:06:37

📝 项目描述:
A deliberately vulnerable Spring Boot application used to develop and validate the Capstone vulnerability scanner. It provides predictable browser and API findings for Dynamic Application Security Testing (DAST).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-60137-WordPress-Core-SQL-Injection-PoC
👤 项目作者: AbdullahMaqbool22
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-05 00:16:17

📝 项目描述:
Non-destructive proof-of-concept and verification harness for CVE-2026-60137, a blind SQL injection in WordPress core (`WP_Query::author__not_in`), reachable via the REST API's `author_exclude` parameter.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: Freddricklogan
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-05 00:52:22

📝 项目描述:
Simulated network vulnerability assessment with CVE detection, CVSS scoring, compliance checking, and remediation guidance

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #DOM

📦 项目名称: mitigator
👤 项目作者: MohamedSoliman21
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 22:00:23

📝 项目描述:
A production-grade, zero-trust security library for Node.js & TypeScript. Defends against OWASP Top 10, Prototype Pollution, XSS, SQLi, and Path Traversal with WebAuthn, AES-256-GCM, Adaptive Rate Limiting, and Winternitz PQC.

🔗 点击访问项目地址