GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: XsessionHandler
👤 项目作者: zalakamal08
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:25:02

📝 项目描述:
Burp Suite extension: automatic JWT / access token / refresh token / CSRF token session handling - capture from responses, inject into outgoing requests. No session handling rules needed.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: galact-Skills
👤 项目作者: galact-byte
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:56:29

📝 项目描述:
个人自用 Agent Skill 库(SKILL.md 标准),现阶段聚焦授权渗透漏洞挖掘:14 类 hunt-* + 攻击面研判总线,自带静态+靶标端到端测试。后续扩展其它领域。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: rce-poc-stub
👤 项目作者: kokifish
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:14:49

📝 项目描述:
RCE PoC stub file

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: thiranex-vulnerability-scanner
👤 项目作者: vikash-mishra-01
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:05:34

📝 项目描述:
Python Vulnerability Scanner for Thiranex Task 2

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Threat-Hunting-Using-YARA-Rules-
👤 项目作者: GOWTHAMMG347
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:34:09

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malconsole
👤 项目作者: raKSum-cybersec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:18:44

📝 项目描述:
A single msfconsole-style terminal for static reverse-engineering and malware triage — unified hashing, PE/ELF analysis, string/IOC extraction, YARA, and disassembly, sandboxed by default, with a one-command Markdown/PDF report at the end.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #EXP #Exploit

📦 项目名称: CVE-2026-0163-EXP
👤 项目作者: sentinel-aidefense
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:42:41

📝 项目描述:
CVE-2026-0163 Exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: ssrf
👤 项目作者: nethunterxy
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:40:21

📝 项目描述:
ssrf poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: ICARUS
👤 项目作者: IcarusSec
🛠 开发语言: Java
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:44:30

📝 项目描述:
Enterprise-grade Burp Suite extension for automated API security testing, vulnerability detection, and evidence-based reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-CVE-2026-0300-exploit
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 12:37:16

📝 项目描述:
Palo Alto - CVE-2026-0300 exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2018-7600-Drupalgeddon2-RCE
👤 项目作者: Shams-Ul-Mehmood
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:02:19

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-CVE-2026-56164-exploit
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:30:08

📝 项目描述:
CVE-2026-56164 is a critical missing-authentication vulnerability affecting on-premises Microsoft SharePoint Server. It allows unauthenticated, remote attackers to elevate privileges over a network.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #Shellcode

📦 项目名称: oktos
👤 项目作者: 1y0n
🛠 开发语言: Unknown
Star数量: 15 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-06 07:18:33

📝 项目描述:
Oktos 是一款红队后渗透平台,作为 XRED.TEAM 的一部分。它采用了模块化设计,支持 BOF 动态加载、多信道异步通信与内存免杀,内置的 AI 助手可辅助编排或自动执行后渗透任务,为红队提供隐蔽、高效、智能的作战能力。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: apk-injector-hub-app
👤 项目作者: ammeericcu3243
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:41:00

📝 项目描述:
Inject APK payloads via an HTML-based Telegram mini-app interface for streamlined web injection tasks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-70553-PoC
👤 项目作者: woshidashabi1126
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 14:20:01

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: antivirus-yara-rules
👤 项目作者: soluzka
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-06 14:40:06

📝 项目描述:
fully equip UltraEncabulator AV

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner-
👤 项目作者: veeramanikandan007
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 15:01:56

📝 项目描述:
A modern web vulnerability scanner built with React and FastAPI that automates website crawling, technology detection, security header analysis, and vulnerability assessment with real-time scanning and detailed reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: web-search
👤 项目作者: idefav
🛠 开发语言: TypeScript
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 14:52:08

📝 项目描述:
Self-hosted browser-backed web_search and web_fetch for Codex, Claude Code, OpenCode, Pi, OpenClaw, HermesAgent, LangChain, and custom Agents — MCP + REST with provider fallback and SSRF protection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: cve-to-detection-rule
👤 项目作者: nkoziel
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 15:59:16

📝 项目描述:
Claude Code-driven CVE-to-detection-rule pipeline (demo/enablement artifact) — grounded research, Sigma/YARA/Suricata rule generation, hook-based validation, Obsidian knowledge base

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: Reverse---Shell
👤 项目作者: shyam-hacks
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:00:58

📝 项目描述:
This reverse shell is a lightweight Python script that connects back to a netcat listener, giving the attacker remote command execution on the target machine. It's built for educational use, penetration testing, and understanding C2 (command and control) communication. Includes error handling and clean exit functionality.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: AI-Driven-Zero-Click-Exploit-Deployment-Framework
👤 项目作者: ProjectZeroDays
🛠 开发语言: Python
Star数量: 120 | 🍴 Fork数量: 42
📅 更新时间: 2026-08-06 15:51:20

📝 项目描述:
A state-sponsored APT framework for cyber/counter-espionage featuring AI-driven zero-click supply chain attacks, autonomous exploit deployment, quantum-resistant polymorphic encryption, reverse DoH tunneling with multi-hop proxy chains, and integrated post-exploit modules with SMS/email spoofing capabilities.

🔗 点击访问项目地址