GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-70553-PoC
👤 项目作者: woshidashabi1126
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 14:20:01

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: antivirus-yara-rules
👤 项目作者: soluzka
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-06 14:40:06

📝 项目描述:
fully equip UltraEncabulator AV

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner-
👤 项目作者: veeramanikandan007
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 15:01:56

📝 项目描述:
A modern web vulnerability scanner built with React and FastAPI that automates website crawling, technology detection, security header analysis, and vulnerability assessment with real-time scanning and detailed reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: web-search
👤 项目作者: idefav
🛠 开发语言: TypeScript
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 14:52:08

📝 项目描述:
Self-hosted browser-backed web_search and web_fetch for Codex, Claude Code, OpenCode, Pi, OpenClaw, HermesAgent, LangChain, and custom Agents — MCP + REST with provider fallback and SSRF protection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: cve-to-detection-rule
👤 项目作者: nkoziel
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 15:59:16

📝 项目描述:
Claude Code-driven CVE-to-detection-rule pipeline (demo/enablement artifact) — grounded research, Sigma/YARA/Suricata rule generation, hook-based validation, Obsidian knowledge base

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: Reverse---Shell
👤 项目作者: shyam-hacks
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:00:58

📝 项目描述:
This reverse shell is a lightweight Python script that connects back to a netcat listener, giving the attacker remote command execution on the target machine. It's built for educational use, penetration testing, and understanding C2 (command and control) communication. Includes error handling and clean exit functionality.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: AI-Driven-Zero-Click-Exploit-Deployment-Framework
👤 项目作者: ProjectZeroDays
🛠 开发语言: Python
Star数量: 120 | 🍴 Fork数量: 42
📅 更新时间: 2026-08-06 15:51:20

📝 项目描述:
A state-sponsored APT framework for cyber/counter-espionage featuring AI-driven zero-click supply chain attacks, autonomous exploit deployment, quantum-resistant polymorphic encryption, reverse DoH tunneling with multi-hop proxy chains, and integrated post-exploit modules with SMS/email spoofing capabilities.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #MFA

📦 项目名称: SCATTERED-INVOICE
👤 项目作者: 92UKRHUYCOEV
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:01:49

📝 项目描述:
This project required the built-in of high-confidence detections in Microsoft Sentinel using KQL, focusing on identity security and reducing false positives. This project targets MFA bypass and correlates signals like impossible travel and abnormal access patterns to detect real-world attacks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #EDR #AMSI

📦 项目名称: amsi-bypass-generator-2026
👤 项目作者: sam-walkerty125
🛠 开发语言: HTML
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 15:55:52

📝 项目描述:
AMSI Bypass Generator v2026 is a PowerShell snippet generator for security testing, helping assess Defender and EDR detection behavior in controlled lab environments through configurable AMSI-focused test snippets.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XXE #CVE

📦 项目名称: secMONSTER
👤 项目作者: sylhetyhackvenger
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:33:16

📝 项目描述:
secMONSTER performs 150+ security tests including XSS, SQLi, RCE, SSRF, LFI, SSTI, XXE, NoSQL, CMDi, CRLF, open redirect, JWT attacks, OAuth/SAML bypass, cloud metadata (AWS/GCP/Azure), container escape, Kubernetes, WebSocket, HTTP/2, DNS rebinding, QUIC, API/GraphQL, AI prompt injection, Web3/DeFi, and comprehensive vulnerability exploitation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: CloudPeeker
👤 项目作者: Lednerb
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:41:25

📝 项目描述:
Fast and customized vulnerability scanner for the «ownCloud Nextcloud Unprotected Data Directory» vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vuln-scanner
👤 项目作者: VivekDasare
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:42:14

📝 项目描述:
Python network vulnerability scanner with service detection and vulnerability reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shiro #CVE

📦 项目名称: shiro-check
👤 项目作者: xiaoqiMikko
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:59:04

📝 项目描述:
扫出你实际装的 Apache Shiro 模块与版本,逐条判定官方 26 条 CVE 里哪些真的落在你身上。按「CVE × 模块」判定,零依赖单 jar。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Kiswin
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 17:26:09

📝 项目描述:
Python-based vulnerability scanner that checks common open ports, analyzes HTTP security headers, identifies exposed server banners, and generates a basic vulnerability report for educational and authorized security assessment purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: CCS-Security-Analysis-Lab
👤 项目作者: ekeleu
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 17:50:34

📝 项目描述:
Lightweight cybersecurity malware triage and security analysis laboratory using Ubuntu, YARA, Python and open-source security tools.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE #JNDI

📦 项目名称: log4noshell
👤 项目作者: winnpixie
🛠 开发语言: Java
Star数量: 5 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-06 18:36:52

📝 项目描述:
A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #POC

📦 项目名称: jenkins-pipeline-poc
👤 项目作者: acejosephgcp2026-boop
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 19:56:06

📝 项目描述:
Jenkins first automation project

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: advanced-web-vulnerability-scanner
👤 项目作者: Gregory1111-spec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 19:28:42

📝 项目描述:
Advanced Web Vulnerability Scanner is a modular, extensible Python project designed for educational and defensive security purposes. It combines a custom intelligent crawler, passive and active security checks, and OWASP ZAP API integration to provide a comprehensive assessment of web applications.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: lopata
👤 项目作者: Hrasvx
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 19:49:46

📝 项目描述:
Defensive web-application vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: turbo-intruder
👤 项目作者: PortSwigger
🛠 开发语言: Kotlin
Star数量: 1786 | 🍴 Fork数量: 237
📅 更新时间: 2026-08-06 19:42:33

📝 项目描述:
Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.

🔗 点击访问项目地址