GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.3K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: YAREX
👤 项目作者: hbourget
🛠 开发语言: PowerShell
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 22:27:28

📝 项目描述:
🦠 YARA scans, easy & optimized. Full pipeline from fetching latest rules to extracting flagged artifacts for deeper analysis. Windows & GNU/Linux.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: onetwoseven-writeup
👤 项目作者: dopaminauta
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 23:14:38

📝 项目描述:
HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #CVE

📦 项目名称: lockvet
👤 项目作者: matteo-sung
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 00:59:50

📝 项目描述:
Explain any lockfile change before you merge it — bumps, breaking jumps, new vulns, release ages & deprecations across 30 lockfile formats + SBOMs. CLI, GitHub Action, browser playground, and MCP server so AI assistants can vet PRs too.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #取证

📦 项目名称: mobile-forensics
👤 项目作者: SecLeap
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 01:48:17

📝 项目描述:
覆盖移动端应急响应、溯源分析、证据提取和取证研究

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-70559-PoC
👤 项目作者: codeb0ssx
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 02:58:32

📝 项目描述:
CVE-2026-70559

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-awesome-tls
👤 项目作者: Robin528919
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 02:56:21

📝 项目描述:
Burp extension for per-domain TLS fingerprint spoofing. Evade WAF fingerprinting across Proxy, Repeater, Intruder and Scanner.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44613
👤 项目作者: HORKimhab
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 04:42:30

📝 项目描述:
CVE-2026-44613

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: GURUMAHESHP
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 04:58:35

📝 项目描述:
A Python-based Vulnerability Scanner with GUI that scans open ports, grabs banners, detects software versions, checks vulnerabilities, and generates reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #靶场

📦 项目名称: webshell-client
👤 项目作者: xy200303
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 04:23:08

📝 项目描述:
一个轻量的 PHP 一句话 Webshell 连接与管理工具,纯 Python 标准库实现,无需安装任何依赖。 面向授权渗透测试与靶场研究场景,除基础的命令执行 / 文件传输外,内置 PHP-FPM bypass 能力:在目标 disable_functions 禁掉全部命令执行函数时,通过直连本机 FPM socket 加载恶意扩展实现绕过

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fscan #内网

📦 项目名称: neiwang_fscan
👤 项目作者: keiokr
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 05:45:58

📝 项目描述:
内网资产信息收集

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates #CVE

📦 项目名称: vacti-os
👤 项目作者: anggipradana
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 05:12:34

📝 项目描述:
Self-hosted Vulnerability Assessment and Cyber Threat Intelligence platform: recon/VA (nuclei, httpx, naabu, subfinder), passive recon and exposure, threat intel, and leak checking. TypeScript, Next.js + worker + Postgres.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #UAC

📦 项目名称: TryHackMe-Boogeyman-3
👤 项目作者: AlanKxyz
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 07:03:05

📝 项目描述:
Enterprise DFIR investigation involving phishing, persistence, UAC bypass, credential dumping, lateral movement and ransomware activity using Elastic SIEM.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #RCE #Exploit

📦 项目名称: agent
👤 项目作者: defensia
🛠 开发语言: Go
Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-07 07:04:49

📝 项目描述:
Lightweight security agent for Linux servers — SSH brute force, WAF, bot detection, Docker/Kubernetes native. Deploy via curl, Docker, Helm.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-39987
👤 项目作者: alreadyClosed
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 07:34:35

📝 项目描述:
CVE-2026-39987 for marimo 0.20.4 PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-awesome-tls-plus
👤 项目作者: Robin528919
🛠 开发语言: Java
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 07:58:47

📝 项目描述:
burp-awesome-tls-plus: Burp Suite TLS fingerprint spoofing (JA3/JA4/ClientHello) with per-domain rules. Covers Proxy, Repeater, Intruder, Scanner. Fork of sleeyax/burp-awesome-tls.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Stored-xss
👤 项目作者: kwonchan07
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 09:00:42

📝 项目描述:
Stored-xss 문제 만들기

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf-safe-fetch
👤 项目作者: owner-stack
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 08:07:07

📝 项目描述:
Zero-dependency SSRF-hardened fetch for Node: blocks private networks, cloud metadata, and DNS-rebinding redirects. 114 tests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: SnapDramas-Burp
👤 项目作者: cahsun147
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 08:16:10

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #EXP

📦 项目名称: windows-exp
👤 项目作者: keiokr
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 09:29:38

📝 项目描述:
windows提权exp

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Command and Control

📦 项目名称: Long-Live-The-Empire
👤 项目作者: BC-SECURITY
🛠 开发语言: Unknown
Star数量: 110 | 🍴 Fork数量: 8
📅 更新时间: 2026-08-07 09:58:24

📝 项目描述:
A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing on the open-source Empire C2 framework.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp-Verb-Tamper
👤 项目作者: MeysamIO
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 10:05:08

📝 项目描述:
Burp Suite extension for HTTP verb tampering testing using Montoya API.

🔗 点击访问项目地址