GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: xss-reflected
👤 项目作者: picoclone
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 10:52:19

📝 项目描述:
picoclone CTF challenge: Reflected XSS (web · easy)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf-gateway
👤 项目作者: picoclone
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 10:50:37

📝 项目描述:
picoclone CTF challenge: SSRF Safari (web · hard)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: XSSDense
👤 项目作者: LeoMonrroy266
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 11:49:51

📝 项目描述:
Reconstructing electron densities from X-ray solution scattering data using a Variational Autoencoder

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-64564
👤 项目作者: HackSpeak
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 12:49:58

📝 项目描述:
SCTPhantom (CVE-2026-64564) SCTP ASCONF DEL-IP UAF LPE PoC (Debian 13 6.12.95) — community PoC mirror, MIT; for authorized security testing

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #弱口令 #爆破 #口令

📦 项目名称: weblogic-
👤 项目作者: Brave145142
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 12:29:51

📝 项目描述:
weblogic弱口令爆破脚本,后续会一直更新,才最初版本

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cli-vulnerability-scanner
👤 项目作者: Dev-coder-47
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 14:05:25

📝 项目描述:
Basic CLI-based vulnerability scanner built with Python that checks common open ports, missing HTTP security headers, and exposed server information, while providing basic security recommendations. Designed for learning and authorized local testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SentinelScan
👤 项目作者: C0DeR-eng
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 14:00:02

📝 项目描述:
Basic Web Vulnerability Scanner built using Python and Flask.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: cerberus
👤 项目作者: muhammmad-ahmed-dev
🛠 开发语言: HTML
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 14:17:50

📝 项目描述:
Cerberus is an automated vulnerability scanner and security assessment platform featuring deep web crawling, CVE mapping, injection testing (XSS, SQLi, RCE), and professional PDF report generation. Built with a .NET Blazor frontend and isolated Python scan workers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Afrog #POC

📦 项目名称: FrogBrute
👤 项目作者: keiokr
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 12:55:32

📝 项目描述:
蛙暴:一款指纹识别+联动批量登录+联动afrog poc(9000+)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: aarif450.github.io
👤 项目作者: aarif450
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 15:53:38

📝 项目描述:
Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: Zapscape
👤 项目作者: aarif450
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 15:52:25

📝 项目描述:
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #CVE

📦 项目名称: MedFlow
👤 项目作者: SatyaCMD
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:01:43

📝 项目描述:
Enterprise Hospital Management System (HMS) with patient records, appointments, EMR/EHR, billing, pharmacy, lab management, inventory, analytics, secure authentication, and a complete DevOps & DevSecOps pipeline using Docker, Kubernetes, Jenkins, Terraform, and monitoring.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: POC-WP-XSS2Shell-CVE-2026-64638
👤 项目作者: 686f6c61
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:55:16

📝 项目描述:
PoC funcional de CVE-2026-64638 (XSS2Shell): cadena pre-auth XSS a RCE en WordPress Core. Laboratorio Docker + servidor atacante Python + análisis técnico y mitigación.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Mohanlila
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:33:15

📝 项目描述:
A simple Python-based Vulnerability Scanner that scans common open ports, checks HTTP security headers, and generates a basic vulnerability report for educational purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #CVE

📦 项目名称: CVE-2026-64638-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 17:04:27

📝 项目描述:
XSS2Shell (CVE-2026-64638) PoC — WordPress pre-auth XSS to RCE chain (authorized testing only)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: nazar-audit
👤 项目作者: misterrodger
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 17:40:59

📝 项目描述:
A modern, security-conscious package vulnerability scanner for the JavaScript ecosystem. Wraps npm/pnpm/yarn audit with exception management, multiple output formats, and fix availability reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: CVE-2025-55182-Advanced-React-Server-Components-RCE-Exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:05:43

📝 项目描述:
Advanced React Server Components RCE scanner for CVE-2025-55182. Features: multi-stage fingerprinting, vulnerability verification, DNS exfiltration, interactive shell, payload obfuscation, and professional reporting (JSON/HTML/PDF). Authorized testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: XSS2Shell
👤 项目作者: wordsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:32:18

📝 项目描述:
Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 19:00:53

📝 项目描述:
Apache HTTP Server 2.4.x mod_lua Buffer Overflow (CVE-2021-44790) - Advanced exploitation framework with fingerprinting, multi-stage scanning, plugin architecture, professional reporting, screenshot capture, SQLite database, and 95%+ confidence detection. Author: Sudeepa Wanigarathna.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: vsm-xss-poc-test
👤 项目作者: lmacan1
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:41:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: pyexec-c2
👤 项目作者: paokuwansui
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:15:31

📝 项目描述:
PyExec2 是一个纯标准库的命令与控制(C2)框架,追求rce场景无文件植入、支持加密帧协议、多传输通道(TCP/TLS/HTTPS/DNS)、 socks5 动态代理、端口转发、持久化与自愈。面向授权红队/渗透测试场景。

🔗 点击访问项目地址