GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SentinelScan
👤 项目作者: C0DeR-eng
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 14:00:02

📝 项目描述:
Basic Web Vulnerability Scanner built using Python and Flask.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: cerberus
👤 项目作者: muhammmad-ahmed-dev
🛠 开发语言: HTML
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 14:17:50

📝 项目描述:
Cerberus is an automated vulnerability scanner and security assessment platform featuring deep web crawling, CVE mapping, injection testing (XSS, SQLi, RCE), and professional PDF report generation. Built with a .NET Blazor frontend and isolated Python scan workers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Afrog #POC

📦 项目名称: FrogBrute
👤 项目作者: keiokr
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 12:55:32

📝 项目描述:
蛙暴:一款指纹识别+联动批量登录+联动afrog poc(9000+)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: aarif450.github.io
👤 项目作者: aarif450
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 15:53:38

📝 项目描述:
Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: Zapscape
👤 项目作者: aarif450
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 15:52:25

📝 项目描述:
Guest-to-host KVM/x86 escape exploiting CVE-2026-64561, delivering a full PoC chain and analysis for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #CVE

📦 项目名称: MedFlow
👤 项目作者: SatyaCMD
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:01:43

📝 项目描述:
Enterprise Hospital Management System (HMS) with patient records, appointments, EMR/EHR, billing, pharmacy, lab management, inventory, analytics, secure authentication, and a complete DevOps & DevSecOps pipeline using Docker, Kubernetes, Jenkins, Terraform, and monitoring.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: POC-WP-XSS2Shell-CVE-2026-64638
👤 项目作者: 686f6c61
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:55:16

📝 项目描述:
PoC funcional de CVE-2026-64638 (XSS2Shell): cadena pre-auth XSS a RCE en WordPress Core. Laboratorio Docker + servidor atacante Python + análisis técnico y mitigación.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Mohanlila
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 16:33:15

📝 项目描述:
A simple Python-based Vulnerability Scanner that scans common open ports, checks HTTP security headers, and generates a basic vulnerability report for educational purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #CVE

📦 项目名称: CVE-2026-64638-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 17:04:27

📝 项目描述:
XSS2Shell (CVE-2026-64638) PoC — WordPress pre-auth XSS to RCE chain (authorized testing only)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: nazar-audit
👤 项目作者: misterrodger
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 17:40:59

📝 项目描述:
A modern, security-conscious package vulnerability scanner for the JavaScript ecosystem. Wraps npm/pnpm/yarn audit with exception management, multiple output formats, and fix availability reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: CVE-2025-55182-Advanced-React-Server-Components-RCE-Exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:05:43

📝 项目描述:
Advanced React Server Components RCE scanner for CVE-2025-55182. Features: multi-stage fingerprinting, vulnerability verification, DNS exfiltration, interactive shell, payload obfuscation, and professional reporting (JSON/HTML/PDF). Authorized testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: XSS2Shell
👤 项目作者: wordsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:32:18

📝 项目描述:
Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Apache-Lua-Buffer-Overflow-Exploit-CVE-2021-44790
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 19:00:53

📝 项目描述:
Apache HTTP Server 2.4.x mod_lua Buffer Overflow (CVE-2021-44790) - Advanced exploitation framework with fingerprinting, multi-stage scanning, plugin architecture, professional reporting, screenshot capture, SQLite database, and 95%+ confidence detection. Author: Sudeepa Wanigarathna.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: vsm-xss-poc-test
👤 项目作者: lmacan1
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:41:54

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: pyexec-c2
👤 项目作者: paokuwansui
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 18:15:31

📝 项目描述:
PyExec2 是一个纯标准库的命令与控制(C2)框架,追求rce场景无文件植入、支持加密帧协议、多传输通道(TCP/TLS/HTTPS/DNS)、 socks5 动态代理、端口转发、持久化与自愈。面向授权红队/渗透测试场景。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #插件

📦 项目名称: burp-cn-NoPE
👤 项目作者: keiokr
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 19:41:01

📝 项目描述:
burp插件tcp抓包改包

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Automated-Vulnerability-Scanner
👤 项目作者: abrashiazia
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 19:38:47

📝 项目描述:
This repository hosts the Automated Vulnerability Scanner Dashboard, a Python/Flask web app integrating Nmap, WhatWeb, and Nikto for unified security assessments. It features an automated risk-scoring engine, SQLite-backed scan history, and downloadable PDF security reports, built with a clean, modular architecture.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Docker #POC

📦 项目名称: gestion-pedidos
👤 项目作者: roberthmartinezv
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 20:03:56

📝 项目描述:
PoC: módulo de Gestión de Pedidos de Repuestos B2B (Fanalca) — Java 17 + Spring Boot 3 (Clean Architecture), PostgreSQL 16 + Flyway, Angular 22, Docker Compose

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE

📦 项目名称: log4j-check
👤 项目作者: xiaoqiMikko
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 19:09:56

📝 项目描述:
log4j 2025/2026 年 7 条「配置静默失效」CVE 自查:按 CVE×模块 判定 4 个模块,结构化解析 log4j2 配置做 applicability 降噪,并算出该升到哪个版本才一次到位(6 条写 2.25.4,但有一条要 2.25.5,而它 Dependabot 报不出来)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: panos-captive-portal-rce
👤 项目作者: ridhinva
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 20:05:52

📝 项目描述:
Scanner: CVE-2026-0300 PAN-OS User-ID Captive Portal Buffer Overflow RCE — Python CLI for detecting actively exploited BOF vulnerability in Palo Alto firewalls (CISA KEV 2026-05-13)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-55957-PoC
👤 项目作者: mdvpat
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-07 20:05:32

📝 项目描述:
Reproducible Docker lab for the Apache Tomcat JNDIRealm GSSAPI authentication bypass

🔗 点击访问项目地址