GitHub 红队武器库🚨
13.6K subscribers
20 photos
8 videos
23.4K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ahm-web-scanner
👤 项目作者: ahmed-web229
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 03:55:04

📝 项目描述:
Automated Web Application Vulnerability Scanner with Multithreading, YAML Templates, Security Headers Audit, and PDF Report Generation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: reverse-puncture-machine
👤 项目作者: wukongmazi
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 03:40:32

📝 项目描述:
一个专治运营人「PRD 写得挺顺,上线才发现是坑」的背锅体质。粘贴规则文本,一键生成结构化排雷报告。羊毛党红点预警:像羊毛党一样思考,把可被机器刷量、用户套利的漏洞逐条揪出来,按风险等级排序。用户歧义大赏:以「小白视角」重写规则并与原版逐条对比,高亮那些注定被误解的措辞。客诉预演:提前模拟评论区最犀利的三条吐槽,并附上应对话术。角色扮演扫描:AI 分饰「最坏的用户」与「最杠的客服」,从攻防两端输出完整排雷报告。所有风险按严重/中等/轻微三级标注,每条都配可直接落地的修改建议。界面精致、零代码部署,支持自带密钥真实扫描、一键导出 PDF。让隐藏风险在上线前,先被 AI 挑个够。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: webhook-delivery-service
👤 项目作者: sidyn4444
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 00:26:21

📝 项目描述:
Distributed webhook delivery service in Java 21 / Spring Boot 3. At-least-once delivery with a Redis reliable queue, jittered exponential-backoff retries, dead-letter queue, HMAC-SHA256 signing, and SSRF-hardened ingest.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: engineering-patterns
👤 项目作者: cryptothud
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-08 23:54:38

📝 项目描述:
Reference implementations of the patterns I rely on in production: Solana transaction sending and confirmation, SSRF-safe URL handling, and environment/secret loading.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: avirupdewanji75-sudo
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 04:50:05

📝 项目描述:
A simple Python-based Vulnerability Scanner that detects common open ports, identifies basic security risks, and generates a vulnerability report. This mini project helps beginners understand network scanning and vulnerability assessment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #扩展 #Extension

📦 项目名称: burp-decrypt-tab
👤 项目作者: zhaguiya
🛠 开发语言: Java
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 03:10:06

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: quietvault-agent-hijack
👤 项目作者: yankywilson
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 05:49:41

📝 项目描述:
Analysis of QUIETVAULT (nx/s1ngularity, Aug 2025) — malware that hijacks the victim's own AI coding agents to find their secrets. Validated YARA/Sigma/KQL, a detonation harness, and evidence that 6 of 8 commercial sandbox runs never executed the sample.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Xray #CVE

📦 项目名称: AegisPanel
👤 项目作者: QAdversif
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 06:04:35

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSTI #RCE

📦 项目名称: fmfuzz_tool
👤 项目作者: Mr-xn
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 06:36:29

📝 项目描述:
freemarker SSTI 命令执行/混淆/文件写入,以及jmreport组件利用payload生成

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: XSS2Shell
👤 项目作者: Ahmall-sec
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 07:04:46

📝 项目描述:
XSS2Shell ULTIMATE v3.0** is a powerful exploitation tool that chains **Cross-Site Scripting (XSS)** vulnerabilities in **WordPress** to achieve **Remote Code Execution (RCE)**. This tool exploits CVE-2026-64638 to gain full control over vulnerable WordPress installations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Command and Control

📦 项目名称: Case-02-Lumma-In-The-Room-Ah
👤 项目作者: AustinWaldron
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 07:03:36

📝 项目描述:
Triage and forensic analysis of a high-severity network alert indicating a Lumma Stealer infection. This investigation covers identifying the compromised internal asset, mapping its Active Directory user identity properties via network protocols, and extracting malicious Command and Control (C2) indicators.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE #POC

📦 项目名称: log4j-shell-poc
👤 项目作者: Jiahong-Guan
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 07:05:50

📝 项目描述:
A Proof-Of-Concept for the CVE-2021-44228 vulnerability.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: exploit
👤 项目作者: roshanrazz
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 09:03:15

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #复现

📦 项目名称: AutoSRC-AISkill
👤 项目作者: Chenggaorui
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 09:25:58

📝 项目描述:
全自动SRC漏洞挖掘AI-Skill一体化技能包,整合主流开源资产搜集、漏洞扫描、AI 误报过滤、自动取证、漏洞报告生成工具链,面向零基础安全新手打造轻量化全自动 SRC 漏洞挖掘一体化技能包。内置子域名探测、目录爆破、漏洞批量扫描、AI 智能筛报、漏洞截图复现、SRC 标准化报告一键生成全流程自动化脚本,适配 Windows、Kali、Docker 云服务器多端部署,附带保姆级落地教程,仅可用于厂商公开授权范围内的安全测试。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #威胁情报 #IOC #溯源

📦 项目名称: AgentCTI
👤 项目作者: lwt555
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 07:59:19

📝 项目描述:
面向不可信网络威胁情报的多智能体协作分析平台

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: Waystone
👤 项目作者: Star-233
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 08:57:33

📝 项目描述:
通用问题求解引擎(oritera/Cairn 的 AGPL-3.0 修改版):黑板架构 + 事实-意图图谱,AI 渗透测试验证领域

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: RedSun-
👤 项目作者: s4m98
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 11:27:48

📝 项目描述:
Windwos Zero Day Local PrivESc Exploit (CVE-2026-41091)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Kunal-CodeLab
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 11:41:50

📝 项目描述:
Developed a security platform using Python (Flask) that detects 14+ web vulnerabilities (including SQL Injection, XSS, CSRF, and SSL/TLS issues). Features a real-time responsive dashboard, JWT-based authentication, scan history tracking, risk assessment, and downloadable PDF security reports.

🔗 点击访问项目地址
Forwarded from 广告赞助
🔥 【全新升级】墙势汹汹,大批机场已阵亡?网络软了,试试 ZTNET 魔法防封! 🛡️🚀

最近大量节点集体断连?别慌!ZTNET 采用自研独家自愈协议,专门治愈各种“失联”焦虑,让你稳如泰山,直接起飞!🔥💦

魔法防封 - 独家混淆技术,无视封锁,大封锁期也丝滑
4K 看片极速 - 拒绝转圈,深夜高清必备,资源秒加载
AI 生产力全开 - 稳定直通 ChatGPT/Claude/Midjourney
全线加速 - TG/X/IG 瞬间刷新,彻底告别“连接中...”

🚀 全新升级 v1.2.0 定制客户端:一键登录,无需配置,老司机的避风港!

👉 【全平台最新 App 下载】
💻 Windows:安装包下载 | 便携版(Zip)
🍏 Mac (M系列):点击下载
🍎 Mac (Intel):点击下载
🤖 Android:点击下载

【 避难入口:点击注册,永不失联 🚀

别人在抓狂,你在起飞!这波稳了,兄弟们速来体验“魔法”! 😈
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: CHAITHANYAHEGDE
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 12:53:36

📝 项目描述:
Scoped Python web security scanner for detecting common OWASP-aligned vulnerabilities in controlled environments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-method-analyzer
👤 项目作者: EslamMonex
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-09 12:18:38

📝 项目描述:
无描述

🔗 点击访问项目地址