GitHub 红队武器库🚨
13.6K subscribers
20 photos
9 videos
23.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: SliverC2-Evasion-Suite-swzhouu
👤 项目作者: swzhouu
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 08:06:08

📝 项目描述:
Modified four-kit defense evasion suite for Sliver C2: Crystal Palace loader, sleep masking, in-memory PE execution, and remote process injection with PPID spoofing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #Sandbox

📦 项目名称: W0lfSword
👤 项目作者: kaffeindecaf
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 08:07:31

📝 项目描述:
iOS Kernel Exploit Toolkit | DarkSword Engine, Sandbox escape, SSV bypass, multi-app support. iOS 17.0–26.0.1.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: Threat-Lens
👤 项目作者: AhmedELNajjar-dev
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 08:41:51

📝 项目描述:
Automated Malware Intelligence Pipeline powered by LangGraph & Groq AI. Perform static analysis, YARA scanning, string extraction, and VirusTotal lookups with a single click.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #CVE

📦 项目名称: CVE-2017-7921-Research-Toolkit
👤 项目作者: Wyl-cmd
🛠 开发语言: Python
Star数量: 5 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-10 08:21:55

📝 项目描述:
用于借助FOFA快速测试海康威视的CVE-2017-7921漏洞,并且给出登陆账号和密码,并输出json文件。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE #RCE

📦 项目名称: CVE-2026-23744-MCPJam-Inspector-Unauthenticated-RCE-Proof-of-Concept
👤 项目作者: amao26
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 09:07:17

📝 项目描述:
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload to execute arbitrary commands, granting a reverse shell with PTY.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-23744-PoC
👤 项目作者: amao26
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 09:53:23

📝 项目描述:
CVE-2026-23744 is an unauthenticated command injection in MCPJam Inspector ≤1.4.2 via /api/mcp/connect. This POC exploits it by sending a crafted JSON payload to execute arbitrary commands, granting a reverse shell with PTY.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fscan #内网 #漏洞 #POC

📦 项目名称: fscan-toolkit
👤 项目作者: chu0119
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 00:26:29

📝 项目描述:
fscan 图形化管理工具套件 — 命令生成器 + 报告解析器,零依赖纯静态 HTML

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpMCP-Mobile-Integration
👤 项目作者: muhammedikbalyildiz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:03:51

📝 项目描述:
Burp MCP Mobile is a Flutter-based application that allows you to control Burp MCP Server configurations and real-time request permissions from a mobile interface.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: ASTra-AST-Driven-JS-API-Extractor
👤 项目作者: rebornindishell
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 09:42:41

📝 项目描述:
ASTra is an AST-driven Burp Suite extension and reverse-engineering framework that parses minified client-side JavaScript bundles to extract API routes, POST/PUT payload shapes, BOLA targets, client-side secrets, and feature flags.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #漏洞

📦 项目名称: GhostLock-GOT-W29
👤 项目作者: zzzxxxxxxxxxx
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:54:59

📝 项目描述:
CVE-2026-43499 (GhostLock) research on HUAWEI MatePad Pro 11 GOT-W29

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-9086-poc
👤 项目作者: Saku0512
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:19:31

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: endgame-community-plugins
👤 项目作者: endgamec2framework
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:58:48

📝 项目描述:
Community plugins for ENDGAME C2

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: PAYLAOD_SQLi_XSS
👤 项目作者: MUHAMMAD-HASEEB368
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:58:51

📝 项目描述:
PayloaderX is an automated web vulnerability scanner with BFS crawling, tech fingerprinting, and false-positive-resistant SQL Injection & Reflected XSS detection via differential baseline analysis. Multi-threaded for speed, it auto-generates CVSS v3.1 scored, CWE-mapped reports for authorized security assessments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: guardrail
👤 项目作者: Eragon1x2
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:47:37

📝 项目描述:
🛡️ DevSecOps API Vulnerability Scanner — real-time BOLA, XSS, JWT, Prompt Injection scanning via WebSockets. FastAPI + React.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-graphql
👤 项目作者: cansidee
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 10:27:03

📝 项目描述:
Burp Suite extension (Montoya API) — GraphQL schema introspection, operation tree, auto-generated queries, Repeater integration

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: find-nuclei.github.io
👤 项目作者: Find-Nuclei
🛠 开发语言: HTML
Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-10 10:32:42

📝 项目描述:
Browser-based OME-ZARR microscopy viewer. Open local files, annotate, overlay segmentation labels, share deep links. GPU-accelerated, privacy-first, zero-install.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #POC

📦 项目名称: AI-Test-Design-POC
👤 项目作者: jayadevmurkal
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 11:43:56

📝 项目描述:
AI-assisted Selenium framework generator built with Java, Maven, TestNG, Extent Reports, Apache POI, Log4j, and GitHub.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: .github
👤 项目作者: Acunetix-Scanner
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 11:29:39

📝 项目描述:
Download Acunetix scanner to help secure websites with automated crawling, vulnerability checks, clear reports, and workflow-friendly guidance for teams. Built for security testing across modern web apps, Acunetix web vulnerability scanner supports faster risk discovery, validation, and remediation planning.

🔗 点击访问项目地址
Forwarded from 广告赞助
🔥 【全新升级】墙势汹汹,大批机场已阵亡?网络软了,试试 ZTNET 魔法防封! 🛡️🚀

最近大量节点集体断连?别慌!ZTNET 采用自研独家自愈协议,专门治愈各种“失联”焦虑,让你稳如泰山,直接起飞!🔥💦

魔法防封 - 独家混淆技术,无视封锁,大封锁期也丝滑
4K 看片极速 - 拒绝转圈,深夜高清必备,资源秒加载
AI 生产力全开 - 稳定直通 ChatGPT/Claude/Midjourney
全线加速 - TG/X/IG 瞬间刷新,彻底告别“连接中...”

🚀 全新升级 v1.2.0 定制客户端:一键登录,无需配置,老司机的避风港!

👉 【全平台最新 App 下载】
💻 Windows:安装包下载 | 便携版(Zip)
🍏 Mac (M系列):点击下载
🍎 Mac (Intel):点击下载
🤖 Android:点击下载

【 避难入口:点击注册,永不失联 🚀

别人在抓狂,你在起飞!这波稳了,兄弟们速来体验“魔法”! 😈
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: GhostLock-Galaxy
👤 项目作者: wxxsfxyzm
🛠 开发语言: C
Star数量: 11 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-10 12:40:02

📝 项目描述:
Root your Galaxy using CVE-2026-43499

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-64824-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 12:22:26

📝 项目描述:
CVE-2026-64824 — Home Assistant backup-restore symlink path traversal → root RCE. First working PoC, verified on real HA 2026.5.4 (sitecustomize.py overwrite). GHSA-cwh8-w64c-4j5h

🔗 点击访问项目地址