GitHub 红队武器库🚨
13.6K subscribers
20 photos
9 videos
23.6K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: JavaSecLab
👤 项目作者: sudhaganirohith
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 16:23:02

📝 项目描述:
JavaSecLab is a Java and Spring Boot security lab for testing vulnerabilities like SQL Injection, XSS, SSRF, RCE, and authentication flaws. It demonstrates Core Java, OOP, Spring Security, MySQL, REST APIs, Docker, and secure coding practices.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnfy
👤 项目作者: wreakdev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 17:04:41

📝 项目描述:
Vulnfy is a lightweight, cross-platform dependency and container vulnerability scanner written in Python. It automatically detects project configuration/lock files across multiple languages and ecosystems, queries the OSV API, and generates a structured JSON vulnerability report.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Erickson-project-
👤 项目作者: erick-kenedy
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 16:57:13

📝 项目描述:
Network vulnerability scanner and data protection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #Phishing

📦 项目名称: Web3-Guard
👤 项目作者: taipeitalk
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 14:35:51

📝 项目描述:
一款 Web3 防钓鱼谷歌浏览器插件,用于在 Google 搜索结果中自动标记区块链项目官方域名并预警非官方赞助商广告。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: website-vulnerability-scanner
👤 项目作者: 230081601042-debug
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 17:58:13

📝 项目描述:
Website Vulnerability Scanner using Flask, Python and MongoDB

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: StudyBoard-Stored-XSS-demonstration
👤 项目作者: Mohitrath
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 17:25:20

📝 项目描述:
StudyBoard is a lightweight guestbook-style web application created to demonstrate a Stored Cross-Site Scripting (XSS) vulnerability and its mitigation. Users can submit their name and a study tip. Submitted content is stored in memory and displayed to every visitor who opens the application.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: deepslop
👤 项目作者: badrcoderman
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 18:04:53

📝 项目描述:
DEEPSLOP — PS5 WebKit exploit kit (RCE dashboard): PROBE mode, self-porting offset scanner, LOW_MEM, beacon logging, REPL loader

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: anomaly-ranker-caido
👤 项目作者: aleister1102
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 18:23:43

📝 项目描述:
Caido plugin that ranks HTTP responses by anomaly using a Burp-inspired categorical frequency model.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SentinelScan
👤 项目作者: Roxxhard
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 19:47:17

📝 项目描述:
AI-powered Web Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: BEAR-C2
👤 项目作者: S3N4T0R-0X0
🛠 开发语言: Python
Star数量: 530 | 🍴 Fork数量: 106
📅 更新时间: 2026-08-10 19:59:38

📝 项目描述:
BEAR-C2 is an adversary simulation and emulation framework built around real world TTPs inspired by Russian, Chinese, North Korean, and Iranian APT groups.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: socketsleuth
👤 项目作者: snyk
🛠 开发语言: Java
Star数量: 107 | 🍴 Fork数量: 19
📅 更新时间: 2026-08-10 19:31:21

📝 项目描述:
Burp Extension to add additional functionality for pentesting websocket based applications

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: God-eye
👤 项目作者: g0d150ne
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 20:58:10

📝 项目描述:
Ultimate Vulnerability Scanner - Web + Cloud + Infrastructure 100+ Vulnerability Types • 1100+ Payloads • Full Takeover Capable

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: php-ai-security-scanner
👤 项目作者: BangPiyus
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 20:54:53

📝 项目描述:
AI-powered PHP vulnerability scanner and static security analyzer for detecting SQL injection, XSS, RCE, malware, backdoors, secrets, and insecure code.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #Remote Code Execution

📦 项目名称: CVE-2025-2945
👤 项目作者: g0d150ne
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 20:52:45

📝 项目描述:
Exploit for pgAdmin4 Remote Code Execution (RCE) vulnerability affecting versions 8.10 to 9.1.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: XSS2Shell
👤 项目作者: g0d150ne
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 21:08:48

📝 项目描述:
XSS2Shell ULTIMATE v3.0 is a powerful exploitation tool that chains Cross-Site Scripting (XSS) vulnerabilities in WordPress to achieve Remote Code Execution (RCE). This tool exploits CVE-2026-64638 to gain full control over vulnerable WordPress installations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: WP2Shell
👤 项目作者: g0d150ne
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 21:08:17

📝 项目描述:
WP2Shell is a powerful and modular exploit framework that combines two critical WordPress vulnerabilities (CVE-2026-63030 and CVE-2026-60137) to achieve complete compromise of a target site without any credentials.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #CVE

📦 项目名称: ghostlock-apk
👤 项目作者: oopnv70-lab
🛠 开发语言: Java
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 22:03:42

📝 项目描述:
独立 APK:CVE-2026-43499 GhostLock 提权 + Shizuku shell 身份执行

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: dfir-malware-lab
👤 项目作者: ronankongala
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 22:31:22

📝 项目描述:
DFIR and Malware Analysis Lab - FlareVM, REMnux, Ghidra, CAPA, YARA, Volatility 3

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: iocs
👤 项目作者: ThreatLabz
🛠 开发语言: YARA
Star数量: 79 | 🍴 Fork数量: 16
📅 更新时间: 2026-08-10 22:20:54

📝 项目描述:
This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS

📦 项目名称: Lab-05-Wazuh-XDR-EDR-Deployment
👤 项目作者: Izaiah1996
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 22:12:40

📝 项目描述:
Single-node Wazuh 4.12.0 stack deployed on the management segment of a multi-VLAN home SOC lab, with agents enrolled on a Windows domain controller and workstation, plus a custom MITRE ATT&CK mapped detection rule for LSASS credential dumping.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #利用

📦 项目名称: CVE-2026-9198
👤 项目作者: CuteeCat
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-11 00:55:51

📝 项目描述:
CVE-2026-9198利用代码

🔗 点击访问项目地址