GitHub 红队武器库🚨
13.7K subscribers
21 photos
10 videos
24.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: xss-dom-waf-bypass-lab
👤 项目作者: mohammadjamal18
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 12:44:05

📝 项目描述:
An analytical and interactive security project inspired by concepts studied through the PortSwigger Web Security Academy

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: Sl1verLoader
👤 项目作者: bloggins
🛠 开发语言: C#
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:06:07

📝 项目描述:
AES Shellcode loader for Sliver. EXE and DLL

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: poc-bcr-ssrf
👤 项目作者: Tednoob17
🛠 开发语言: Starlark
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:14:21

📝 项目描述:
SSRF PoC for BCR

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: funnypot
👤 项目作者: bobbymaher
🛠 开发语言: PHP
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:57:04

📝 项目描述:
A PHP honeypot powered by nuclei templates

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: xia-sql-2open
👤 项目作者: mhszed
🛠 开发语言: Java
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-18 13:40:24

📝 项目描述:
Burp SQLi plugin | Secondary development of xia‑sql3.3, four‑quote parity rule, order‑by probe, referer header injection test, distinguish database error & application type‑convert exception.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44578
👤 项目作者: lxxexxbxx
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:47:15

📝 项目描述:
CVE-2026-44578 PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: ferrous
👤 项目作者: 0x3xp
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:51:36

📝 项目描述:
Enterprise-grade adversary simulation and security research framework and C2 for Windows environments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Secrets-Dependency-Vulnerability-Scanner
👤 项目作者: StefanTsonev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:52:32

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response

📦 项目名称: writeups-
👤 项目作者: thedetectlab
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:57:36

📝 项目描述:
Longer-form writeups behind the cheat sheets — how a SQL injection actually breaks a query, what Wireshark shows you in a TCP handshake, how ARP spoofing turns a network against itself.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: NovaShyld-Task_4-
👤 项目作者: Reddy-hub-com
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:53:00

📝 项目描述:
Web Application Security Testing using Burp Suite and DVWA, covering SQL Injection, Command Injection, Reflected XSS, Stored XSS, proof-of-concept evidence, and remediation recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #漏洞

📦 项目名称: SafeRedirect
👤 项目作者: tjsky
🛠 开发语言: PHP
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:08:36

📝 项目描述:
安全的PHP外链跳转页面:AES加密解密、SSRF防御、Referer防盗链、XSS防御、倒计时过渡

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: cve-2026-15748
👤 项目作者: yora1928
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:01:52

📝 项目描述:
CVE-2026-15748 - Unauthenticated RCE exploit for WordPress Forminator plugin (≤1.56.1). Automated detection, deep crawl, nonce extraction, and safe upload test. For authorized testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19500-poc
👤 项目作者: typedefabcd1234ntd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:35:13

📝 项目描述:
CVE-2026-19500 poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19501-poc
👤 项目作者: typedefabcd1234ntd
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:33:14

📝 项目描述:
CVE-2026-19501 poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Weblogic #CVE #POC

📦 项目名称: CVE-2020-14882-WebLogic-Analysis
👤 项目作者: VelesSecurity
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:55:59

📝 项目描述:
Technical analysis and clean Java Thread Echo PoC for Oracle WebLogic Server vulnerability chain.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-assesment-tool
👤 项目作者: Deviyakhatri
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:53:55

📝 项目描述:
Automated Nmap, Nikto, Nuclei scanner with gemini 3.6 Flash AI reporting

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner_web
👤 项目作者: Krishna10H
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:48:04

📝 项目描述:
Secure your web applications directly within your existing development workflow with our advanced vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: system-design-09-web-crawler
👤 项目作者: estelledc
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:59:37

📝 项目描述:
Crash-recoverable, polite, SSRF-aware web crawler design practice

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ghostsurrrfs
👤 项目作者: gh0stsh3ll56
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-18 15:58:12

📝 项目描述:
GhostSSRF is a comprehensive, enterprise-grade SSRF testing framework designed for professional penetration testers and security researchers. It automates the complete SSRF exploitation lifecycle from discovery to exploitation, with support for advanced bypass techniques, open redirect chains, and automated attack path generation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #EDR #Sandbox

📦 项目名称: Build-And-Bypass-EDR
👤 项目作者: 44yyyy
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 16:03:55

📝 项目描述:
A C++ (x86) cybersecurity sandbox investigating user-mode API hooking, dynamic memory evasion techniques, and static binary analysis with Ghidra.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: MS17-010-EternalBlue-Command-Exploitation
👤 项目作者: VelesSecurity
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 16:58:33

📝 项目描述:
无描述

🔗 点击访问项目地址