GitHub 红队武器库🚨
13.5K subscribers
20 photos
8 videos
23.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: virustotal
👤 项目作者: api-evangelist
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 01:46:13

📝 项目描述:
VirusTotal — the Google-owned (since 2012) threat intelligence platform that aggregates anti-malware engines and URL scanners to analyse files, URLs, IP addresses, and domains. The v3 API surfaces seven major areas: Access Control, IoC Feeds, IoC Investigation, Private Scanning, Threat Graphs, Threat Landscape & Vulnerability Intelligence, and…

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: stairwell
👤 项目作者: api-evangelist
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 01:37:29

📝 项目描述:
Stairwell is a private-by-design threat intelligence and detection platform that gives security teams a continuously reanalyzed, isolated store of their own files as an alternative to crowdsourced public services like VirusTotal.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-66066
👤 项目作者: shinthink
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 02:52:33

📝 项目描述:
CVE-2026-66066 — KindaRails2Shell: Rails Active Storage/libvips Arbitrary File Read → RCE. MATLAB/HDF5 dual-identity file → SECRET_KEY_BASE theft → forged variation. CVSS 9.5 | Rails < 8.1.3.1

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Advanced-C2-Framework-Suite
👤 项目作者: trussing201323-faradize
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 02:59:54

📝 项目描述:
C2 Frameworks & Post-extensionation – geavanceerde suite voor commando- en controlefuncties en post-extensionatie.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: BAS-Guardian
👤 项目作者: spinfosecurity
🛠 开发语言: Shell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 02:59:36

📝 项目描述:
Free BACnet/BMS vulnerability scanner for building automation systems. Detects CVE-2026-3611 (CVSS 10.0), CVE-2026-24060, and exposed HVAC/BAS controllers via PowerShell or Bash.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Auto-WV
👤 项目作者: Tsuru-chan
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 02:19:17

📝 项目描述:
Automated Web Vulnerability Scanner & Report Generator

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-CVE-2026-58048
👤 项目作者: imbas007
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 03:46:16

📝 项目描述:
CVE-2026-58048 PoC — cPanel root SQL execution via database rename (CVSS 9.4)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-52824
👤 项目作者: AzureADTrent
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 03:43:49

📝 项目描述:
Technical analysis and PoC of CVE-2026-52824: default APP_SECRET in the Kimai Docker image enabling unauthenticated login link forgery. Affects <= 2.57.0, fixed in 2.58.0.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: HkfANkdeAN
👤 项目作者: aqio84skux
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 01:29:09

📝 项目描述:
【Java计算机毕业设计分享】基于Jboss的渗透测试研究平台,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: foRJNfsQUP
👤 项目作者: q015r4obh2
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 01:17:44

📝 项目描述:
【Java计算机毕业设计分享】基于Shiro框架的渗透测试管理系统,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-23479-Redis-UAF-Proof-of-Concept
👤 项目作者: rizlmaulanaa
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 04:52:30

📝 项目描述:
Proof of concept with GDB‑assisted exploitation (educational / lab use only)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #漏洞 #复现

📦 项目名称: pac4j-check
👤 项目作者: xiaoqiMikko
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 03:40:31

📝 项目描述:
Offline scanner for CVE-2026-29000 (CVSS 10.0) in pac4j-jwt — also finds the 4 packages the official advisory does not list. Single 25KB jar, zero dependencies, Java 8+.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #POC

📦 项目名称: Coldcard_BTC_UTXO_Collision
👤 项目作者: coohash
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 04:06:06

📝 项目描述:
Coldcard 冷钱包漏洞 UTXO 穷举碰撞 PoC / High-performance UTXO collision tester.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: dom-based-cross-site-scripting
👤 项目作者: qeeqbox
🛠 开发语言: Unknown
Star数量: 4 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-04 04:13:55

📝 项目描述:
A threat actor may inject malicious content into webapp. The payload is not reflected in the HTTP request and response, then executed in the victim's browser

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: reflected-cross-site-scripting
👤 项目作者: qeeqbox
🛠 开发语言: Unknown
Star数量: 5 | 🍴 Fork数量: 3
📅 更新时间: 2026-08-04 04:13:00

📝 项目描述:
A threat actor may inject malicious content into webapp. The payload is reflected in the HTTP request and response, then executed in the victim's browser

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: aray
👤 项目作者: c2dc
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 04:58:53

📝 项目描述:
Generate benign files that match YARA rules, without handling malware.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: C2Stack
👤 项目作者: Ganron007
🛠 开发语言: Dockerfile
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 05:03:07

📝 项目描述:
Docker-first C2 Framework Training Environment

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: bekxyj-source
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 05:07:21

📝 项目描述:
Python-based vulnerability scanner that detects open ports, identifies common services, and provides basic security recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-63223
👤 项目作者: shinthink
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 05:53:17

📝 项目描述:
CVE-2026-63223 — CI4RCE: CodeIgniter 4 is_image/mime_in File Upload RCE. Magic bytes bypass (getExtension vs getClientExtension). CVSS 9.8 | CWE-434 | CI4 < 4.7.4

🔗 点击访问项目地址