GitHub 红队武器库🚨
14K subscribers
24 photos
9 videos
25.5K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: directory-listing-vulnerability-scanner
👤 项目作者: ashishvegan
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 19:32:40

📝 项目描述:
Directory Listing Vulnerability Scanner - Open Source Project by @ashishvegan

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-1529-Keycloak-Exploit-Tool
👤 项目作者: 0xlyvio
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:54:29

📝 项目描述:
Keycloak: Unauthorized organization registration via improper invitation token validation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-64747
👤 项目作者: eddinos2
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:23:59

📝 项目描述:
Root cause + macOS reachability PoC for CVE-2026-64747 (AppleAVE2 kext buffer overflow, fixed 26.6 / 905.40.1). Fully reversed AppleAVE2UserClient wire protocol, mode-5 LRB overflow math, IOKit PoC driving the configure path.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #CVE

📦 项目名称: CVE-2020-10770-keycloak-exploit-poc
👤 项目作者: 0xlyvio
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:57:43

📝 项目描述:
Keycloak Blind SSRF POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: DVWA-Lab4-XSS-Session
👤 项目作者: jewellerybusinesswomenclub-create
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:01:13

📝 项目描述:
DVWA Lab4: Reflected XSS, Stored XSS, Security Levels

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: defacer
👤 项目作者: HackfutSecRoot
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 20:55:42

📝 项目描述:
defacer tool by hackfut

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Python-RedTeam-C2-Framework
👤 项目作者: Michel-DV
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:45:45

📝 项目描述:
A lightweight Command & Control (C2) architecture implementation in Python. Designed to demonstrate client-server socket communication and remote shell execution for Red Teaming educational purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: yara-rules-malware-detection
👤 项目作者: mhebert-security
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:52:45

📝 项目描述:
YARA rule set for malware detection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malwagon-cli
👤 项目作者: Malwagon
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:46:33

📝 项目描述:
Scan a file for malware from your terminal. Automated malware analysis sandbox CLI with hypervisor-level agentless dynamic analysis, BYOVD kernel driver analysis and AI-assisted reporting. pip install malwagon

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Monitor

📦 项目名称: GTA-6-Steam-Key-Generator-Free-2026
👤 项目作者: arguslacrimalduct7914
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 21:30:04

📝 项目描述:
Generate free GTA 6 Steam keys in 2026 with our working, fast, and secure key generator for Windows.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-73570
👤 项目作者: juanpoch
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 22:58:53

📝 项目描述:
Zimbra Collaboration Suite RCE — SMTP log poisoning → swatchdog → OS Command Injection (CVSS 8.9, CISA KEV)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-28956-jxl-messages-surface
👤 项目作者: eddinos2
🛠 开发语言: Objective-C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 22:53:30

📝 项目描述:
JPEG XL auto-decodes in the iOS Messages preview path — delivery-surface finding for CVE-2026-28956 (AppleJPEGXL), with patch-diff attribution (libjxl 0.10.4->0.10.5) and an honest reliability check on the public PoC.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-27876
👤 项目作者: atiilla
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 23:50:41

📝 项目描述:
Grafana SQL Expressions Arbitrary File Write to RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #DOM

📦 项目名称: svgin-react
👤 项目作者: akhiakl
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-05 22:10:08

📝 项目描述:
Fetch an SVG from a URL and render it as a real, styleable React element, sanitized by default, works in RSC and the browser.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: mybeehome-stored-xss-2025
👤 项目作者: jhonny606
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 00:32:37

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Reflected

📦 项目名称: CVE-2021-3030
👤 项目作者: athosgonzaga
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 00:17:24

📝 项目描述:
Advisory: Cute Editor 6.4 reflected XSS via 'Theme' parameter in colorpicker_more.aspx

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: URZA-C2
👤 项目作者: amulifts
🛠 开发语言: Boo
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 01:32:54

📝 项目描述:
A modular command-and-control framework for red-team operations: a Python C2 engine with a team server, listeners, stagers and pluggable modules, driven from a Django REST API and a Next.js dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: Rasterfall
👤 项目作者: rafabd1
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 01:27:13

📝 项目描述:
Satori-to-librsvg 0day RCE Chain PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Websentry
👤 项目作者: buildwithdipak
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 02:10:40

📝 项目描述:
Mera project ka naam hai WebSentry – Fast Website Vulnerability Scanner. Yeh ek Python-based tool hai jo websites ki security check karta hai aur unme jo vulnerabilities hoti hain unko identify karta hai.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: SSRF-Probe
👤 项目作者: DouglasRao
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 03:17:00

📝 项目描述:
Burp Suite extension for SSRF testing with configurable out-of-band (OOB) callbacks — injects canary payloads into headers, query/body/JSON parameters, and logs every request.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BOLAMatrix-Public-Release
👤 项目作者: Gconfig
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-06 03:19:09

📝 项目描述:
Authorization matrix testing with IDOR detection for Burp Suite

🔗 点击访问项目地址