GitHub 红队武器库🚨
14.2K subscribers
26 photos
9 videos
26.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: threatharbor
👤 项目作者: Kassidi-Iliasse
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 13:59:03

📝 项目描述:
CLI web vulnerability scanner: headers, TLS, cookies, redirects, forms, reflected XSS. HTML/JSON reports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: Syscall-Early-Bird-Injection-Trojans
👤 项目作者: Hue-Jhan
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:06:17

📝 项目描述:
Collection of remote shellcode Loaders using Early Bird APC injection, direct/indirect syscalls, ntdll and low level utilities, undetected by Windows Defender and BitDefender

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: Syscall-Apc-Injection-Trojans
👤 项目作者: Hue-Jhan
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:01:23

📝 项目描述:
Collection of remote shellcode Loaders using APCs, direct/indirect syscalls, ntdll and low level utilities, undetected by Windows Defender and BitDefender

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: webapp-vuln-scanner
👤 项目作者: santiagosantofimio
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:01:08

📝 项目描述:
Argus Sentinel: a defensive, non-destructive web application vulnerability scanner (OWASP Top 10 2025).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: mcvs-python-action
👤 项目作者: schubergphilis
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-26 14:22:56

📝 项目描述:
Mission Critical Vulnerability Scanner (MCVS) Python Action. Create Python code without high and critical vulnerabilities.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Inject

📦 项目名称: DFIR-Case-Study
👤 项目作者: jawad9522
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:01:44

📝 项目描述:
This report details a digital forensic investigation of a fileless malware attack initiated by a compromised USB device. The analysis reconstructs a multi-stage execution chain (VBS, BAT, and Python) used to inject shellcode, establish a reverse shell, and stage data for exfiltration.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏扫

📦 项目名称: crackws
👤 项目作者: guaidao2
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 14:52:19

📝 项目描述:
现代的websocket渗透测试工具,本身支持websocket协议漏扫,同时支持websocket协议转http协议。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-61500
👤 项目作者: aramosf
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:32:18

📝 项目描述:
CVE-2026-61500 Rejetto HFS predictable PRNG session forgery to RCE PoC and Docker lab

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: SMAHG-XDR-DFIR
👤 项目作者: AwaisGardezi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:35:52

📝 项目描述:
Enterprise Malware Intelligence, Dynamic Analysis & Digital Forensics platform - sample/case management, sandbox detonation, YARA/ATT&CK/IOC analysis, threat intel, reporting

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: aegis-lens
👤 项目作者: sourabhbeni
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:01:59

📝 项目描述:
Browser extension (MV3) for in-browser SQL injection, reflected XSS, and security-header probing — companion to aegis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: FirmAudit2
👤 项目作者: JiuZero
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 15:39:54

📝 项目描述:
FirmAudit2 — AI Agent firmware vulnerability audit pipeline, from unpacking to a CNVD-ready delivery bundle. | 从解包到 CNVD 交付总包,一条固件漏洞审计流水线:Agent 负责挖,平台负责把关 —— 八段引导、四道结果门、命令级复现,全程可回放、可校验、可交付

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-mobile
👤 项目作者: sudokage-sh
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:06:33

📝 项目描述:
Burp Suite Style Mobile Browser Extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-41089-POC
👤 项目作者: 1posix
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:23:58

📝 项目描述:
CVE-2026-41089 LongLogon: pre-auth CLDAP (UDP/389) stack buffer overflow crasher for unpatched Windows Server 2025 Netlogon (lsass 0xc0000409). Stdlib-only Python PoC + lab write-up.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #EXP

📦 项目名称: exp-5
👤 项目作者: vadthyavathcharanteja
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 16:54:24

📝 项目描述:
devops lab exp 5 jenkins

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-41940-PoC
👤 项目作者: hitechcloud-vietnam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:19:48

📝 项目描述:
A tool for exploiting CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 10.0), allowing unauthenticated attackers to gain root-level WHM access by injecting CRLF sequences into server-side session files via the Authorization header — no credentials required.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: Exploit-Index
👤 项目作者: msdbg
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 17:52:50

📝 项目描述:
Exploit Index provides a searchable, version-wise database of High and Critical CVEs across major enterprise products, with Proof of Concept (PoC) exploit links and CISA Known Exploited Vulnerability (KEV) tracking, for security researchers.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2020-14008
👤 项目作者: raflesiait
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:02:59

📝 项目描述:
CVE-2020-14008 - ManageEngine Applications Manager RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE #Nuclei

📦 项目名称: CVE-2026-63030
👤 项目作者: langz337
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:33:01

📝 项目描述:
无描述

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: CSRF-PoC-Generator
👤 项目作者: KLZer0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 18:45:43

📝 项目描述:
Burp Suite extension for generating CSRF Proof-of-Concepts for educational and authorized security testing.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97163
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:55:27

📝 项目描述:
CVE-2026-97163 PoC: Joomla UP (lomart.fr) unauthenticated GitHub mini-install / remote action deployment (≤6.0.29). Detects plugin version, probes com_ajax install triggers. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97163

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-97161
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-26 20:50:57

📝 项目描述:
CVE-2026-97161 PoC: Joomla UP (lomart.fr) unauthenticated path traversal / arbitrary file read via ajax-view (≤6.0.29). Fingerprints plugin, probes configuration.php. Fix: UP 6.1.0 / 5.2.1. https://pocbit.org/pocs/cve-2026-97161

🔗 点击访问项目地址