GitHub 红队武器库🚨
14.3K subscribers
25 photos
11 videos
27.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: incodevision-vulnerability-scanner
👤 项目作者: gchsjs7-hue
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 07:01:03

📝 项目描述:
Basic vulnerability scanner developed for the IncodeVision Cyber Security Internship – Task 1.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Jai-Akash
👤 项目作者: jaiakash678
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 07:09:04

📝 项目描述:
web vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #渗透 #recon

📦 项目名称: jsowl
👤 项目作者: youmulijiang
🛠 开发语言: Go
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 07:51:03

📝 项目描述:
JsOwl —— Go 编写的 Web 安全信息收集利器。集 JavaScript 信息收集、API 端点提取、敏感信息扫描、攻击面梳理 于一体,同时提供 CLI 工具与 Go 库。内置 direct / browser / auto 三种采集模式,兼容 HaE 规则,支持登录态扫描、运行时交互、AI 辅助分析与 MCP Server,输出 JSON 与交互式 HTML 报告,是渗透测试、红队信息收集与 Web 安全测试的高效自动化方案。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates #POC #CVE

📦 项目名称: CVE-Exploits
👤 项目作者: Mehran-Seifalinia
🛠 开发语言: Python
⭐ Star数量: 3 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-04 07:21:04

📝 项目描述:
🔫 CVE-Exploits: A curated collection of Proof-of-Concept (PoC) exploits for various CVEs, organized by year. Includes Python scripts, Nuclei templates, and documentation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Unauthorize
👤 项目作者: rahulkadavil
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 08:14:23

📝 项目描述:
Burp Suite extension to help identify unauthenticated access / broken access control issues

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: crawler
👤 项目作者: hmza-hb
🛠 开发语言: Go
⭐ Star数量: 4 | 🍴 Fork数量: 2
📅 更新时间: 2026-10-04 08:58:47

📝 项目描述:
A restart-safe, polite web crawler engine and REST microservice in Go. Features RFC 9309 robots.txt compliance, conditional HTTP 304 re-validation, SSRF sandboxing, and PostgreSQL distributed queueing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: dom-xss-arcgis
👤 项目作者: zozoboca
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 09:54:45

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #POC #CVE

📦 项目名称: CVE-2026-92084-beaver-builder-shortcode-poc
👤 项目作者: Hassham1
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 10:07:25

📝 项目描述:
CVE-2026-92084 — Beaver Builder Lite <= 2.11.0.5 unauthenticated arbitrary shortcode execution via Sidebar module widget output (CVSS 9.1): Docker validation lab with vulnerable/patched controls, safe-oracle Python PoC, nuclei version screen. Authorized security research only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2022-44384
👤 项目作者: d4ytox
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 12:33:51

📝 项目描述:
CVE-2022-44384 - authenticated arbitrary file upload to RCE in rConfig <= 3.9.6. Working Python 3 rewrite of the public PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ALROBAN-WEB
👤 项目作者: alrobanalkabeer-maker
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 12:55:02

📝 项目描述:
Advanced OSINT & Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #蜜罐 #部署

📦 项目名称: TWERG-HoneyBot
👤 项目作者: taiwanerg
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-10-04 12:05:07

📝 项目描述:
TWERG 專用的蜜罐機器人

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-104991
👤 项目作者: wvllxe
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 13:32:20

📝 项目描述:
CVE-2026-104991 — Missing Authorization (BOLA/IDOR) in Phproject REST API read/comment endpoints

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malware-detection-system
👤 项目作者: Lar-son-code
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 13:54:04

📝 项目描述:
Hybrid intelligent malware detection system - static PE analysis, YARA/fuzzy matching and an EMBER2018-trained meta-classifier with a Flask dashboard

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Lab-Reflected-XSS-with-AngularJS-sandbox-escape-and-CSP
👤 项目作者: gabrielhusa0-hash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 13:25:38

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: commercial-website-audit-system
👤 项目作者: rouguemuse
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 13:52:38

📝 项目描述:
Turnkey, white-label website audit platform with multi-page crawler, 6-field findings, executive PDF reporting, and hardened SSRF protection.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #云元数据

📦 项目名称: CatDock
👤 项目作者: Divinely3558
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 14:02:35

📝 项目描述:
基于 N_m3u8DL-RE 的 Docker 容器下载工具,支持通过猫抓浏览器插件远程控制容器下载视频。多用户隔离、m3u8/直链下载、断点续传、任务持久化与自动恢复、四套主题色板、IP/账号分级封禁、SSRF 防护,支持 SQLite/MySQL 双后端。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: wordpress-auto-upload-shell
👤 项目作者: HackfutSecRoot
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 14:00:50

📝 项目描述:
WP File Manager — Mass Exploit + UnknownSec Shell Upload

🔗 点击访问项目地址
👍2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Nuclei

📦 项目名称: CVE-2026-103355-unlimited-elements-sqli-poc
👤 项目作者: Hassham1
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 14:29:38

📝 项目描述:
CVE-2026-103355 - Unlimited Elements For Elementor <= 2.0.20 unauthenticated blind SQL injection via terms-listing identifiers (CVSS 9.3): Docker validation lab with vulnerable (2.0.20) vs patched (2.0.21) controls, read-only boolean-oracle PoC, nuclei version screen. Authorized security research only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: yara-pe-malware-analysis
👤 项目作者: gahyuncho
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 16:58:39

📝 项目描述:
YARA 기반 Windows PE 악성코드 정적 분석 자동화 및 IDA 기반 탐지 결과 검증

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CobaltStrike #Beacon

📦 项目名称: Cobaltstrike_BOFLoader
👤 项目作者: CodeXTF2
🛠 开发语言: C
⭐ Star数量: 73 | 🍴 Fork数量: 6
📅 更新时间: 2026-10-04 16:47:30

📝 项目描述:
open source port/reimplementation of the Cobalt Strike BOF Loader as is

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: burp-suite-security-assessment
👤 项目作者: Hamed4002
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-04 16:47:42

📝 项目描述:
Security assessment of OWASP Mutillidae II using Burp Suite — SQLi, XSS, CSRF, broken auth, and broken access control, with PoC and remediation for each

🔗 点击访问项目地址