GitHub 红队武器库🚨
14.3K subscribers
25 photos
11 videos
27.9K links
​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: c2-agent
👤 项目作者: dyh1213-wq
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 08:01:08

📝 项目描述:
C2 Agent framework

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #Webshell #入侵

📦 项目名称: pentest-notes
👤 项目作者: Fang-Rou
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 08:20:13

📝 项目描述:
Web 安全学习笔记(OWASP Top10 / 信息收集 / 应急响应)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队 #靶场 #漏洞

📦 项目名称: security-toolbox
👤 项目作者: Fang-Rou
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 08:20:16

📝 项目描述:
渗透测试工具选型清单(不包含二进制)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #内网 #靶场 #漏洞

📦 项目名称: PayloadsAllTheThings-zh
👤 项目作者: zieang88888
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 00:48:18

📝 项目描述:
渗透测试载荷百科中文版:源自 81k★ swisskyrepo/PayloadsAllTheThings 的 64 类载荷分类中文索引与速查

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: Gaddambhavyasree
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 09:34:41

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-snapshot
👤 项目作者: noverdy
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 09:39:23

📝 项目描述:
Burp Suite extension that turns requests, responses and Intruder results into annotated, redacted PNGs for pentest reports

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: Torikago
👤 项目作者: Nesarf
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 09:38:09

📝 项目描述:
Torikago (鳥籠) — static triage for an unknown executable. Identifies, unpacks and reports indicators, and never runs the target.

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: DOM-BASED-XSS-EXPLOIT
👤 项目作者: ThanDangS
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 09:19:29

📝 项目描述:
Vulnerable code for doom based xss attack

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: AI-agentic-migration-overheid
👤 项目作者: agilesolutions
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 11:00:20

📝 项目描述:
Copilot AI agents, prompts, skills voor het cloud enablen en moderniseren van overheid Java Spring Boot applicaties

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: rvbb-ssrf-poc-1791196580
👤 项目作者: RedVision228
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 10:36:32

📝 项目描述:
SSRF converter PoC files (bug bounty)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: flask-c2-framework
👤 项目作者: qabalani
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 11:02:02

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: spoorthisb183-dot
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 11:42:55

📝 项目描述:
A simple Python vulnerability scanner mini project for educational purposes.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: advanced_pentesting_challenge
👤 项目作者: laurent-fauveau
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 11:48:36

📝 项目描述:
Dépôt du Challenge de Pentesting. Il regroupe la méthodologie, les scripts et les rapports d'audit pour 3 cas pratiques : reconnaissance et exploitation d'infrastructures réseau, pentest d'applications web (OWASP Top 10, SQLi, XSS) et élévation de privilèges sur vulnérabilités système. Inclut fiches CVE, journaux d'attaque et remédiations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Evasion

📦 项目名称: Python-Shellcode-Anydesk-Apc-injection-Remote-IP-Address-Analysis
👤 项目作者: kaandemir993
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 12:31:10

📝 项目描述:
Reverse engineering analysis of Python shellcode that injects into AnyDesk via APC injection and attempts to connect to a C2 server through AnyDesk. The shellcode was observed to use AES and RSA encryption algorithms to conceal the C2 connection and to establish persistence via the Registry.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: XSS-CloudComputing_Cybersecurity
👤 项目作者: nahasBeatriz
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 12:44:57

📝 项目描述:
Cloud Computing project 02

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: BugBounty-Payloads
👤 项目作者: Raunaksplanet
🛠 开发语言: Python
⭐ Star数量: 8 | 🍴 Fork数量: 4
📅 更新时间: 2026-10-05 11:57:32

📝 项目描述:
Curated custom payloads and wordlists for fuzzing: XSS, SQLi, SSRF, LFI, open redirect, WAF bypass, PDF exploits + recon wordlists and regex patterns for bug bounty.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: python-async-servic-payments
👤 项目作者: Sskutushev
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 12:27:45

📝 项目描述:
Async payment processing service: FastAPI + PostgreSQL + RabbitMQ (FastStream). Transactional outbox, idempotent API, single checkpointed consumer, 3-attempt retries with DLQ, signed webhooks with SSRF policy. Tested on real PostgreSQL/RabbitMQ + compose e2e.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ai-docs-rag-agent
👤 项目作者: eliv1982
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 12:20:41

📝 项目描述:
Telegram RAG assistant for technical docs: SSRF-aware ingestion, grounded answers over Pinecone, and a bounded tool-calling agent.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: clrfkd
👤 项目作者: type5afe
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 12:23:08

📝 项目描述:
Blazing Fast CLRF Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-41875-EXPLOIT-QuickCart-one-click-Account-Takeover
👤 项目作者: krl5
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-10-05 13:59:30

📝 项目描述:
无描述

🔗 点击访问项目地址