GitHub 红队武器库🚨
14.1K subscribers
25 photos
8 videos
26.2K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: DecodeLabs-Project3
👤 项目作者: areejamirkhan050-max
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 11:13:09

📝 项目描述:
Interactive Web Elements application built with HTML, CSS, and Vanilla JavaScript demonstrating DOM manipulation, state management, and XSS safety

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-image-payloads
👤 项目作者: Nikhilm914
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 11:13:48

📝 项目描述:
Deploy ready-to-use image-based XSS proof-of-concept payloads (SVG, GIF polyglot, EXIF, JPEG polyglot) for authorized security testing and bug-bounty research.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #CVE

📦 项目名称: interactive-ci-plugin
👤 项目作者: darniss-nokia
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-16 12:01:45

📝 项目描述:
Human-in-the-loop interactive input for Jenkins pipelines: an in-UI notification bell and rich approval modal for builds that pause for a human decision, an askInteractive Pipeline step, and a REST API so people or AI agents can answer approvals. No AI dependency at runtime.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: android-anti-malware-research
👤 项目作者: marcelodinizsec
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:06:55

📝 项目描述:
Deep-dive technical analysis of an Android banking trojan, featuring ARM64/DEX reverse engineering, Frida dynamic hooking, and YARA detection rules.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: web-security-notes
👤 项目作者: zhangxubo154-sketch
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 11:04:47

📝 项目描述:
Web 安全漏洞复现笔记 - PortSwigger Academy 等靶场实战记录

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: iiitv-firewall-project
👤 项目作者: ashwin0310
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:02:54

📝 项目描述:
This project proposes the development of a Network Vulnerability Scanner with RealTime Security Monitoring. The system will operate as a lightweight security application that identifies the network environment to which the system is connected and performs authorized security assessment of the local network.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: nenu-web-vulnerability-scanner
👤 项目作者: myanasanthoshgif
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 11:42:42

📝 项目描述:
A Python-based web vulnerability scanner with Flask UI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Public_Exploit-1--Wordpress-CVE-2021-29447
👤 项目作者: Kashyapghodasara
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:08:13

📝 项目描述:
CVE-2021-29447 is an authenticated XML External Entity (XXE) vulnerability in WordPress

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #插件 #扩展 #Extension #渗透

📦 项目名称: BurpSuiteRemote
👤 项目作者: ctkqiang
🛠 开发语言: Kotlin
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:49:34

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #漏洞

📦 项目名称: oob-probe
👤 项目作者: a44120523-art
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:30:28

📝 项目描述:
轻量级带外(OOB)回连探测服务 — 自建版 Burp Collaborator/interactsh,验证 SSRF/盲注/XXE/无回显命令执行

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: MariaDB-13.0.1-rc-RCE-PoC-Exploit
👤 项目作者: ErinaYip
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 12:30:41

📝 项目描述:
MariaDB 13.0.1-rc RCE — PoC / Exploit

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-41940-PoC
👤 项目作者: ctdal
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 13:50:03

📝 项目描述:
A cPanel and WHM authentication bypassing tool

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: outreach-platform
👤 项目作者: faizalzafri
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 14:03:15

📝 项目描述:
Multi-tenant SaaS platform for corporate volunteer outreach management — Spring Boot microservices backend and React admin frontend.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Stored-XSS-and-Session-Hijacking-Simulation
👤 项目作者: Trexo-001
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 13:53:09

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Reflected-XSS-Exploitation
👤 项目作者: Trexo-001
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 13:51:53

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-12793
👤 项目作者: murrez
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 14:44:56

📝 项目描述:
CVE-2026-12793 PoC — JetFormBuilder ≤3.6.2 unauth Register User / admin account creation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: Whetstone
👤 项目作者: nanofuxion
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 14:59:18

📝 项目描述:
On-device JIT enabler for iOS 12/13 (Amethyst exploits, per-app proc patching, no bootstrap)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Applied-Cyber-and-Systems-Engineering-Projects
👤 项目作者: JMallard93
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 15:58:00

📝 项目描述:
Systems engineering and security research portfolio: modular Python offensive utilities (TCP/UDP sockets, SSH C2, input capture, sandbox evasion), low-level POSIX terminal text editor in C, and an autonomous computer-vision behavioral agent.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-89026
👤 项目作者: cflowsec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 17:36:26

📝 项目描述:
Issabel pbxapi hard coded JWT RCE POC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: espress0sExploitationFramework
👤 项目作者: 3spress0
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-16 17:58:44

📝 项目描述:
无描述

🔗 点击访问项目地址