GitHub 红队武器库🚨
14K subscribers
25 photos
9 videos
26K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-78006-POC
👤 项目作者: DeadExpl0it
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 11:42:16

📝 项目描述:
POC for CVE-2026-78006 The Events Calendar <= 6.17.4 - Unauthenticated PHP Object Injection to Remote Code Execution

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #Exploit

📦 项目名称: A58-Exploit
👤 项目作者: RenAhsAcme
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 11:08:06

📝 项目描述:
系统披露 A58 存在的网络安全漏洞。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Lab-Stored-XSS-into-HTML-context-with-nothing-encoded
👤 项目作者: shivkoshti2012
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 11:27:55

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Exploit-Diary
👤 项目作者: Bugatsec
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 10:27:03

📝 项目描述:
A collection of notes and scripts on web application vulnerabilities, created while learning ethical hacking and practicing on legal labs like PortSwigger. This is part of my personal journey into cybersecurity — built for learners, by a learner.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: quillshield-submodule-ssrf-poc
👤 项目作者: whozzz988
🛠 开发语言: Solidity
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 11:29:47

📝 项目描述:
throwaway PoC repo for authorized pentest - QuillShield engagement

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ai-web-vulnerability-scanner
👤 项目作者: Akhyame
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 13:01:38

📝 项目描述:
AI-assisted Python web vulnerability scanner for security analysis, risk scoring, and remediation reporting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: blitzstrike
👤 项目作者: shinthink
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 13:02:32

📝 项目描述:
Blitz Strike — a universal MCP security-audit toolbelt. BLITZ sweeps the attack surface, EAGLE-EYE traces source-to-sink, STRIKE verifies live. 57 chains, 130-tool catalog, intelligence data layer. One server, every agent.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: CTPAX
👤 项目作者: Takopipipi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 12:31:43

📝 项目描述:
CTPAX - reverse-engineering MCP server: Ghidra, x64dbg, Nuclei, Metasploit, Wireshark, forgery & license-gate tooling (248 tools)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: vuln-chain-labs
👤 项目作者: Boubekeur-Khalil
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 13:58:16

📝 项目描述:
Deliberately vulnerable API reproducing a real-world exploit chain: nOAuth ATO → LFI → JWT Forgery → RCE. 7 Docker-based labs with walkthroughs. From an authorized bug bounty engagement.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #内网渗透 #域控 #提权 #隧道 #代理

📦 项目名称: pivothub
👤 项目作者: ProbiusOfficial
🛠 开发语言: Python
Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 13:21:54

📝 项目描述:
CTF多层内网渗透辅助工具

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: PhantomRecon
👤 项目作者: jaylukdevelopment
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 13:29:24

📝 项目描述:
PhantomRecon — Professional bug bounty vulnerability scanner with CLI + Streamlit dashboard

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: Blind-SQL-Injection-Reflected-XSS-and-Stored-XSS
👤 项目作者: lepemiran47-png
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 14:30:42

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: nuclei-CVE-2025-24813
👤 项目作者: SebastianMautner
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 14:52:53

📝 项目描述:
Template for safely testing for the CVE 2025-24813 on a server

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Stored-XSS-and-Session-Hijacking-Simulation-
👤 项目作者: lepemiran47-png
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 15:49:22

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: vulnXss
👤 项目作者: bashx7
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 15:46:24

📝 项目描述:
A practical XSS lab covering Reflected, Stored, and DOM-based Cross-Site Scripting vulnerabilities, with multiple beginner-friendly scenarios to help learners understand and practice different XSS techniques.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework #Implant #Beacon

📦 项目名称: Unkn0wnC2
👤 项目作者: abb3rrant
🛠 开发语言: Go
Star数量: 7 | 🍴 Fork数量: 4
📅 更新时间: 2026-09-12 16:58:16

📝 项目描述:
Stealth focused DNS C2 with Shadow Mesh architecture and malleable timing and payloads for Adversary Emulation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Cyber-security-and-ethical-hacking
👤 项目作者: anushree-cyber1
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 16:50:34

📝 项目描述:
Cyber security and ethical hacking .The project:1password strength Analyzer 2Data encryption and decryption tool 3phishing email simulation 4simple vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: nuclei-bb-templates
👤 项目作者: unrandoms
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 17:59:00

📝 项目描述:
Custom Nuclei templates for IDOR, SSRF, JWT attacks, WAF bypass detection, and secrets exposure

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: DVWA-Web-App-Pentesting
👤 项目作者: Mahhyya
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 18:04:24

📝 项目描述:
Pentesting DVWA across SQLi, XSS, Command Injection, File Inclusion, File Upload, Brute Force, and CSRF — Low to High difficulty

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: bb-recon-toolkit
👤 项目作者: Ngelcondor
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-12 19:33:55

📝 项目描述:
Scoped, rate-limited bug bounty recon tooling in Bash + HackerOne report templates

🔗 点击访问项目地址