GitHub 红队武器库🚨
14.1K subscribers
25 photos
9 videos
26.1K links
📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
Download Telegram
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Inject #Execute #EDR

📦 项目名称: ProcStudio
👤 项目作者: ouye
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 08:49:39

📝 项目描述:
轻量级 Windows 进程研究与分析工具。支持多策略 DLL 注入(CRT / APC / Hook / Manual Map)、Shellcode 执行与 JIT 汇编预览、内存十六进制浏览及进程模块联动。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: OWASP-Guardian-Web-Application-Security-Self-Assessment-Platform
👤 项目作者: Kalpkataria
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 09:43:05

📝 项目描述:
An automated web application vulnerability scanner built with Python & Flask, detecting OWASP Top 10 (2021) security flaws - developed as a Major Project for M.Sc. Cyber Security at NFSU, Gandhinagar.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: stored-xss-session-hijack
👤 项目作者: Yuji-cod3
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 10:38:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: DVWA-Web-Pentesting
👤 项目作者: Snehal1225
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 10:24:38

📝 项目描述:
Web application penetration testing lab using DVWA, demonstrating SQL Injection, Stored XSS, Command Injection, File Inclusion, and CSRF in a controlled Kali Linux environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cybersecurity_vulnarability
👤 项目作者: JavERIA-IT11
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 10:39:33

📝 项目描述:
A Flask-based Cybersecurity Vulnerability Scanner for authorized security testing. It checks HTTP security headers, HTTPS and SSL/TLS configuration, server information disclosure, and common security misconfigurations, then displays findings with severity levels in a security dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #EXP #RCE #复现

📦 项目名称: JFrog_CVE-2026-65615-ByGLM
👤 项目作者: BL0odz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 11:22:15

📝 项目描述:
JFrog Artifactory 预认证全链 RCE 复现项目(CVE-2026-42018 / CVE-2026-65616 / CVE-2026-65615):完整攻击链报告、7.146.7 Docker 复现交付物(EXP / 部署 / 基线验证 / payload 样本 / 恢复工具)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: crossfyre-toolchain
👤 项目作者: clickswave
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 12:03:54

📝 项目描述:
Recon and vulnerability scanning tools that run in your terminal. Find subdomains, scan ports, discover hidden paths, fingerprint what's running, and check it for vulns.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Home-Network-Vulnerability-Scanner
👤 项目作者: CodeWithHusain
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 12:16:07

📝 项目描述:
Developed a Python-based network vulnerability scanner using Nmap and python-nmap to automatically discover live hosts, open ports, and running services on local networks.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: awscan
👤 项目作者: 0xgetz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:52:17

📝 项目描述:
Automated web vulnerability scanner for authorized security testing. Zero dependencies, stdlib-only Python: scope-gated SQLi/XSS/redirect/header/path checks, boolean-blind extraction, offline lab, 17 tests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: IC_CS_01
👤 项目作者: Cedric-Raichand
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:47:59

📝 项目描述:
A Python Flask Web Vulnerability Scanner prototype that scans websites for missing security headers and basic input vulnerabilities, displaying results via a simple web interface. Task 1 establishes the core scanning functionality for later enhancements.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: cctv
👤 项目作者: ledksv
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:58:11

📝 项目描述:
CCTV — HackTheBox | CVE-2024-51482 ZoneMinder SQLi, bcrypt crack, CVE-2025-60787 motionEye RCE for root

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-85706-gitlab-poc
👤 项目作者: gagaltotal
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 14:33:33

📝 项目描述:
CVE-2026-85706

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: inowpss
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 14:57:36

📝 项目描述:
Web Vulnerability Scanner for SQL Injection and XSS Detection

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: BurpSuiteScreenshotPoC
👤 项目作者: Ginnz1337
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:00:13

📝 项目描述:
Burp Suite extension that turns a request or response into a clean, report-ready PoC screenshot: hides browser noise headers, blurs secrets, removes lines. Repeater, Logger and Proxy.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: SailFish-C2-Framework
👤 项目作者: hackpatato
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 14:58:44

📝 项目描述:
A C2 Framework (Command & Control) tool developed for red team operations and educational research. It uses Telegram as its C2 channel and encrypts data with a Base64 + XOR combination.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-sqli-detector
👤 项目作者: Wu-Falin
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:54:53

📝 项目描述:
Burp Suite extension that automates SQL injection detection (error/boolean/time-based, confidence-scored), WSTG-INPVAL-05. Detection only; exploitation stays manual.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: JGD
👤 项目作者: lupingQAQ
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:40:28

📝 项目描述:
Autonomous agent that mines Java deserialization gadget chains from any JAR directory. Static bytecode analysis + dynamic JVM probes + dual-model adversarial auditing → weaponized PoC. Solving the last mile.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: smart-ai-pentester
👤 项目作者: Chetan2002143
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 16:30:51

📝 项目描述:
The Smart AI Pentesting Agent is an automated vulnerability scanner that combines traditional payload-based testing with intelligent detection mechanisms. It can identify: SQL Injection (Error-based and Time-based Blind) Cross-Site Scripting (XSS) (Reflected)WAF Detection and adaptive response

🔗 点击访问项目地址
👍1
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Execute #Evasion #EDR #AV

📦 项目名称: coding-my-first-position-independent-shellcode-for-windows-from-scratch-in-x64-assembly
👤 项目作者: wizardy0ga
🛠 开发语言: Assembly
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:46:26

📝 项目描述:
Documentation on my experience writing my first working position independent shellcode for windows from scratch using x64 assembly

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: c2-lite
👤 项目作者: ispectr3
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 17:59:23

📝 项目描述:
Lightweight C2 framework in Go with encrypted communications and interactive shell

🔗 点击访问项目地址