​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: AndroidPentest-Framework
👤 项目作者: UsamaMatrix
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 16:56:15

📝 项目描述:
Professional-grade modular Android 12+ penetration testing framework — 10 modules: Recon, Payload, Installer, C2, PrivEsc, Persistence, Exfiltration, MITM, Automation, Reporting

🔗 点击访问项目地址 GitHub - UsamaMatrix/AndroidPentest-Framework: Professional-grade modular Android 12+ penetration testing framework — 10 modules:…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: yara-rules
👤 项目作者: ilyas7
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 16:00:18

📝 项目描述:
This repository contains my detection rules for all kinds of malware and suspicious software.

🔗 点击访问项目地址 GitHub - ilyas7/yara-rules: This repository contains my detection rules for all kinds of malware and suspicious software.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: Malware-Analysis-Portfolio
👤 项目作者: R3DN1GHT2005
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 16:02:10

📝 项目描述:
End-to-end malware analysis reports, extracted IOCs, and custom YARA detection rules developed in an isolated lab (FLARE-VM / REMnux). Includes WannaCry, trojans, and malscripts.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: vuln-scan-agent
👤 项目作者: bear561
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 16:05:47

📝 项目描述:
漏洞扫描智能体

🔗 点击访问项目地址 bear561/vuln-scan-agent
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-11991-Exploit
👤 项目作者: 0x00phantom-hat
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 15:57:49

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: bobscan
👤 项目作者: Xuxu1020
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 14:52:31

📝 项目描述:
Web vulnerability scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Afrog #POC #漏洞

📦 项目名称: DistributedAfrog
👤 项目作者: wffwf
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 09:19:44

📝 项目描述:
Afrog Distributed Master

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: Argus_Assessment
👤 项目作者: nyx007-code
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 14:46:47

📝 项目描述:
Black-box penetration test of a PHP internal management system. Identified 5 vulnerabilities: Critical SQL injection with query disclosure, stored XSS with session cookie theft, IDOR across client data, path traversal, and unrestricted file upload. Includes evidence, CVSS scores, remediation.

🔗 点击访问项目地址 nyx007-code/Argus_Assessment
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: UpdateNucleiTemplates
👤 项目作者: MarkBMoss
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:30:12

📝 项目描述:
每日自动收集全网可用 Nuclei Template

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored

📦 项目名称: fashion-shop-security-lab
👤 项目作者: hieujojo
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 11:41:26

📝 项目描述:
Deliberately vulnerable fashion e-commerce web app (FashionHub) for hands-on security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: Penetration-Testing-Project
👤 项目作者: oarabengkhunou-source
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:41:23

📝 项目描述:
Ethical web application security testing project demonstrating SQL injection and reflected XSS vulnerabilities in an isolated lab environment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnRecon
👤 项目作者: Amans66
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:57:24

📝 项目描述:
VulnRecon is an automated web vulnerability scanner for detecting OWASP Top 10 security flaws and performing website reconnaissance.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #Remote Code Execution

📦 项目名称: StyleSmugglerShield
👤 项目作者: Ceymox
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:32:01

📝 项目描述:
Magento 2 / Adobe Commerce security patch for the StyleSmuggler GraphQL template-injection RCE zero-day (sansec.io/research/stylesmuggler)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-81780-Hash-Form
👤 项目作者: 0xTerror
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:09:02

📝 项目描述:
CVE-2026-81780 — Hash Form RCE

🔗 点击访问项目地址 GitHub - 0xTerror/CVE-2026-81780-Hash-Form: CVE-2026-81780 — Hash Form RCE
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: capsaicin
👤 项目作者: abdulhalimaltuntas
🛠 开发语言: Go
⭐ Star数量: 26 | 🍴 Fork数量: 7
📅 更新时间: 2026-09-04 23:51:07

📝 项目描述:
Next-generation intelligent Web Fuzzer & Directory Scanner written in Go. Features WAF detection, secret scanning, auto-calibration, and smart 403 bypass

🔗 点击访问项目地址 GitHub - abdulhalimaltuntas/capsaicin: Next-generation intelligent Web Fuzzer & Directory Scanner written in Go. Features WAF detection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: panda465
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 13:02:38

📝 项目描述:
Python-based web vulnerability scanner for basic security configuration assessment.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-auto-translate
👤 项目作者: Hrushikraj
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 12:38:52

📝 项目描述:
Burp Suite extension: an always-on 'Translated' tab that auto-detects and translates non-English request/response bodies inline. Google (no key) + offline LibreTranslate backends.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: virtuprobe-burp-extension
👤 项目作者: foobar-beer
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 12:50:11

📝 项目描述:
Burp Suite extension that bridges captured requests to VirtuProbe Studio for organizing and re-running them across projects

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: log-sentinel
👤 项目作者: Drizzy-ul
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 12:44:56

📝 项目描述:
Autonomous real-time Nginx & Apache access log intrusion detection and active firewall response daemon. Regex-powered exploit mitigation (SQLi, XSS, Path Traversal, RCE), sliding-window rate tracking, and automated OS-level IP banning via iptables, ufw, and netsh. Zero external dependencies.

🔗 点击访问项目地址 GitHub - Drizzy-ul/log-sentinel: Autonomous real-time Nginx & Apache access log intrusion detection and active firewall response…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: agent-security
👤 项目作者: tuturama
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-07 09:58:56

📝 项目描述:
Skills for coding agents that audit and harden other agents: SSRF gate audit, threat model for agentic spend, MCP visibility audit, signed audit log. MIT.

🔗 点击访问项目地址 GitHub - tuturama/agent-security: Skills for coding agents that audit and harden other agents: SSRF gate audit, threat model for…
Back to Top