​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: malware-lab
👤 项目作者: samdem-ai
🛠 开发语言: HTML
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 18:42:11

📝 项目描述:
A small Python toolkit that turns malware triage notes into clean reports, a browsable IOC dashboard, and YARA rules, with write-ups of some Windows lab samples

🔗 点击访问项目地址 GitHub - samdem-ai/malware-lab: A small Python toolkit that turns malware triage notes into clean reports, a browsable IOC dashboard…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-recon-templates
👤 项目作者: comradezephyr
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 17:34:44

📝 项目描述:
Curated collection of strict, zero-false-positive Nuclei v3 templates for bug bounty automation, infrastructure reconnaissance, and exposure hunting.

🔗 点击访问项目地址 GitHub - comradezephyr/nuclei-recon-templates: Curated collection of strict, zero-false-positive Nuclei v3 templates for bug bounty…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: c2-lite
👤 项目作者: ispectr3
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 17:59:23

📝 项目描述:
Lightweight C2 framework in Go with encrypted communications and interactive shell

🔗 点击访问项目地址 GitHub - ispectr3/c2-lite: Lightweight C2 framework in Go with encrypted communications and interactive shell
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: smart-ai-pentester
👤 项目作者: Chetan2002143
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 16:30:51

📝 项目描述:
The Smart AI Pentesting Agent is an automated vulnerability scanner that combines traditional payload-based testing with intelligent detection mechanisms. It can identify: SQL Injection (Error-based and Time-based Blind) Cross-Site Scripting (XSS) (Reflected)WAF Detection and adaptive response

🔗 点击访问项目地址 GitHub - Chetan2002143/smart-ai-pentester: The Smart AI Pentesting Agent is an automated vulnerability scanner that combines traditional…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: JGD
👤 项目作者: lupingQAQ
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:40:28

📝 项目描述:
Autonomous agent that mines Java deserialization gadget chains from any JAR directory. Static bytecode analysis + dynamic JVM probes + dual-model adversarial auditing → weaponized PoC. Solving the last mile.

🔗 点击访问项目地址 GitHub - lupingQAQ/JGD: Autonomous agent that mines Java deserialization gadget chains from any JAR directory. Static bytecode…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-sqli-detector
👤 项目作者: Wu-Falin
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:54:53

📝 项目描述:
Burp Suite extension that automates SQL injection detection (error/boolean/time-based, confidence-scored), WSTG-INPVAL-05. Detection only; exploitation stays manual.

🔗 点击访问项目地址 GitHub - Wu-Falin/burp-sqli-detector: Burp Suite extension that automates SQL injection detection (error/boolean/time-based, confidence…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: SailFish-C2-Framework
👤 项目作者: hackpatato
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 14:58:44

📝 项目描述:
A C2 Framework (Command & Control) tool developed for red team operations and educational research. It uses Telegram as its C2 channel and encrypts data with a Base64 + XOR combination.

🔗 点击访问项目地址 GitHub - hackpatato/SailFish-C2-Framework: A  C2 Framework (Command & Control) tool developed for red team operations and educational…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: BurpSuiteScreenshotPoC
👤 项目作者: Ginnz1337
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 15:00:13

📝 项目描述:
Burp Suite extension that turns a request or response into a clean, report-ready PoC screenshot: hides browser noise headers, blurs secrets, removes lines. Repeater, Logger and Proxy.

🔗 点击访问项目地址 GitHub - Ginnz1337/BurpSuiteScreenshotPoC: Burp Suite extension that turns a request or response into a clean, report-ready PoC…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: inowpss
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 14:57:36

📝 项目描述:
Web Vulnerability Scanner for SQL Injection and XSS Detection

🔗 点击访问项目地址 inowpss/web-vulnerability-scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: cctv
👤 项目作者: ledksv
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:58:11

📝 项目描述:
CCTV — HackTheBox | CVE-2024-51482 ZoneMinder SQLi, bcrypt crack, CVE-2025-60787 motionEye RCE for root

🔗 点击访问项目地址 GitHub - ledksv/cctv: CCTV — HackTheBox | CVE-2024-51482 ZoneMinder SQLi, bcrypt crack, CVE-2025-60787 motionEye RCE for root
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: IC_CS_01
👤 项目作者: Cedric-Raichand
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:47:59

📝 项目描述:
A Python Flask Web Vulnerability Scanner prototype that scans websites for missing security headers and basic input vulnerabilities, displaying results via a simple web interface. Task 1 establishes the core scanning functionality for later enhancements.

🔗 点击访问项目地址 GitHub - Cedric-Raichand/IC_CS_01: A Python Flask Web Vulnerability Scanner prototype that scans websites for missing security…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: awscan
👤 项目作者: 0xgetz
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 13:52:17

📝 项目描述:
Automated web vulnerability scanner for authorized security testing. Zero dependencies, stdlib-only Python: scope-gated SQLi/XSS/redirect/header/path checks, boolean-blind extraction, offline lab, 17 tests.

🔗 点击访问项目地址 GitHub - 0xgetz/awscan: Automated web vulnerability scanner for authorized security testing. Zero dependencies, stdlib-only Python:…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Home-Network-Vulnerability-Scanner
👤 项目作者: CodeWithHusain
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 12:16:07

📝 项目描述:
Developed a Python-based network vulnerability scanner using Nmap and python-nmap to automatically discover live hosts, open ports, and running services on local networks.

🔗 点击访问项目地址 GitHub - CodeWithHusain/Home-Network-Vulnerability-Scanner: Developed a Python-based network vulnerability scanner using Nmap and…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: crossfyre-toolchain
👤 项目作者: clickswave
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 12:03:54

📝 项目描述:
Recon and vulnerability scanning tools that run in your terminal. Find subdomains, scan ports, discover hidden paths, fingerprint what's running, and check it for vulns.

🔗 点击访问项目地址 GitHub - clickswave/crossfyre-toolchain: Recon and vulnerability scanning tools that run in your terminal. Find subdomains, scan…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #EXP #RCE #复现

📦 项目名称: JFrog_CVE-2026-65615-ByGLM
👤 项目作者: BL0odz
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 11:22:15

📝 项目描述:
JFrog Artifactory 预认证全链 RCE 复现项目(CVE-2026-42018 / CVE-2026-65616 / CVE-2026-65615):完整攻击链报告、7.146.7 Docker 复现交付物(EXP / 部署 / 基线验证 / payload 样本 / 恢复工具)

🔗 点击访问项目地址 GitHub - BL0odz/JFrog_CVE-2026-65615-ByGLM: JFrog Artifactory 预认证全链 RCE 复现项目(CVE-2026-42018 / CVE-2026-65616 / CVE-2026-65615)…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cybersecurity_vulnarability
👤 项目作者: JavERIA-IT11
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 10:39:33

📝 项目描述:
A Flask-based Cybersecurity Vulnerability Scanner for authorized security testing. It checks HTTP security headers, HTTPS and SSL/TLS configuration, server information disclosure, and common security misconfigurations, then displays findings with severity levels in a security dashboard.

🔗 点击访问项目地址 GitHub - JavERIA-IT11/cybersecurity_vulnarability: A Flask-based Cybersecurity Vulnerability Scanner for authorized security testing.…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: DVWA-Web-Pentesting
👤 项目作者: Snehal1225
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-13 10:24:38

📝 项目描述:
Web application penetration testing lab using DVWA, demonstrating SQL Injection, Stored XSS, Command Injection, File Inclusion, and CSRF in a controlled Kali Linux environment.

🔗 点击访问项目地址 GitHub - Snehal1225/DVWA-Web-Pentesting: Web application penetration testing lab using DVWA, demonstrating SQL Injection, Stored…
Back to Top