​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: ShallowEnd-Plugins
👤 项目作者: BKLockly
🛠 开发语言: Zig
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 04:02:10

📝 项目描述:
Official plugin monorepo for ShallowEnd — Zig + Tokota Node.js native addons for post-exploitation (BOF, recon, file ops, sensitive data discovery)

🔗 点击访问项目地址
🔤🔤🔤🔤🔤🔤🔤🔤
😍 超级爆率提款秒到尽在凯旋
1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣
1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣
😍 新人:首存500即送68$
😍 反水:实时领电子反水1.3%起
🩷❤️🧡💛💚🩵💙💜🖤🩶
🌶 实力保障: 链上储备公开可查
🌶代理55%返佣!无套路秒结算
👠麻将1 麻将2 赏金大对决
👠2026首创:PA真人秒提112万U,秒到账
👠秀翻全场: BBIN赌神附体单笔提款125万U
👠运气爆棚:木牌大佬PP电子爆奖90万U
👠拍案叫绝:西港某主管BBIN狂揽115万U
1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣1️⃣
😂 官网: KX.TOP
😍 客服:@KXOK8
😍 招商:@KX999
😍 频道:@KXGGG
🫤😐🫥😶🤥🫠🤫🫡🫢
😑 N9 国际认证 | 信誉平台
支持5倍验资 【验资:
@N9KF】
担保域名:N9.TOP 点击查看
⚡️⚡️⚡️⚡️
💝
新会员好礼
注册就送28.8U
新人首存/二存/三存最高赠送
8️⃣8️⃣8️⃣8️⃣U
💝
老会员好礼
电子狂欢每日存款赠送10%
充值笔笔送3%无上限
夜间充值最高可优惠8888U

⚡️⚡️⚡️⚡️⚡️⚡️
⚡️⚡️⚡️⚡️⚡️⚡️⚡️
香港六合彩
4️⃣8️⃣.8️⃣ 倍
加拿大28全网返水最高

⚡️注册网址:N9.PRO

😇🧐🧐😗🧐😙😄
⚡️ 官方客服: @N9KF
⚡️ 官方飞投: @N9N9
⚡️ 彩票客服: @N9CP
⚡️ 彩票飞投: @N9N9N9
⚡️ 福利频道: @N9pd888
⚡️ 注册网址: N9.COM【USDT】
⚡️ 注册网址: N9.COM【人民币】

🔥欢迎各位老板加入N9国际娱乐城!
🔥关注N9官方频道参与更多优惠活动
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-34990-CUPS-LPE-PoC
👤 项目作者: Noorkhalel
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 03:41:50

📝 项目描述:
Generic PoC for CVE-2026-34990 - CUPS 2.4.16 Local Privilege Escalation via Local token disclosure and arbitrary root file overwrite.

🔗 点击访问项目地址 GitHub - Noorkhalel/CVE-2026-34990-CUPS-LPE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: bara-almustafa
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 02:45:50

📝 项目描述:
CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation

🔗 点击访问项目地址 GitHub - bara-almustafa/CVE-2026-34990-poc: CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #Exploit #CVE

📦 项目名称: vuln-search-skill
👤 项目作者: ming-14
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 01:38:11

📝 项目描述:
多源漏洞搜索 Skill | A AI Agent skill for CVE vulnerability searching, exploit discovery, and privilege escalation research. Integrates NVD, Exploit-DB, CISA-KEV, and Vulners databases.

🔗 点击访问项目地址 GitHub - ming-14/vuln-search-skill: 多源漏洞搜索 Skill | A AI Agent skill for CVE vulnerability searching, exploit discovery, and privilege…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: swagger-ui-xss-poc
👤 项目作者: ekkkamaru
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 01:42:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-PoC
👤 项目作者: vvsy46
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 00:59:18

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - vvsy46/CVE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-78006-CVE-2026-78159
👤 项目作者: antid00t
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 00:53:48

📝 项目描述:
CVE-2026-78006 + CVE-2026-78159 Mass Exploit

🔗 点击访问项目地址 GitHub - antid00t/CVE-2026-78006-CVE-2026-78159: The Events Calendar Wordpress Plugin Mass Exploit CVE-2026-78006 & CVE-2026-78159
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44011-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:11:07

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-44011-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: Personal_Nuclei_Templates
👤 项目作者: CypherNova1337
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:42:10

📝 项目描述:
My own personal Nuclei Templates I use one real targets. Most made by myself, but others I've collected over the years will be shared as well.

🔗 点击访问项目地址 GitHub - CypherNova1337/Personal_Nuclei_Templates: My own personal Nuclei Templates I use one real targets. Most made by myself…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: ply-cve-2025-56005-lab
👤 项目作者: gdfurr98
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:50:14

📝 项目描述:
Lab demonstrating that CVE-2025-56005 is real and does allow arbitrary code execution at a minimum (the debate about RCE notwithstanding here), and shows that ply-safepickle does block the exploit path.

🔗 点击访问项目地址 GitHub - gdfurr98/ply-cve-2025-56005-lab: Lab demonstrating that CVE-2025-56005 is real and does allow arbitrary code execution…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: WebGuard-AI
👤 项目作者: Ammar-1993
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:30:56

📝 项目描述:
WebGuard AI: An AI-powered web vulnerability scanner. It uses OWASP ZAP for discovery, while LLMs (LangChain/OpenAI) analyze outputs, filter false positives, propose remediation codes, and generate professional reports. Microservices stack: FastAPI, Next.js, MongoDB, and Docker.

🔗 点击访问项目地址 GitHub - Ammar-1993/WebGuard-AI: WebGuard AI: An AI-powered web vulnerability scanner. It uses OWASP ZAP for discovery, while LLMs…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: local-whisper-mcp
👤 项目作者: laurentlemercier
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:20:16

📝 项目描述:
Service de transcription vocale local - FastAPI REST + MCP Streamable HTTP, Whisper via faster-whisper, avec protection SSRF.

🔗 点击访问项目地址 GitHub - laurentlemercier/local-whisper-mcp: Service de transcription vocale local - FastAPI REST + MCP Streamable HTTP, Whisper…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-71963-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:32:00

📝 项目描述:
CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (core.fsmonitor). Stdlib-only Python, verified on real 0.21.0 with a clean negative control on the fixed build.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-71963-PoC: CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-88008-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:58:43

📝 项目描述:
CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels past routers and middleware (BasicAuth/ForwardAuth/IPAllowList), unauthorised access + no access logging. Stdlib-only Python PoC + real Jetty h2c lab, verified on v3.7.12 vs v3.7.13.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-88008-PoC: CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: luasec
👤 项目作者: Vaibhav91one
🛠 开发语言: Lua
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:57:06

📝 项目描述:
RCE checker and security analyzer for Lua in embedded firmware: taint analysis, payload hunting, bytecode triage, SARIF output

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Beacon

📦 项目名称: glacier-rat
👤 项目作者: 0x3c4dfa1
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:59:52

📝 项目描述:
Glacier RAT malware analysis: DLL sideloading, DGA C2, WebSocket beacon, AES payload, operator attribution, detection rules

🔗 点击访问项目地址 GitHub - 0x3c4dfa1/glacier-rat: Glacier RAT malware analysis: DLL sideloading, DGA C2, WebSocket beacon, AES payload, operator…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:39:50

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-34990-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-88772
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:06:31

📝 项目描述:
CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints Gateway, build vs 14.1-73.37 / 13.1-64.23, UDP/443 DTLS probe. CTX697096; active exploitation reported. https://pocbit.org/pocs/cve-2026-88772

🔗 点击访问项目地址 GitHub - murrez/CVE-2026-88772: CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints…
Back to Top