📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Apache Tomcat 远程代码执行漏洞批量检测脚本(CVE-2025-24813)
URL:https://github.com/iSee857/CVE-2025-24813-PoC
标签:#CVE-2025
更新了:CVE-2025
描述:Apache Tomcat 远程代码执行漏洞批量检测脚本(CVE-2025-24813)
URL:https://github.com/iSee857/CVE-2025-24813-PoC
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:渗透测试
描述:Secondary development function(毕业设计-基于Gophish的钓鱼渗透测试平台)
URL:https://github.com/L-69/gophish_2development
标签:#渗透测试
更新了:渗透测试
描述:Secondary development function(毕业设计-基于Gophish的钓鱼渗透测试平台)
URL:https://github.com/L-69/gophish_2development
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:RCE
描述:AI-Assisted Tools for RCE Vulnerability Test, Discovery & Exploitation
URL:https://github.com/Michael-Obs66/BlackClown
标签:#RCE
更新了:RCE
描述:AI-Assisted Tools for RCE Vulnerability Test, Discovery & Exploitation
URL:https://github.com/Michael-Obs66/BlackClown
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:SOPlanning 1.52.01 (Simple Online Planning Tool) - Remote Code Execution (RCE) (Authenticated)
URL:https://github.com/mohamed-ali-youssef/SOPlanning-1.52.01
标签:#RCE
更新了:RCE
描述:SOPlanning 1.52.01 (Simple Online Planning Tool) - Remote Code Execution (RCE) (Authenticated)
URL:https://github.com/mohamed-ali-youssef/SOPlanning-1.52.01
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:POC for CVE-2025-26240
URL:https://github.com/Habuon/CVE-2025-26240
标签:#CVE-2025
更新了:CVE-2025
描述:POC for CVE-2025-26240
URL:https://github.com/Habuon/CVE-2025-26240
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:KQL para deteccion de CVE-2025-21333 en Sentinel
URL:https://github.com/aleongx/KQL_sentinel_CVE-2025-21333
标签:#CVE-2025
更新了:CVE-2025
描述:KQL para deteccion de CVE-2025-21333 en Sentinel
URL:https://github.com/aleongx/KQL_sentinel_CVE-2025-21333
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:红队
描述:两个简单的脚本,用于监测文件变化,并使用dnslog来传递和通知,适合红队渗透用
URL:https://github.com/christarcher/filechange2dnslog
标签:#红队
更新了:红队
描述:两个简单的脚本,用于监测文件变化,并使用dnslog来传递和通知,适合红队渗透用
URL:https://github.com/christarcher/filechange2dnslog
标签:#红队
GitHub监控消息提醒!!!
更新了:绕过
描述:粘贴绕过工具是一个用Rust编写的命令行应用程序,用于绕过那些禁用或监控标准粘贴操作的网站和应用程序。该工具通过模拟逐字符的键盘输入,而不是直接触发粘贴事件,从而避开粘贴检测机制。
URL:https://github.com/chenty2333/Paste-detection-bypass-tool
标签:#绕过
更新了:绕过
描述:粘贴绕过工具是一个用Rust编写的命令行应用程序,用于绕过那些禁用或监控标准粘贴操作的网站和应用程序。该工具通过模拟逐字符的键盘输入,而不是直接触发粘贴事件,从而避开粘贴检测机制。
URL:https://github.com/chenty2333/Paste-detection-bypass-tool
标签:#绕过
GitHub监控消息提醒!!!
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Vanshuk-Bhagat/Apache-HTTP-Server-Vulnerabilities-CVE-2021-41773-and-CVE-2021-42013
标签:#RCE
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Vanshuk-Bhagat/Apache-HTTP-Server-Vulnerabilities-CVE-2021-41773-and-CVE-2021-42013
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Vanshuk-Bhagat/Apache-HTTP-Server-Vulnerabilities---CVE-2021-41773-and-CVE-2021-42013
标签:#RCE
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Vanshuk-Bhagat/Apache-HTTP-Server-Vulnerabilities---CVE-2021-41773-and-CVE-2021-42013
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY
URL:https://github.com/ahmedumarehman/CVE-2025-21293
标签:#CVE-2025
更新了:CVE-2025
描述:POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY
URL:https://github.com/ahmedumarehman/CVE-2025-21293
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:漏洞扫描
描述:一个好用的越权扫描工具。越权漏洞自动化检测难、易发生且危害严重,但我们仍可以尽力自动化检测一部分越权漏洞。
URL:https://github.com/illinformedc/InfiltrateX
标签:#漏洞扫描
更新了:漏洞扫描
描述:一个好用的越权扫描工具。越权漏洞自动化检测难、易发生且危害严重,但我们仍可以尽力自动化检测一部分越权漏洞。
URL:https://github.com/illinformedc/InfiltrateX
标签:#漏洞扫描
GitHub监控消息提醒!!!
更新了:绕过
描述:潍科运动(潍坊科技学院)&运动助手(山东理工大学)2.0.1过虚拟机检测,模拟器跑步,绕过更新,免密码任意账号登录,集成xposed模块
URL:https://github.com/xmexg/ydwk
标签:#绕过
更新了:绕过
描述:潍科运动(潍坊科技学院)&运动助手(山东理工大学)2.0.1过虚拟机检测,模拟器跑步,绕过更新,免密码任意账号登录,集成xposed模块
URL:https://github.com/xmexg/ydwk
标签:#绕过