📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:RHSB-2022-002 Dirty Pipe - kernel arbitrary file manipulation - (CVE-2022-0847)
URL:https://github.com/mhanief/dirtypipe
标签:#CVE-2022
更新了:CVE-2022
描述:RHSB-2022-002 Dirty Pipe - kernel arbitrary file manipulation - (CVE-2022-0847)
URL:https://github.com/mhanief/dirtypipe
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:Hacked up Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn a root shell. (and attempts to restore the damaged binary as well)
URL:https://github.com/LudovicPatho/CVE-2022-22965_Spring4Shell
标签:#CVE-2022
更新了:CVE-2022
描述:Hacked up Dirty Pipe (CVE-2022-0847) PoC that hijacks a SUID binary to spawn a root shell. (and attempts to restore the damaged binary as well)
URL:https://github.com/LudovicPatho/CVE-2022-22965_Spring4Shell
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-22963 research
URL:https://github.com/SealPaPaPa/SpringCloudFunction-Research
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-22963 research
URL:https://github.com/SealPaPaPa/SpringCloudFunction-Research
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:Red Team
描述:Red Team Server (RTS)
URL:https://github.com/redhat-cop/automation-good-practices
标签:#Red Team
更新了:Red Team
描述:Red Team Server (RTS)
URL:https://github.com/redhat-cop/automation-good-practices
标签:#Red Team
GitHub监控消息提醒!!!
更新了:sql注入
描述:记录实战中的各种sql注入绕过姿势
URL:https://github.com/Junehck/SQL-injection-bypass
标签:#sql注入
更新了:sql注入
描述:记录实战中的各种sql注入绕过姿势
URL:https://github.com/Junehck/SQL-injection-bypass
标签:#sql注入
GitHub监控消息提醒!!!
更新了:反序列化
描述:复现Java反序列化漏洞
URL:https://github.com/wudipangpapa/CCShiro-CBShiro-CB
标签:#反序列化
更新了:反序列化
描述:复现Java反序列化漏洞
URL:https://github.com/wudipangpapa/CCShiro-CBShiro-CB
标签:#反序列化
GitHub监控消息提醒!!!
更新了:Red Team
描述:Red Team Infrastructure Builder
URL:https://github.com/andrejtomci/RTIB
标签:#Red Team
更新了:Red Team
描述:Red Team Infrastructure Builder
URL:https://github.com/andrejtomci/RTIB
标签:#Red Team
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-22947 reproduce
URL:https://github.com/aesm1p/CVE-2022-22947-POC-Reproduce
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-22947 reproduce
URL:https://github.com/aesm1p/CVE-2022-22947-POC-Reproduce
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:Red Team
描述:Red Team Service Center Blazor
URL:https://github.com/StergiosVogiatzis/Session-24
标签:#Red Team
更新了:Red Team
描述:Red Team Service Center Blazor
URL:https://github.com/StergiosVogiatzis/Session-24
标签:#Red Team
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:Spring has Confirmed the RCE in Spring Framework. The team has just published the statement along with the mitigation guides for the issue. Now, this vulnerability can be tracked as CVE-2022-22965.
URL:https://github.com/Snip3R69/spring-shell-vuln
标签:#CVE-2022
更新了:CVE-2022
描述:Spring has Confirmed the RCE in Spring Framework. The team has just published the statement along with the mitigation guides for the issue. Now, this vulnerability can be tracked as CVE-2022-22965.
URL:https://github.com/Snip3R69/spring-shell-vuln
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-25636 exploit rewritten with pipe primitive
URL:https://github.com/veritas501/CVE-2022-25636-PipeVersion
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-25636 exploit rewritten with pipe primitive
URL:https://github.com/veritas501/CVE-2022-25636-PipeVersion
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:webshell
描述:Common typescript libraries used across webshell clients
URL:https://github.com/bastionzero/webshell-common-ts
标签:#webshell
更新了:webshell
描述:Common typescript libraries used across webshell clients
URL:https://github.com/bastionzero/webshell-common-ts
标签:#webshell
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-0185 exploit rewritten with pipe primitive
URL:https://github.com/veritas501/CVE-2022-0185-PipeVersion
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-0185 exploit rewritten with pipe primitive
URL:https://github.com/veritas501/CVE-2022-0185-PipeVersion
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:绕过
描述:TrickyRule——针对Google FCM域名及IP、部分国外顶级域名优化,并且尝试绕过一些网站的代理工具检测。
URL:https://github.com/ChengzhiLiu/TrickyRule
标签:#绕过
更新了:绕过
描述:TrickyRule——针对Google FCM域名及IP、部分国外顶级域名优化,并且尝试绕过一些网站的代理工具检测。
URL:https://github.com/ChengzhiLiu/TrickyRule
标签:#绕过
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:Exploitation of CVE-2022-22639
URL:https://github.com/jhftss/CVE-2022-22639
标签:#CVE-2022
更新了:CVE-2022
描述:Exploitation of CVE-2022-22639
URL:https://github.com/jhftss/CVE-2022-22639
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:Red Team
描述:Certified Red Team Operator
URL:https://github.com/h3ll0clar1c3/CRTO
标签:#Red Team
更新了:Red Team
描述:Certified Red Team Operator
URL:https://github.com/h3ll0clar1c3/CRTO
标签:#Red Team
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:Vulnerability scanner for Spring4Shell (CVE-2022-22965)
URL:https://github.com/fracturelabs/go-scan-spring
标签:#CVE-2022
更新了:CVE-2022
描述:Vulnerability scanner for Spring4Shell (CVE-2022-22965)
URL:https://github.com/fracturelabs/go-scan-spring
标签:#CVE-2022