📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE_2026_2576_PoC
👤 项目作者: SowatKheang
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 23:58:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE_2026_2576_PoC
👤 项目作者: SowatKheang
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 23:58:00
📝 项目描述:
CVE-2026-2576 — Business Directory Plugin SQLi PoC (Local Setup). Unauthenticated Time-Based Blind SQL Injection Business Directory Plugin for WordPress ≤ 6.4.21🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-29971
👤 项目作者: Tharooon
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 22:58:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-29971
👤 项目作者: Tharooon
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 22:58:21
📝 项目描述:
An attacker can execute arbitrary JavaScript in the victim's browser, potentially leading to session hijacking or privilege escalation.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Payload
📦 项目名称: pentest-labs-kali-metasploitable-dvwa
👤 项目作者: lehidavet
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 22:01:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Payload
📦 项目名称: pentest-labs-kali-metasploitable-dvwa
👤 项目作者: lehidavet
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 22:01:10
📝 项目描述:
Labs práticos de pentest com Kali Linux, Metasploitable 2 e DVWA — cobrindo Nmap, SQL Injection e XSS em ambiente controlado.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF
📦 项目名称: thingsboard-ssrf-cve-2025-34282
👤 项目作者: mathitam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 21:54:01
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF
📦 项目名称: thingsboard-ssrf-cve-2025-34282
👤 项目作者: mathitam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 21:54:01
📝 项目描述:
PoC exploit for CVE-2025-34282 - ThingsBoard SSRF via SVG Image Upload🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #EXP #Exploit
📦 项目名称: bin-exp-journey
👤 项目作者: akn-cybersec
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 20:59:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #EXP #Exploit
📦 项目名称: bin-exp-journey
👤 项目作者: akn-cybersec
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 20:59:56
📝 项目描述:
This repo is my public journey — every solve, every struggle, every technique. I document everything because there was a time when easy felt impossible. We fall 9 times and rise 10.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #溯源 #IP
📦 项目名称: oyXDEGIvst
👤 项目作者: kevinyang11101
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:19:24
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #溯源 #IP
📦 项目名称: oyXDEGIvst
👤 项目作者: kevinyang11101
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:19:24
📝 项目描述:
【Java计算机毕业设计分享】基于区块链的禽类溯源系统设计与实现,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #越权 #逻辑
📦 项目名称: Security_Audit_Report_Blog
👤 项目作者: ysi6701
🛠 开发语言: None
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:14:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #越权 #逻辑
📦 项目名称: Security_Audit_Report_Blog
👤 项目作者: ysi6701
🛠 开发语言: None
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:14:55
📝 项目描述:
典型的 Java/Spring Boot 前后端分离博客系统安全审计实战项目。包含深度代码审计报告、高危漏洞剖析(XSS、越权、并发脏写)及修复方案。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #AV
📦 项目名称: obsidian-server-clipper
👤 项目作者: jcenters
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:01:32
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #AV
📦 项目名称: obsidian-server-clipper
👤 项目作者: jcenters
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 19:01:32
📝 项目描述:
Headless web clipper for Obsidian — runs on a server, bypasses Cloudflare, no browser extension required🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF
📦 项目名称: StatWoX
👤 项目作者: MrCh0p808
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:56:23
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF
📦 项目名称: StatWoX
👤 项目作者: MrCh0p808
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:56:23
📝 项目描述:
StatWoX is a high-octane serverless survey hybrid. Hardened by the CoderWa Protocol : boasting centralized Edge middleware, SSRF prevention, CIDR subnet matching, and atomic DB transactions. Features an advanced UI canvas, real-time WS sockets, and AI-driven data insights. A masterclass in scalable Next.js 15 architecture.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #钓鱼 #系统 #页面
📦 项目名称: gallifreys-fish-farm
👤 项目作者: gallifreyCar
🛠 开发语言: Dart
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:41:33
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #钓鱼 #系统 #页面
📦 项目名称: gallifreys-fish-farm
👤 项目作者: gallifreyCar
🛠 开发语言: Dart
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:41:33
📝 项目描述:
🐟 An open-source idle fishing pet game built with Flutter - 开源钓鱼挂机养成游戏🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CSRF
📦 项目名称: vulnerability-scanner-pro
👤 项目作者: himanshuvats123
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:59:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CSRF
📦 项目名称: vulnerability-scanner-pro
👤 项目作者: himanshuvats123
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:59:00
📝 项目描述:
🛡️ Web-Based Vulnerability Scanner built with Flask for detecting XSS, SQL Injection, CSRF, API flaws & open ports with real-time monitoring and downloadable reports.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #AV
📦 项目名称: vinted-scraper-python
👤 项目作者: KinderBW
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:01:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #AV
📦 项目名称: vinted-scraper-python
👤 项目作者: KinderBW
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:01:27
📝 项目描述:
Vinted Scraper Python 2026 (Bypass Cloudflare & Datadome)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-29905
👤 项目作者: Stalin-143
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:56:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-29905
👤 项目作者: Stalin-143
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 16:56:10
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #渗透 #测试
📦 项目名称: nemo-agent
👤 项目作者: hanc00l
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 15:48:26
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #渗透 #测试
📦 项目名称: nemo-agent
👤 项目作者: hanc00l
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 15:48:26
📝 项目描述:
基于 Claude Code 的自动化渗透测试 Agent,目标是达到中高级网络安全专家水平。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-3891
👤 项目作者: vladimirmanylobed451
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 15:48:48
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026
📦 项目名称: CVE-2026-3891
👤 项目作者: vladimirmanylobed451
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 15:48:48
📝 项目描述:
Demonstrate an unauthenticated arbitrary file upload exploit in Pix for WooCommerce plugin versions up to 1.5.0 using exposed AJAX endpoints.🔗 点击访问项目地址