📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:Red Team
描述:Red Teaming Hands-On Projects
URL:https://github.com/Jameelaf/Red-Teaming
标签:#Red Team
更新了:Red Team
描述:Red Teaming Hands-On Projects
URL:https://github.com/Jameelaf/Red-Teaming
标签:#Red Team
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:WBW Product Table Pro <= 1.9.4 - Unauthenticated Arbitrary SQL Execution to RCE
URL:https://github.com/KTN1990/CVE-2024-43918
标签:#CVE-2024
更新了:CVE-2024
描述:WBW Product Table Pro <= 1.9.4 - Unauthenticated Arbitrary SQL Execution to RCE
URL:https://github.com/KTN1990/CVE-2024-43918
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:代码审计
描述:sdlc 是一个基于 Go 语言构建的安全漏洞示范平台,旨在促进 DevSecOps 和安全开发生命周期 (SDLC) 实践。它通过模拟常见漏洞来增强开发人员的安全意识,除了可以用于devsecops以外,还可以用于安全行业从事者学习漏洞知识或者渗透知识,代码审计,提供了一个实践和学习的环境。本项目采用了前后端分离的设计模式,其中后端利用了轻量级框架 Gin,而前端则使用了 Vue 3。
URL:https://github.com/Night-Master/sdlc_golang
标签:#代码审计
更新了:代码审计
描述:sdlc 是一个基于 Go 语言构建的安全漏洞示范平台,旨在促进 DevSecOps 和安全开发生命周期 (SDLC) 实践。它通过模拟常见漏洞来增强开发人员的安全意识,除了可以用于devsecops以外,还可以用于安全行业从事者学习漏洞知识或者渗透知识,代码审计,提供了一个实践和学习的环境。本项目采用了前后端分离的设计模式,其中后端利用了轻量级框架 Gin,而前端则使用了 Vue 3。
URL:https://github.com/Night-Master/sdlc_golang
标签:#代码审计
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Automated Exploit for CVE-2024-34716 for Prestashop.
URL:https://github.com/atirjavid/Prestashop_CVE-2024-34716
标签:#CVE-2024
更新了:CVE-2024
描述:Automated Exploit for CVE-2024-34716 for Prestashop.
URL:https://github.com/atirjavid/Prestashop_CVE-2024-34716
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:RCE exploit to attack HG532c Huawei Modems
URL:https://github.com/revers3everything/rce-HG532c
标签:#RCE
更新了:RCE
描述:RCE exploit to attack HG532c Huawei Modems
URL:https://github.com/revers3everything/rce-HG532c
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:CVE-2023-4220 PoC Chamilo RCE
URL:https://github.com/VanishedPeople/CVE-2023-4220
标签:#RCE
更新了:RCE
描述:CVE-2023-4220 PoC Chamilo RCE
URL:https://github.com/VanishedPeople/CVE-2023-4220
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:Este es mi informe sobre la maquina blurry de HTB, es una maquina la cual se consigue acceso a partir de una RCE, tiene una escalada un poco rebuscada pero entretenida.
URL:https://github.com/Gorkaaaa/Write-Up-BLURRY-HTB
标签:#RCE
更新了:RCE
描述:Este es mi informe sobre la maquina blurry de HTB, es una maquina la cual se consigue acceso a partir de una RCE, tiene una escalada un poco rebuscada pero entretenida.
URL:https://github.com/Gorkaaaa/Write-Up-BLURRY-HTB
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Faizan-Khanx/PYTHA-SHELL
标签:#RCE
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/Faizan-Khanx/PYTHA-SHELL
标签:#RCE
GitHub监控消息提醒!!!
更新了:渗透测试
描述:HackerStack是一个在线的渗透测试系统,这个版本是免费版本的,包括后端用户系统以及api系统都是开源的,但是不提供任何的部署教程
URL:https://github.com/lwc-cloud/hacker-stack
标签:#渗透测试
更新了:渗透测试
描述:HackerStack是一个在线的渗透测试系统,这个版本是免费版本的,包括后端用户系统以及api系统都是开源的,但是不提供任何的部署教程
URL:https://github.com/lwc-cloud/hacker-stack
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:sql注入
描述:自动化sql注入脚本-支持盲注/union/sleep
URL:https://github.com/mingkai130/sql-injection
标签:#sql注入
更新了:sql注入
描述:自动化sql注入脚本-支持盲注/union/sleep
URL:https://github.com/mingkai130/sql-injection
标签:#sql注入
GitHub监控消息提醒!!!
更新了:漏洞扫描
描述:simpleIAST- 基于污点追踪的灰盒漏洞扫描工具。
URL:https://github.com/keven1z/simpleIAST
标签:#漏洞扫描
更新了:漏洞扫描
描述:simpleIAST- 基于污点追踪的灰盒漏洞扫描工具。
URL:https://github.com/keven1z/simpleIAST
标签:#漏洞扫描
GitHub监控消息提醒!!!
更新了:漏洞利用
描述:使用JAVAFX写了一个Thinkphp的GUI漏洞检测利用工具
URL:https://github.com/itchen-2002/ThinkPHPGUI
标签:#漏洞利用
更新了:漏洞利用
描述:使用JAVAFX写了一个Thinkphp的GUI漏洞检测利用工具
URL:https://github.com/itchen-2002/ThinkPHPGUI
标签:#漏洞利用
GitHub监控消息提醒!!!
更新了:反序列化
描述:Visual Studio .suo文件反序列化漏洞利用工具
URL:https://github.com/Brassinolide/VS_Deserialize_Exploit
标签:#反序列化
更新了:反序列化
描述:Visual Studio .suo文件反序列化漏洞利用工具
URL:https://github.com/Brassinolide/VS_Deserialize_Exploit
标签:#反序列化
GitHub监控消息提醒!!!
更新了:渗透测试
描述:一个可以diy的渗透测试集成工具的gui界面,当然其他用途也可以
URL:https://github.com/bdkuzma/GUI_tools
标签:#渗透测试
更新了:渗透测试
描述:一个可以diy的渗透测试集成工具的gui界面,当然其他用途也可以
URL:https://github.com/bdkuzma/GUI_tools
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Kode Eksploitasi CVE-2024-38063
URL:https://github.com/ArenaldyP/CVE-2024-38063-Medium
标签:#CVE-2024
更新了:CVE-2024
描述:Kode Eksploitasi CVE-2024-38063
URL:https://github.com/ArenaldyP/CVE-2024-38063-Medium
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:Insecure Deserialization to RCE in NodeJS
URL:https://github.com/gil01karougbe/nodeserialize-poc
标签:#RCE
更新了:RCE
描述:Insecure Deserialization to RCE in NodeJS
URL:https://github.com/gil01karougbe/nodeserialize-poc
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:CVE-2024-3273 - D-Link Remote Code Execution (RCE)
URL:https://github.com/X-Projetion/CVE-2024-3273-D-Link-Remote-Code-Execution-RCE
标签:#RCE
更新了:RCE
描述:CVE-2024-3273 - D-Link Remote Code Execution (RCE)
URL:https://github.com/X-Projetion/CVE-2024-3273-D-Link-Remote-Code-Execution-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-3273 - D-Link Remote Code Execution (RCE)
URL:https://github.com/X-Projetion/CVE-2024-3273-D-Link-Remote-Code-Execution-RCE-
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-3273 - D-Link Remote Code Execution (RCE)
URL:https://github.com/X-Projetion/CVE-2024-3273-D-Link-Remote-Code-Execution-RCE-
标签:#CVE-2024