📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:此漏洞的根本原因是**深度差异库(deepdiff)**在反序列化用户输入时,未正确处理双下划线(dunder)属性。 PyTorch Lightning 使用 deepdiff.Delta 对象根据前端操作修改应用状态,设计目标是仅允许特定状态变量的修改。
URL:https://github.com/XiaomingX/cve-2024-5452-poc
标签:#CVE-2024
更新了:CVE-2024
描述:此漏洞的根本原因是**深度差异库(deepdiff)**在反序列化用户输入时,未正确处理双下划线(dunder)属性。 PyTorch Lightning 使用 deepdiff.Delta 对象根据前端操作修改应用状态,设计目标是仅允许特定状态变量的修改。
URL:https://github.com/XiaomingX/cve-2024-5452-poc
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:信息收集
描述:一款简单的 API 信息收集与记录 Burp扩展套件
URL:https://github.com/Z0fSec/Z0fAPICollect
标签:#信息收集
更新了:信息收集
描述:一款简单的 API 信息收集与记录 Burp扩展套件
URL:https://github.com/Z0fSec/Z0fAPICollect
标签:#信息收集
GitHub监控消息提醒!!!
更新了:命令注入
描述:CVE-2024-9441是影响Linear eMerge e3系列(版本1.00-07及之前)的操作系统命令注入漏洞。未经身份验证的远程攻击者可通过HTTP请求中“forgot_password”功能的“login_id”参数,执行任意操作系统命令。
URL:https://github.com/XiaomingX/cve-2024-9441-poc
标签:#命令注入
更新了:命令注入
描述:CVE-2024-9441是影响Linear eMerge e3系列(版本1.00-07及之前)的操作系统命令注入漏洞。未经身份验证的远程攻击者可通过HTTP请求中“forgot_password”功能的“login_id”参数,执行任意操作系统命令。
URL:https://github.com/XiaomingX/cve-2024-9441-poc
标签:#命令注入
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-36401 GeoServer Property 表达式注入命令执行WoodpeckerPlugin
URL:https://github.com/thestar0/CVE-2024-36401-WoodpeckerPlugin
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-36401 GeoServer Property 表达式注入命令执行WoodpeckerPlugin
URL:https://github.com/thestar0/CVE-2024-36401-WoodpeckerPlugin
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-47575是Fortinet的FortiManager和FortiManager Cloud产品中的一个严重漏洞,源于fgfmsd守护进程缺乏对关键功能的身份验证。
URL:https://github.com/XiaomingX/cve-2024-47575-poc
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-47575是Fortinet的FortiManager和FortiManager Cloud产品中的一个严重漏洞,源于fgfmsd守护进程缺乏对关键功能的身份验证。
URL:https://github.com/XiaomingX/cve-2024-47575-poc
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:Nacos Derby命令执行漏洞利用脚本
URL:https://github.com/XiaomingX/Nacos-Derby-rce-exp
标签:#RCE
更新了:RCE
描述:Nacos Derby命令执行漏洞利用脚本
URL:https://github.com/XiaomingX/Nacos-Derby-rce-exp
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Exploit for CVE-2024-48990 (Local Privilege Escalation in needrestart < 3.8)
URL:https://github.com/ns989/CVE-2024-48990
标签:#CVE-2024
更新了:CVE-2024
描述:Exploit for CVE-2024-48990 (Local Privilege Escalation in needrestart < 3.8)
URL:https://github.com/ns989/CVE-2024-48990
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Exploit for CVE-2024-10924 -> Really Simple Security < 9.1.2 authentication bypass
URL:https://github.com/dua1337/Exploit-for-CVE-2024-10924
标签:#CVE-2024
更新了:CVE-2024
描述:Exploit for CVE-2024-10924 -> Really Simple Security < 9.1.2 authentication bypass
URL:https://github.com/dua1337/Exploit-for-CVE-2024-10924
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-4439 docker and poc
URL:https://github.com/w0r1i0g1ht/CVE-2024-4439
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-4439 docker and poc
URL:https://github.com/w0r1i0g1ht/CVE-2024-4439
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:A fast, reliable and lightweight PHP code scanner for detecting XSS, SQLi, Path Traversal, and RCE vulnerabilities.
URL:https://github.com/j4k0m/PHPTickler
标签:#RCE
更新了:RCE
描述:A fast, reliable and lightweight PHP code scanner for detecting XSS, SQLi, Path Traversal, and RCE vulnerabilities.
URL:https://github.com/j4k0m/PHPTickler
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:This is POC of CVE-2024-29671 POC
URL:https://github.com/laskdjlaskdj12/CVE-2024-29671-POC
标签:#CVE-2024
更新了:CVE-2024
描述:This is POC of CVE-2024-29671 POC
URL:https://github.com/laskdjlaskdj12/CVE-2024-29671-POC
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-10220 Test repo
URL:https://github.com/mochizuki875/CVE-2024-10220-githooks
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-10220 Test repo
URL:https://github.com/mochizuki875/CVE-2024-10220-githooks
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-52317 - Apache Tomcat HTTP/2 Data Leakage Vulnerability
URL:https://github.com/TAM-K592/CVE-2024-52317
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-52317 - Apache Tomcat HTTP/2 Data Leakage Vulnerability
URL:https://github.com/TAM-K592/CVE-2024-52317
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:绕过
描述:Snell 协议是一种用于网络代理的加密协议,主要应用于科学上网和数据传输,专门为绕过防火墙和网络审查设计。
URL:https://github.com/passeway/Snell
标签:#绕过
更新了:绕过
描述:Snell 协议是一种用于网络代理的加密协议,主要应用于科学上网和数据传输,专门为绕过防火墙和网络审查设计。
URL:https://github.com/passeway/Snell
标签:#绕过
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:PANW NGFW CVE-2024-0012
URL:https://github.com/Jenderal92/CVE-2024-10508
标签:#CVE-2024
更新了:CVE-2024
描述:PANW NGFW CVE-2024-0012
URL:https://github.com/Jenderal92/CVE-2024-10508
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:PANW NGFW CVE-2024-0012
URL:https://github.com/Jenderal92/CVE-2024-8856
标签:#CVE-2024
更新了:CVE-2024
描述:PANW NGFW CVE-2024-0012
URL:https://github.com/Jenderal92/CVE-2024-8856
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Palo Alto CVE-2024-0012 Exploit POC
URL:https://github.com/VegetableLasagne/CVE-2024-0012
标签:#CVE-2024
更新了:CVE-2024
描述:Palo Alto CVE-2024-0012 Exploit POC
URL:https://github.com/VegetableLasagne/CVE-2024-0012
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:PoC & detailed explanations of 2 CVEs (RCE) in RestrictedPython
URL:https://github.com/laysakura/RestrictedPython-CVE-PoC
标签:#RCE
更新了:RCE
描述:PoC & detailed explanations of 2 CVEs (RCE) in RestrictedPython
URL:https://github.com/laysakura/RestrictedPython-CVE-PoC
标签:#RCE