📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework #Beacon
📦 项目名称: C2-Tracker
👤 项目作者: 0xvuln0
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 00:03:04
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework #Beacon
📦 项目名称: C2-Tracker
👤 项目作者: 0xvuln0
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-27 00:03:04
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: trivy-installer
👤 项目作者: maniakh
🛠 开发语言: Shell
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 22:51:44
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: trivy-installer
👤 项目作者: maniakh
🛠 开发语言: Shell
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 22:51:44
📝 项目描述:
Installs Trivy vulnerability scanner on Ubuntu, Debian and CentOS using official Aqua Security repositories.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #POC
📦 项目名称: sheetratexploit
👤 项目作者: whoamicrash
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 21:51:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #POC
📦 项目名称: sheetratexploit
👤 项目作者: whoamicrash
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 21:51:41
📝 项目描述:
Proof of Concept (PoC) эксплойт для панели SheetRat, демонстрирующий удаленное выполнение кода (RCE) через комбинацию Path Traversal и DLL Hijacking🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #越权 #POC
📦 项目名称: keel
👤 项目作者: LuckyOneTwoThree
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:38:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #越权 #POC
📦 项目名称: keel
👤 项目作者: LuckyOneTwoThree
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:38:49
📝 项目描述:
A keel for human + AI project management. Markdown as the database, Git as the audit log, Python as the constitution enforcer — decisions never forgotten, AI never overreaches, drafts expire. | 给「人 + AI 协作的项目管理」装一根龙骨。用 Markdown 当数据库,用 Git 当审计日志,用 Python 脚本当宪法执行者 —— 决策不失忆,AI 不越权,草稿会过期。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Command and Control
📦 项目名称: sockpuppets
👤 项目作者: ajm4n
🛠 开发语言: Python
⭐ Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 18:48:34
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Command and Control
📦 项目名称: sockpuppets
👤 项目作者: ajm4n
🛠 开发语言: Python
⭐ Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 18:48:34
📝 项目描述:
SockPuppets - WebSocket-based command and control. Not a good C2. 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rules
📦 项目名称: detection-rules
👤 项目作者: elfx32
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:29:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rules
📦 项目名称: detection-rules
👤 项目作者: elfx32
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:29:49
📝 项目描述:
yara / sigma🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rule #rules #malware
📦 项目名称: MalwareLens_AI
👤 项目作者: Surajit-Samanta
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:54:39
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rule #rules #malware
📦 项目名称: MalwareLens_AI
👤 项目作者: Surajit-Samanta
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:54:39
📝 项目描述:
Static-analysis malware triage workbench (RF + MLP) with MBC/ATT&CK mapping, campaign clustering, and AI-assisted YARA rule generation — built for AICS-108🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vanguard-agentic-security-harness
👤 项目作者: 0xsharz
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:52:44
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vanguard-agentic-security-harness
👤 项目作者: 0xsharz
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:52:44
📝 项目描述:
Agentic vulnerability scanner that builds the target's environment, runs a real exploit inside it, and watches the vulnerability fire.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Spring #POC
📦 项目名称: tmf630-toolkit
👤 项目作者: opentmf
🛠 开发语言: Java
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:06:17
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Spring #POC
📦 项目名称: tmf630-toolkit
👤 项目作者: opentmf
🛠 开发语言: Java
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:06:17
📝 项目描述:
The adaptation of TMF-630 REST API Design Guidelines for Spring Web MVC.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Shellcode #Loader #Evasion #EDR
📦 项目名称: offensive-maldev
👤 项目作者: SlugRegister
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:44:42
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Shellcode #Loader #Evasion #EDR
📦 项目名称: offensive-maldev
👤 项目作者: SlugRegister
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:44:42
📝 项目描述:
Offensive security techniques including AMSI bypass, EDR evasion, process hollowing, and shellcode loading🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #templates
📦 项目名称: nuclei-templates
👤 项目作者: 0XFFFF-XD
🛠 开发语言: Unknown
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-26 16:57:12
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #templates
📦 项目名称: nuclei-templates
👤 项目作者: 0XFFFF-XD
🛠 开发语言: Unknown
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-26 16:57:12
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: cPanel-WHM-CVE-2026-41940-auth-bypass-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:52:26
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: cPanel-WHM-CVE-2026-41940-auth-bypass-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:52:26
📝 项目描述:
Critical authentication bypass exploit for cPanel/WHM CVE-2026-41940. Leverages CRLF injection in cpsrvd daemon to gain root WHM access without credentials. Includes version detection, verbose logging, proxy support, JSON reporting, and post-exploitation account enumeration. For authorized security testing only.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Sliver #Beacon
📦 项目名称: SliverCloak
👤 项目作者: bytebl33d
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:56:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Sliver #Beacon
📦 项目名称: SliverCloak
👤 项目作者: bytebl33d
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:56:10
📝 项目描述:
Go-based build program to clone, run modules, and compile custom Sliver client and server binaries.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: burp-polyproto
👤 项目作者: th3-bl1nd3r
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 15:45:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: burp-polyproto
👤 项目作者: th3-bl1nd3r
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 15:45:38
📝 项目描述:
A vendor-neutral API traffic decoder for Burp Suite — auto-detects gzip/zstd/brotli, gRPC/gRPC-Web, HTTP chunked, and protobuf/JSON/form/XML, with a rule engine and lossless edit+replay.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Professional-Vulnerability-CVE-Scanner
👤 项目作者: waniaazam000-cpu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:57:01
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Professional-Vulnerability-CVE-Scanner
👤 项目作者: waniaazam000-cpu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:57:01
📝 项目描述:
This project is a Python-based vulnerability scanner. It scans a website or IP address to find: Open ports Running services Software versions Known vulnerabilities (CVEs) Risk level Finally, it generates a PDF report and a JSON report.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: safe-fetch-guard
👤 项目作者: anatolyben
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 13:20:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: safe-fetch-guard
👤 项目作者: anatolyben
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 13:20:41
📝 项目描述:
SSRF-safe URL validation and bounded, redirect-controlled HTTP fetch for untrusted outbound requests.🔗 点击访问项目地址