📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: secure-currency-converter
👤 项目作者: Mdsoare
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 18:17:22

📝 项目描述:
Conversor de câmbio desenvolvido para fins de estudo em AppSec e Arquitetura Front-end. Implementa mitigação de XSS, CSP restrita, Rate Limiting no cliente (Debounce) e segregação estrita de assets (HTML, CSS, JS).

🔗 点击访问项目地址 GitHub - Mdsoare/secure-currency-converter: Conversor de câmbio desenvolvido para fins de estudo em AppSec e Arquitetura Front…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-GeoLeak-CVE-2026-52715
👤 项目作者: 686f6c61
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 18:37:45

📝 项目描述:
PoC funcional de CVE-2026-52715 (GeoLeak): SQLi no autenticada en GEO my WordPress <= 4.5.5 via swlatlng/nelatlng. Laboratorio Docker + exploit time-based/boolean-based + exfiltracion sin comas en payload.

🔗 点击访问项目地址 GitHub - 686f6c61/POC-GeoLeak-CVE-2026-52715: PoC funcional de CVE-2026-52715 (GeoLeak): SQLi no autenticada en GEO my WordPress…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: MalwareAnalysis-in-PDF
👤 项目作者: filipi86
🛠 开发语言: Unknown
Star数量: 236 | 🍴 Fork数量: 29
📅 更新时间: 2026-08-14 17:56:57

📝 项目描述:
Malicious PDF files recently considered one of the most dangerous threats to the system security. The flexible code-bearing vector of the PDF format enables to attacker to carry out malicious code on the computer system for user exploitation.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin #Extension

📦 项目名称: BurpSuiteCommunity-Search-Plugin
👤 项目作者: mohammedshine-beta
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 17:29:45

📝 项目描述:
Burp Suite Community Edition extension providing a powerful HTTP traffic search feature. Search captured requests and responses using keywords or regex, with filters, match highlighting, snippets, and searchable traffic history. Built for penetration testers to quickly find secrets, tokens, endpoints, parameters, and other interesting patterns.

🔗 点击访问项目地址 mohammedshine-beta/BurpSuiteCommunity-Search-Plugin
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: SquidSec_BurpAIBridge
👤 项目作者: SquidSec
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 17:42:45

📝 项目描述:
Burp Suite extension: loopback MCP/HTTP API so agents can drive live Burp (scope, history, send, scanner, collaborator).

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: ResetNightmare
👤 项目作者: Semperis-Community
🛠 开发语言: PowerShell
Star数量: 194 | 🍴 Fork数量: 34
📅 更新时间: 2026-08-14 17:21:20

📝 项目描述:
POC tool for ResetNightmare (CVE-2026-27912)

🔗 点击访问项目地址 GitHub - Semperis-Community/ResetNightmare: POC tool for ResetNightmare (CVE-2026-27912)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-12345-poc
👤 项目作者: zahidec0de
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 17:51:16

📝 项目描述:
Proof of Concept (PoC) for CVE-2026-64638, a reflected XSS in WordPress Core < 7.0.3.

🔗 点击访问项目地址
Back to Top