📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #Exploit

📦 项目名称: defcon-badge-0day
👤 项目作者: Trinity-SYT-SECURITY
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-15 18:49:49

📝 项目描述:
DEF CON 34 badge

🔗 点击访问项目地址 GitHub - Trinity-SYT-SECURITY/defcon-badge-0day: DEF CON 34 badge
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: websec-scanner
👤 项目作者: HamzaSudozai
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-15 18:11:42

📝 项目描述:
Passive web vulnerability scanner with OWASP Top 10 checks and generates HTML/PDF reports. Authorized security testing only.

🔗 点击访问项目地址 GitHub - HamzaSudozai/websec-scanner: Passive web vulnerability scanner with OWASP Top 10 checks and generates HTML/PDF reports.…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: CVE-2026-20896-Gitea-Authentication-Bypass
👤 项目作者: judgedbykira
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-15 19:05:05

📝 项目描述:
An explanation and PoC to exploit CVE-2026-20896 Authentication Bypass Vulnerability on Gitea. Being able to steal session tokens for valid users in the Gitea instance.

🔗 点击访问项目地址 GitHub - judgedbykira/CVE-2026-20896-Gitea-Authentication-Bypass: An explanation and PoC to exploit CVE-2026-20896 Authentication…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: credjack
👤 项目作者: maximalfocus
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-15 18:29:37

📝 项目描述:
A local, container-only educational demonstration of SSRF to a cloud instance metadata service (CWE-918 / OWASP A10:2021), through to credential replay, and the resolved-address control that stops it. Everything is fictional and runs only on your machine.

🔗 点击访问项目地址 GitHub - maximalfocus/credjack: A local, container-only educational demonstration of SSRF to a cloud instance metadata service…
Back to Top