📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpHistory2Pcap
👤 项目作者: turekt
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-17 22:48:49

📝 项目描述:
Burp extension that enables export of selected traffic in Burp HTTP History tab to a PCAP file.

🔗 点击访问项目地址 GitHub - turekt/BurpHistory2Pcap: Burp extension that enables export of selected traffic in Burp HTTP History tab to a PCAP file.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-20217
👤 项目作者: securifera
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:22:41

📝 项目描述:
ZendTo unauthenticated ClamAV CVE-2026-20217 RCE and default-profile root escalation reproduction

🔗 点击访问项目地址 GitHub - securifera/CVE-2026-20217: ZendTo unauthenticated ClamAV CVE-2026-20217 RCE and default-profile root escalation reproduction
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-71518
👤 项目作者: IlhomjonR
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:23:42

📝 项目描述:
CVE-2026-71518 — Typemill <2.26.0 unauthenticated authorization bypass in media file download (path-equivalent URL variants). Advisory + PoC.

🔗 点击访问项目地址 GitHub - IlhomjonR/CVE-2026-71518: CVE-2026-71518 — Typemill <2.26.0 unauthenticated authorization bypass in media file download…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc-demo
👤 项目作者: 3mptycrown
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:10:17

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - 3mptycrown/xss-poc-demo
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: gtri-emperor-c2
👤 项目作者: jim-koch-atlanta
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:57:06

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - jim-koch-atlanta/gtri-emperor-c2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: mohammed4141-g
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:52:45

📝 项目描述:
Python vulnerability scanner

🔗 点击访问项目地址 GitHub - mohammed4141-g/Vulnerability-Scanner: Python vulnerability scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: Danish_Dev_Capstone
👤 项目作者: danishdev2003
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:28:56

📝 项目描述:
CLI-based real-time network security assessment tool built with Bash.

🔗 点击访问项目地址 GitHub - danishdev2003/Danish_Dev_Capstone: CLI-based real-time network security assessment tool built with Bash.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: python-sigma
👤 项目作者: calebstewart
🛠 开发语言: Python
Star数量: 55 | 🍴 Fork数量: 5
📅 更新时间: 2026-08-17 18:33:40

📝 项目描述:
Python API for interacting with sigma rules.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: OWASP-Juice-World-VAPT
👤 项目作者: dnssneak
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:36:38

📝 项目描述:
Web Application VAPT assessment of OWASP Juice Shop in a controlled Kali Linux lab. Includes reconnaissance, Burp Suite testing, vulnerability validation, evidence collection, risk assessment, and remediation for 7 findings including SQL Injection, DOM XSS, IDOR, information disclosure, verbose errors, missing CSP, and weak password recovery.

🔗 点击访问项目地址 GitHub - dnssneak/OWASP-Juice-World-VAPT: Web Application VAPT assessment of OWASP Juice Shop in a controlled Kali Linux lab. Includes…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: SkeletonKey
👤 项目作者: defineid
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:06:48

📝 项目描述:
CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox

🔗 点击访问项目地址 GitHub - defineid/SkeletonKey: CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-20079
👤 项目作者: CyberAuth
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:39:16

📝 项目描述:
Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.

🔗 点击访问项目地址 GitHub - CyberAuth/CVE-2026-20079: Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: Magic-Blind-SSRF
👤 项目作者: Mrh43er
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:11:23

📝 项目描述:
A Go-based SSRF testing framework for authorized security assessments, featuring callback detection, cloud metadata checks, internal network scanning, DNS rebinding, and automated reporting.

🔗 点击访问项目地址 GitHub - Mrh43er/Magic-Blind-SSRF: A Go-based SSRF testing framework for authorized security assessments, featuring callback detection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: CerberusSSRFExploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:56:35

📝 项目描述:
Cerberus SSRFExploit v3.0 - Advanced SSRF testing tool with cloud metadata, internal network scanning, and blind OOB detection via Interact.sh/Burp. Supports multiple protocols (file://, gopher://) and generates JSON/HTML/PDF reports. Ethical use only! 🚀

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: oHSswqfuWI
👤 项目作者: vqnmux38ej
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:13:21

📝 项目描述:
2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip

🔗 点击访问项目地址 GitHub - vqnmux38ej/oHSswqfuWI: 2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: BUgIDuDybn
👤 项目作者: aqio84skux
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:29:56

📝 项目描述:
2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip

🔗 点击访问项目地址 GitHub - aqio84skux/BUgIDuDybn: 2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vuln-Scanner-Thesis
👤 项目作者: ferryalamsyah23
🛠 开发语言: Vue
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:36:00

📝 项目描述:
A web-based vulnerability scanner developed as part of my final thesis project, using the OWASP WSTG methodology and the Boyer-Moore algorithm to passively detect potential security vulnerabilities in web applications.

🔗 点击访问项目地址 GitHub - ferryalamsyah23/Vuln-Scanner-Thesis: A web-based vulnerability scanner developed as part of my final thesis project, using…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #内网渗透 #隧道

📦 项目名称: CrossC2-CS-4.9--repair
👤 项目作者: Daiyq-hub
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:08:12

📝 项目描述:
CrossC2 适配 Cobalt Strike 4.9 修复版本,跨平台C2框架,支持linux/macos/grpc隧道,红队内网渗透工具

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored

📦 项目名称: Wildfire
👤 项目作者: defineid
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:07:40

📝 项目描述:
CVE-2026-39154 · Stored XSS in CometChat JS SDK

🔗 点击访问项目地址 GitHub - defineid/Wildfire: CVE-2026-39154 · Stored XSS in CometChat JS SDK
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: juice-shop-vapt-assessment
👤 项目作者: Ayan11610
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:52:56

📝 项目描述:
Beginner-friendly VAPT/CTF assessment of OWASP Juice Shop covering SQL Injection, DOM XSS, IDOR, sensitive information exposure, verbose errors, missing CSP, and weak password recovery.

🔗 点击访问项目地址 Ayan11610/juice-shop-vapt-assessment
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-62737
👤 项目作者: loanvui
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:49:11

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - loanvui/CVE-2026-62737
Back to Top