📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: Project-Qogirl6-Unisoc-T606-Longcheer-Supply-Chain-Compromise
👤 项目作者: lexs201992-gif
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:40:53

📝 项目描述:
Clasificación BOD 26-04: Tier 1 (Máxima Prioridad) — Cumple las 4 variables de riesgo. Requiere remediación en 3 días + triaje forense.

🔗 点击访问项目地址 GitHub - lexs201992-gif/Project-Qogirl6-Unisoc-T606-Longcheer-Supply-Chain-Compromise: Clasificación BOD 26-04: Tier 1 (Máxima…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: GhostLock-5.10
👤 项目作者: R0rt1z2
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:41:21

📝 项目描述:
Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)

🔗 点击访问项目地址 GitHub - R0rt1z2/GhostLock-5.10
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #WAF

📦 项目名称: Web-Application-Security-Project
👤 项目作者: LegodiMahlatse1962
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:02:28

📝 项目描述:
Web application security project using PortSwigger Web Security Academy and Burp Suite to identify and validate SQL Injection vulnerabilities. Demonstrates HTTP analysis, WAF/filter bypass techniques, XML entity encoding, vulnerability assessment, evidence collection, impact analysis, and remediation recommendations.

🔗 点击访问项目地址 GitHub - LegodiMahlatse1962/Web-Application-Security-Project: Web application security project using PortSwigger Web Security Academy…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: Yara-Rules
👤 项目作者: pandare9x
🛠 开发语言: YARA
Star数量: 150 | 🍴 Fork数量: 14
📅 更新时间: 2026-08-17 23:56:49

📝 项目描述:
Repository of Yara Rules

🔗 点击访问项目地址 GitHub - pandare9x/Yara-Rules: Repository of Yara Rules
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpHistory2Pcap
👤 项目作者: turekt
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-17 22:48:49

📝 项目描述:
Burp extension that enables export of selected traffic in Burp HTTP History tab to a PCAP file.

🔗 点击访问项目地址 GitHub - turekt/BurpHistory2Pcap: Burp extension that enables export of selected traffic in Burp HTTP History tab to a PCAP file.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-20217
👤 项目作者: securifera
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:22:41

📝 项目描述:
ZendTo unauthenticated ClamAV CVE-2026-20217 RCE and default-profile root escalation reproduction

🔗 点击访问项目地址 GitHub - securifera/CVE-2026-20217: ZendTo unauthenticated ClamAV CVE-2026-20217 RCE and default-profile root escalation reproduction
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-71518
👤 项目作者: IlhomjonR
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:23:42

📝 项目描述:
CVE-2026-71518 — Typemill <2.26.0 unauthenticated authorization bypass in media file download (path-equivalent URL variants). Advisory + PoC.

🔗 点击访问项目地址 GitHub - IlhomjonR/CVE-2026-71518: CVE-2026-71518 — Typemill <2.26.0 unauthenticated authorization bypass in media file download…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: xss-poc-demo
👤 项目作者: 3mptycrown
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:10:17

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - 3mptycrown/xss-poc-demo
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: gtri-emperor-c2
👤 项目作者: jim-koch-atlanta
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:57:06

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - jim-koch-atlanta/gtri-emperor-c2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: mohammed4141-g
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:52:45

📝 项目描述:
Python vulnerability scanner

🔗 点击访问项目地址 GitHub - mohammed4141-g/Vulnerability-Scanner: Python vulnerability scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: Danish_Dev_Capstone
👤 项目作者: danishdev2003
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:28:56

📝 项目描述:
CLI-based real-time network security assessment tool built with Bash.

🔗 点击访问项目地址 GitHub - danishdev2003/Danish_Dev_Capstone: CLI-based real-time network security assessment tool built with Bash.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: python-sigma
👤 项目作者: calebstewart
🛠 开发语言: Python
Star数量: 55 | 🍴 Fork数量: 5
📅 更新时间: 2026-08-17 18:33:40

📝 项目描述:
Python API for interacting with sigma rules.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: OWASP-Juice-World-VAPT
👤 项目作者: dnssneak
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:36:38

📝 项目描述:
Web Application VAPT assessment of OWASP Juice Shop in a controlled Kali Linux lab. Includes reconnaissance, Burp Suite testing, vulnerability validation, evidence collection, risk assessment, and remediation for 7 findings including SQL Injection, DOM XSS, IDOR, information disclosure, verbose errors, missing CSP, and weak password recovery.

🔗 点击访问项目地址 GitHub - dnssneak/OWASP-Juice-World-VAPT: Web Application VAPT assessment of OWASP Juice Shop in a controlled Kali Linux lab. Includes…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: SkeletonKey
👤 项目作者: defineid
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:06:48

📝 项目描述:
CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox

🔗 点击访问项目地址 GitHub - defineid/SkeletonKey: CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-20079
👤 项目作者: CyberAuth
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:39:16

📝 项目描述:
Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.

🔗 点击访问项目地址 GitHub - CyberAuth/CVE-2026-20079: Python proof of concept for CVE-2026-20079 affecting Cisco Secure Firewall Management Center.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: Magic-Blind-SSRF
👤 项目作者: Mrh43er
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:11:23

📝 项目描述:
A Go-based SSRF testing framework for authorized security assessments, featuring callback detection, cloud metadata checks, internal network scanning, DNS rebinding, and automated reporting.

🔗 点击访问项目地址 GitHub - Mrh43er/Magic-Blind-SSRF: A Go-based SSRF testing framework for authorized security assessments, featuring callback detection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: CerberusSSRFExploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:56:35

📝 项目描述:
Cerberus SSRFExploit v3.0 - Advanced SSRF testing tool with cloud metadata, internal network scanning, and blind OOB detection via Interact.sh/Burp. Supports multiple protocols (file://, gopher://) and generates JSON/HTML/PDF reports. Ethical use only! 🚀

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: oHSswqfuWI
👤 项目作者: vqnmux38ej
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:13:21

📝 项目描述:
2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip

🔗 点击访问项目地址 GitHub - vqnmux38ej/oHSswqfuWI: 2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: BUgIDuDybn
👤 项目作者: aqio84skux
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:29:56

📝 项目描述:
2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip

🔗 点击访问项目地址 GitHub - aqio84skux/BUgIDuDybn: 2025年网络工程毕设一套(论文+程序源码文件)网络安全测试工具集的设计与实现 关键词:网络安全测试,模块化设计,Python开发,漏洞发现,渗透测试定稿.zip
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vuln-Scanner-Thesis
👤 项目作者: ferryalamsyah23
🛠 开发语言: Vue
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:36:00

📝 项目描述:
A web-based vulnerability scanner developed as part of my final thesis project, using the OWASP WSTG methodology and the Boyer-Moore algorithm to passively detect potential security vulnerabilities in web applications.

🔗 点击访问项目地址 GitHub - ferryalamsyah23/Vuln-Scanner-Thesis: A web-based vulnerability scanner developed as part of my final thesis project, using…
Back to Top