📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: HIPR
👤 项目作者: Jboxbobby
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:06:46

📝 项目描述:
HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine built with FastAPI and HTTPX. Features phase-decoupled timeouts, exponential backoff with full jitter, connection pooling, and defense-in-depth SSRF/DNS-rebinding protection.

🔗 点击访问项目地址 GitHub - Jboxbobby/HIPR: HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: langchain-hardened
👤 项目作者: hedgerow-dev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:51:05

📝 项目描述:
Secure-defaults drop-in shim for LangChain: SSRF-checked loaders, deserialization allowlisting, jinja2 SSTI gate, human-approval-gated tools. MIT. From Hedgerow.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: File-Upload-Vulnerability-Magic-Bytes-ValidatorFile-Upload-Vulnerability-Magic-Bytes-Validator
👤 项目作者: jenishs524
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:43:30

📝 项目描述:
An enterprise file upload security engine written in Python. Protects applications against Remote Code Execution (RCE), Unrestricted File Upload vulnerabilities, Polyglot web shells, and MIME-type spoofing through deep file inspection and magic byte validation.

🔗 点击访问项目地址 GitHub - jenishs524/File-Upload-Vulnerability-Magic-Bytes-ValidatorFile-Upload-Vulnerability-Magic-Bytes-Validator: An enterprise…
Back to Top