📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: By-Poloss..-..CVE-2026-18080
👤 项目作者: Polosss
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:05:45

📝 项目描述:
Poc CVE-2026-18080

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: PNGboomer-CVE-2026-77622
👤 项目作者: Squ1shification
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:51:44

📝 项目描述:
Sliver HTTP(S) C2 PNG bomb DoS exploit — GHSA-663m-7x7m-g4fw (CVE-2026-77622)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: mcp-imagemagick-rce
👤 项目作者: s1ko
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:03:40

📝 项目描述:
OS command injection (CWE-78) in Yoshino-Yukitaro/imagemagick_mcp_server — advisory, detection and PoC. Repository archived upstream; no fix possible.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Xray #POC

📦 项目名称: marcelo-ultimate-poc
👤 项目作者: marcelonyc
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:58:57

📝 项目描述:
JFrog Ultimate Bundle POC — Curation, Xray, AppTrust, and Evidence end-to-end demo

🔗 点击访问项目地址 GitHub - marcelonyc/marcelo-ultimate-poc: JFrog Ultimate Bundle POC — Curation, Xray, AppTrust, and Evidence end-to-end demo
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #RCE #POC

📦 项目名称: log4j2-4255-exploit
👤 项目作者: joanbono
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 3
📅 更新时间: 2026-08-26 16:22:20

📝 项目描述:
exploit for Log4j2 (issue 4255)

🔗 点击访问项目地址 GitHub - joanbono/log4j2-4255-exploit: exploit for Log4j2 (issue 4255)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #RCE

📦 项目名称: log4j2-rce
👤 项目作者: hypnguyen1209
🛠 开发语言: Java
Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:00:08

📝 项目描述:
Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2

🔗 点击访问项目地址 GitHub - hypnguyen1209/log4j2-rce: Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: chrome-vuln-scanner
👤 项目作者: virologi-info
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:49

📝 项目描述:
Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome extension leveraging social engineering.

🔗 点击访问项目地址 GitHub - virologi-info/chrome-vuln-scanner: Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-63520
👤 项目作者: hypnguyen1209
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:55:21

📝 项目描述:
POC pre-auth RCE on Sharepoint chain

🔗 点击访问项目地址 GitHub - hypnguyen1209/CVE-2026-63520: POC pre-auth RCE on Sharepoint chain
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vuln-scanner
👤 项目作者: Rashad351
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:04

📝 项目描述:
Automated Vulnerability Scanner & Report Generator

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #漏洞

📦 项目名称: ForTest
👤 项目作者: wiksongkim-arch
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:51:46

📝 项目描述:
Native Windows desktop app for PRD test-case generation and Jenkins deployment. Source-available for noncommercial use.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: nuclei-run
👤 项目作者: dev-celestia
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:53:28

📝 项目描述:
High-performance, Nuclei-compatible vulnerability scanner written in Rust

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability_scanner
👤 项目作者: AdityaMani58
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:02:02

📝 项目描述:
A vulnerability scanner is a cybersecurity tool that checks computers, networks, websites, or applications for security weaknesses. It identifies issues like outdated software, weak passwords, misconfigurations, and open ports.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #C&C

📦 项目名称: c2
👤 项目作者: rad0xus
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:57:24

📝 项目描述:
c&c

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19632-POC
👤 项目作者: DeadExpl0it
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:29:36

📝 项目描述:
PoC for CVE-2026-19632 - TranslatePress – Multilingual <= 3.3.1 - Unauthenticated Account Takeover via Password Reset Link Disclosure

🔗 点击访问项目地址 GitHub - DeadExpl0it/CVE-2026-19632-POC: PoC for CVE-2026-19632 - TranslatePress – Multilingual <= 3.3.1 - Unauthenticated Account…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: workspace_cyber
👤 项目作者: yogaananda6677
🛠 开发语言: Shell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 13:50:40

📝 项目描述:
Lab keamanan siber berbasis Kali Linux & Docker dengan dukungan GUI—siap untuk belajar Nmap, Wireshark, Burp Suite, dan Metasploit secara terisolasi. 🛡️🐳

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #Phishing

📦 项目名称: phishshield
👤 项目作者: Lu-yanmo
🛠 开发语言: JavaScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 13:51:42

📝 项目描述:
多引擎搜索结果钓鱼防护 Chrome 扩展 —— 自动标记并隐藏仿冒官网的钓鱼网站

🔗 点击访问项目地址 GitHub - Lu-yanmo/phishshield: 多引擎搜索结果钓鱼防护 Chrome 扩展 —— 自动标记并隐藏仿冒官网的钓鱼网站
🚨 GitHub 监控消息提醒

🚨 发现关键词: #横向移动 #域 #SMB #RDP #PTH #Lateral

📦 项目名称: linux_ir
👤 项目作者: MindCatcher69
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 12:13:51

📝 项目描述:
在主机疑似失陷、挖矿、被植入 Webshell/Rootkit、发生横向移动等场景下,60 个模块 **5 分钟内输出完整应急排查报告**(终端大屏 / 纯文本日志 / JSON 结构化 / HTML 可视化)。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #RCE

📦 项目名称: log4j-fois-marshalledobject
👤 项目作者: striga-ai
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 13:04:49

📝 项目描述:
FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject, auto-triggered during Log4jLogEvent deserialization, leading to unauthenticated RCE on serialized log receivers.

🔗 点击访问项目地址 GitHub - striga-ai/log4j-fois-marshalledobject: FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject, auto…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: ghostlock-infinix-hot70
👤 项目作者: rsyzee
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 13:02:43

📝 项目描述:
Proof-of-concept kernel exploit for GhostLock (CVE-2026-43499) on the Infinix Hot 70.

🔗 点击访问项目地址 rsyzee/ghostlock-infinix-hot70
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: StrikeAgent_AtkBrain-Flash
👤 项目作者: Bouquets-ai
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 12:23:57

📝 项目描述:
独立开发的AI渗透测试平台,涵盖红队打点、SRC、CTF,希望能给社区带来点真正能用的东西

🔗 点击访问项目地址 GitHub - Bouquets-ai/StrikeAgent_AtkBrain-Flash: 独立开发的AI渗透测试平台,涵盖红队打点、SRC、CTF,希望能给社区带来点真正能用的东西
Back to Top