📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #POC #Stored #Reflected
📦 项目名称: Web-Application-Vulnerability-Assessment-OWASP-Top-10-
👤 项目作者: yogeshjadhao0345-cmd
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:04:04
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #POC #Stored #Reflected
📦 项目名称: Web-Application-Vulnerability-Assessment-OWASP-Top-10-
👤 项目作者: yogeshjadhao0345-cmd
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:04:04
📝 项目描述:
Web Application Vulnerability Assessment toolkit targeting OWASP Juice Shop & DVWA. Includes Docker setup, Python PoC scripts for SQL Injection (auth bypass, UNION extraction), Reflected/Stored XSS, and BOLA/IDOR testing, secure remediation code (Node.js, PHP), a testing methodology guide, and a full PDF vulnerability report template.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #Sandbox
📦 项目名称: SecureAssess
👤 项目作者: shaheerali838
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:54:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #Sandbox
📦 项目名称: SecureAssess
👤 项目作者: shaheerali838
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:54:45
📝 项目描述:
SecureAssess is a hybrid threat-detection platform securing remote assessments against OS-level AI cheating tools. It combines low-friction browser telemetry (typing cadence, gaze tracking) with a native Tauri/Rust desktop client to bypass browser sandbox limits, detecting stealth AI copilots, VMs, and unauthorized background processes.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: DrLinter
👤 项目作者: Nikchan5
🛠 开发语言: Makefile
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:58:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: DrLinter
👤 项目作者: Nikchan5
🛠 开发语言: Makefile
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:58:27
📝 项目描述:
Cross-platform CLI/TUI Static Application Security Testing (SAST) engine written in pure C99. Fast, lightweight, and zero-dependency code vulnerability scanner for C/C++, GDScript, and Python.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-72898-metabase-sqli
👤 项目作者: d-maggipinto
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:37:53
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-72898-metabase-sqli
👤 项目作者: d-maggipinto
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:37:53
📝 项目描述:
Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: YellowKey-BitLocker-CVE-2026-45585
👤 项目作者: yellowkeycve2026
🛠 开发语言: C++
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:59:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: YellowKey-BitLocker-CVE-2026-45585
👤 项目作者: yellowkeycve2026
🛠 开发语言: C++
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:59:07
📝 项目描述:
YellowKey BitLocker recovery - bitlocker yellowkey, yellowkey bitlocker, CVE-2026-45585, yellowkey github, yellowkey vulnerability, yellowkey CVE, TPM, BitLocker recovery key backup, Windows 10/11, CLI GUI, portable audit tool. Download:🡇🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored
📦 项目名称: notebooklm-estudo-seguranca-web
👤 项目作者: rotinoM0
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:39:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored
📦 项目名称: notebooklm-estudo-seguranca-web
👤 项目作者: rotinoM0
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:39:56
📝 项目描述:
Notebooklm criado para fins de estudo como parte do curso de cybersegurança dio.me com foco na segurança de sistemas web e estudo de ataques XSS e SQLInjection🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: Cerberus-XSS-
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-26 18:07:12
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: Cerberus-XSS-
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-26 18:07:12
📝 项目描述:
Cerberus XSS by Sudeepa Wanigarathne is an advanced XSS testing tool for pentesters and bug bounty hunters. It features web crawling, WAF bypass, DOM-based XSS detection, and blind XSS logging. With a rich terminal UI, it offers interactive menus, progress bars, and detailed reports. Ethically test with permission only.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: By-Poloss..-..CVE-2026-18080
👤 项目作者: Polosss
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:05:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: By-Poloss..-..CVE-2026-18080
👤 项目作者: Polosss
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:05:45
📝 项目描述:
Poc CVE-2026-18080🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: PNGboomer-CVE-2026-77622
👤 项目作者: Squ1shification
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:51:44
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: PNGboomer-CVE-2026-77622
👤 项目作者: Squ1shification
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:51:44
📝 项目描述:
Sliver HTTP(S) C2 PNG bomb DoS exploit — GHSA-663m-7x7m-g4fw (CVE-2026-77622)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #POC
📦 项目名称: mcp-imagemagick-rce
👤 项目作者: s1ko
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:03:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #POC
📦 项目名称: mcp-imagemagick-rce
👤 项目作者: s1ko
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:03:40
📝 项目描述:
OS command injection (CWE-78) in Yoshino-Yukitaro/imagemagick_mcp_server — advisory, detection and PoC. Repository archived upstream; no fix possible.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Xray #POC
📦 项目名称: marcelo-ultimate-poc
👤 项目作者: marcelonyc
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:58:57
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Xray #POC
📦 项目名称: marcelo-ultimate-poc
👤 项目作者: marcelonyc
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:58:57
📝 项目描述:
JFrog Ultimate Bundle POC — Curation, Xray, AppTrust, and Evidence end-to-end demo🔗 点击访问项目地址
支持5倍验资 【验资:@N9KF】
担保域名:N9.TOP 点击查看
💝 新会员好礼
注册就送28.8U
新人首存/二存/三存最高赠送
💝 老会员好礼
电子狂欢每日存款赠送10%
充值笔笔送3%无上限
夜间充值最高可优惠8888U
香港六合彩
加拿大28全网返水最高
🔥欢迎各位老板加入N9国际娱乐城!
🔥关注N9官方频道参与更多优惠活动
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Log4j #RCE
📦 项目名称: log4j2-rce
👤 项目作者: hypnguyen1209
🛠 开发语言: Java
⭐ Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:00:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Log4j #RCE
📦 项目名称: log4j2-rce
👤 项目作者: hypnguyen1209
🛠 开发语言: Java
⭐ Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:00:08
📝 项目描述:
Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: chrome-vuln-scanner
👤 项目作者: virologi-info
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: chrome-vuln-scanner
👤 项目作者: virologi-info
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:49
📝 项目描述:
Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome extension leveraging social engineering.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-63520
👤 项目作者: hypnguyen1209
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:55:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-63520
👤 项目作者: hypnguyen1209
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:55:21
📝 项目描述:
POC pre-auth RCE on Sharepoint chain🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vuln-scanner
👤 项目作者: Rashad351
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:04
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vuln-scanner
👤 项目作者: Rashad351
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:04
📝 项目描述:
Automated Vulnerability Scanner & Report Generator🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Jenkins #漏洞
📦 项目名称: ForTest
👤 项目作者: wiksongkim-arch
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:51:46
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Jenkins #漏洞
📦 项目名称: ForTest
👤 项目作者: wiksongkim-arch
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:51:46
📝 项目描述:
Native Windows desktop app for PRD test-case generation and Jenkins deployment. Source-available for noncommercial use.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: nuclei-run
👤 项目作者: dev-celestia
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:53:28
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: nuclei-run
👤 项目作者: dev-celestia
🛠 开发语言: Rust
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 14:53:28
📝 项目描述:
High-performance, Nuclei-compatible vulnerability scanner written in Rust🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vulnerability_scanner
👤 项目作者: AdityaMani58
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:02:02
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vulnerability_scanner
👤 项目作者: AdityaMani58
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:02:02
📝 项目描述:
A vulnerability scanner is a cybersecurity tool that checks computers, networks, websites, or applications for security weaknesses. It identifies issues like outdated software, weak passwords, misconfigurations, and open ports.🔗 点击访问项目地址