📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: SQLi_XSS_tester
👤 项目作者: Spellskite-coding
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:51:07

📝 项目描述:
A Python script to automate the SQLi and XSS vulnerability reconnaissance phase for your pentests!

🔗 点击访问项目地址 GitHub - Spellskite-coding/SQLi_XSS_tester: A Python script to automate the SQLi and XSS vulnerability reconnaissance phase for…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: stored-xss
👤 项目作者: rood8008
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 20:06:11

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: reflections-ai-journal
👤 项目作者: Harshil-2711
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:43:54

📝 项目描述:
Production AI-guided cognitive reflection journal powered by Google Gemini, Firebase Auth, and Cloud Firestore. Features Location-Aware Grounding (Google Maps), Admin RBAC & Telemetry, SSRF-Protected Webhooks (Slack/Discord), Multi-Perspective Shifting (Stoic/CBT), Emotional Valence Gauges, and 4-tier model fallback resilience.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: win_malware_analyzer
👤 项目作者: Spellskite-coding
🛠 开发语言: Python
Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:56:20

📝 项目描述:
A Python script that automates static analysis, yara analysis and reverse-engineering on Windows (exe, sys, dll) binaries!

🔗 点击访问项目地址 GitHub - Spellskite-coding/win_malware_analyzer: A Python script that automates static analysis, yara analysis and reverse-engineering…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored #Reflected

📦 项目名称: Web-Application-Vulnerability-Assessment-OWASP-Top-10-
👤 项目作者: yogeshjadhao0345-cmd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:04:04

📝 项目描述:
Web Application Vulnerability Assessment toolkit targeting OWASP Juice Shop & DVWA. Includes Docker setup, Python PoC scripts for SQL Injection (auth bypass, UNION extraction), Reflected/Stored XSS, and BOLA/IDOR testing, secure remediation code (Node.js, PHP), a testing methodology guide, and a full PDF vulnerability report template.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #Sandbox

📦 项目名称: SecureAssess
👤 项目作者: shaheerali838
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:54:45

📝 项目描述:
SecureAssess is a hybrid threat-detection platform securing remote assessments against OS-level AI cheating tools. It combines low-friction browser telemetry (typing cadence, gaze tracking) with a native Tauri/Rust desktop client to bypass browser sandbox limits, detecting stealth AI copilots, VMs, and unauthorized background processes.

🔗 点击访问项目地址 shaheerali838/SecureAssess
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: DrLinter
👤 项目作者: Nikchan5
🛠 开发语言: Makefile
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:58:27

📝 项目描述:
Cross-platform CLI/TUI Static Application Security Testing (SAST) engine written in pure C99. Fast, lightweight, and zero-dependency code vulnerability scanner for C/C++, GDScript, and Python.

🔗 点击访问项目地址 GitHub - Nikchan5/DrLinter: Cross-platform CLI/TUI Static Application Security Testing (SAST) engine written in pure C99. Fast…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-72898-metabase-sqli
👤 项目作者: d-maggipinto
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:37:53

📝 项目描述:
Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)

🔗 点击访问项目地址 GitHub - d-maggipinto/CVE-2026-72898-metabase-sqli: Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: YellowKey-BitLocker-CVE-2026-45585
👤 项目作者: yellowkeycve2026
🛠 开发语言: C++
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:59:07

📝 项目描述:
YellowKey BitLocker recovery - bitlocker yellowkey, yellowkey bitlocker, CVE-2026-45585, yellowkey github, yellowkey vulnerability, yellowkey CVE, TPM, BitLocker recovery key backup, Windows 10/11, CLI GUI, portable audit tool. Download:🡇

🔗 点击访问项目地址 GitHub - yellowkeycve2026/YellowKey-BitLocker-CVE-2026-45585: YellowKey BitLocker recovery - bitlocker yellowkey, yellowkey bitlocker…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: notebooklm-estudo-seguranca-web
👤 项目作者: rotinoM0
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:39:56

📝 项目描述:
Notebooklm criado para fins de estudo como parte do curso de cybersegurança dio.me com foco na segurança de sistemas web e estudo de ataques XSS e SQLInjection

🔗 点击访问项目地址 GitHub - rotinoM0/notebooklm-estudo-seguranca-web: Notebooklm criado para fins de estudo como parte do curso de cybersegurança…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Cerberus-XSS-
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-26 18:07:12

📝 项目描述:
Cerberus XSS by Sudeepa Wanigarathne is an advanced XSS testing tool for pentesters and bug bounty hunters. It features web crawling, WAF bypass, DOM-based XSS detection, and blind XSS logging. With a rich terminal UI, it offers interactive menus, progress bars, and detailed reports. Ethically test with permission only.

🔗 点击访问项目地址 GitHub - CerberusMrXi/Cerberus-XSS-: Cerberus XSS by Sudeepa Wanigarathne is an advanced XSS testing tool for pentesters and bug…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: By-Poloss..-..CVE-2026-18080
👤 项目作者: Polosss
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:05:45

📝 项目描述:
Poc CVE-2026-18080

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: PNGboomer-CVE-2026-77622
👤 项目作者: Squ1shification
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:51:44

📝 项目描述:
Sliver HTTP(S) C2 PNG bomb DoS exploit — GHSA-663m-7x7m-g4fw (CVE-2026-77622)

🔗 点击访问项目地址
Back to Top