📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: yara-rules
👤 项目作者: vldslvpanteleev2003
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 19:58:57

📝 项目描述:
YARA rules for malware detection, reverse engineering and threat hunting.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: cwv-scanner
👤 项目作者: SirCryptic
🛠 开发语言: Python
Star数量: 27 | 🍴 Fork数量: 6
📅 更新时间: 2026-08-30 18:45:10

📝 项目描述:
This is a simple web application vulnerability scanner that checks if a given URL or IP address is vulnerable to 36 common web application security vulnerabilities. The tool is designed to help website owners and security researchers identify vulnerabilities in their web applications that can be exploited by attackers.

🔗 点击访问项目地址 GitHub - SirCryptic/cwv-scanner: This is a simple web application vulnerability scanner that checks if a given URL or IP address…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Oxhunter
👤 项目作者: Talha-Imran-cloud
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 18:55:57

📝 项目描述:
Advanced Web Vulnerability Scanner | 61 Features | XSS, SQLi, SSRF, XXE, JWT Attacks, WAF Bypass, AI-Powered | OWASP Top 10 | Bug Bounty Mode | For Authorized Testing Only

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: Nodemailer-ssrf-file-read-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 18:55:23

📝 项目描述:
Advanced Nodemailer <=9.0.0 exploitation framework for GHSA-p6gq-j5cr-w38f. Features file read, SSRF, cloud metadata extraction (AWS/GCP/Azure), internal service discovery, and DoS attacks. Professional HTML/JSON reporting with interactive shell. For authorized security testing only.

🔗 点击访问项目地址 GitHub - CerberusMrXi/Nodemailer-ssrf-file-read-exploit: Advanced Nodemailer <=9.0.0 exploitation framework for GHSA-p6gq-j5cr…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response

📦 项目名称: BlueTeam-IR-Toolkit
👤 项目作者: DolgormaaS
🛠 开发语言: PowerShell
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 18:59:24

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - DolgormaaS/BlueTeam-IR-Toolkit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: cve-2026-67363-67364
👤 项目作者: Lulztigre
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 18:52:07

📝 项目描述:
Balboa form Command Injection POC

🔗 点击访问项目地址 GitHub - Lulztigre/cve-2026-67363-67364: Balboa form Command Injection POC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Docker #POC

📦 项目名称: DLT-PoC-Docker
👤 项目作者: JishnuSetia
🛠 开发语言: CSS
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 18:05:03

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - JishnuSetia/DLT-PoC-Docker
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: serverkit-clamav
👤 项目作者: jhd3197
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 17:45:54

📝 项目描述:
ClamAV + YARA malware scanning for ServerKit: quick/full/custom-path scans, job-backed app docroot scans with a curated web-shell rule pass, custom .yar rules, scan history, and a quarantine with restore.

🔗 点击访问项目地址 GitHub - jhd3197/serverkit-clamav: ClamAV + YARA malware scanning for ServerKit: quick/full/custom-path scans, job-backed app docroot…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #文件上传 #EXP

📦 项目名称: deepsleep-ai-miaoxin
👤 项目作者: miaoxintechnology
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 15:58:23

📝 项目描述:
DeepSleep,由喵芯科技(Miaoxin Technology)在DeepSeek的基础上开发的AI助手,拥有深度思考、文件处理等能力,具备强大的文件上传能力(例如图像、文档等),可以读取URL,并支持极长的上下文窗口(最多100万tokens)

🔗 点击访问项目地址 GitHub - miaoxintechnology/deepsleep-ai-miaoxin: DeepSleep,由喵芯科技(Miaoxin Technology)在DeepSeek的基础上开发的AI助手,拥有深度思考、文件处理等能力,具备强大的文…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #渗透

📦 项目名称: VULNCLAW
👤 项目作者: AAAAAAAAAA6-FY
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 16:59:28

📝 项目描述:
VULNCLAW 渗透测试平台|AGPL-3.0-or-later WITH Classpath-exception-2.0 开源;37 BaseEngines × AI v100 编排;DAG 流水线;分布式 master-worker;Burp Suite 桥 v1.0.8;MCP 原生接口;商业授权见 README

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: Qtzuu-pentest-toolbox
👤 项目作者: lanyz1
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 17:04:25

📝 项目描述:
@Qtzuu的渗透工具箱 —— 假设驱动的授权红队渗透测试技能框架:11个域 + 状态机攻击链 + 证据账本引擎

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Smart_vul_scanner
👤 项目作者: ankit-kumar-sec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 16:43:26

📝 项目描述:
Smart Vulnerability Scanner — an automated web security assessment tool designed to identify common vulnerabilities, analyze security risks,

🔗 点击访问项目地址 GitHub - ankit-kumar-sec/Smart_vul_scanner: Smart Vulnerability Scanner — an automated web security assessment tool designed to…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: rajnegi999
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 17:02:18

📝 项目描述:
A Python-based vulnerability scanner that detects open ports, risky services, basic web security misconfigurations, service banners, and generates an HTML vulnerability report. Developed as part of the Thiranex Internship

🔗 点击访问项目地址 GitHub - rajnegi999/vulnerability-scanner: A Python-based vulnerability scanner that detects open ports, risky services, basic…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: discord-exploit-poc
👤 项目作者: efeysk
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 17:00:12

📝 项目描述:
Bu repo PoC (proof of concept)'tir. Discord, son güncellemeleri ile birlikte bu hatayı düzeltmiştir.

🔗 点击访问项目地址 GitHub - efeysk/discord-exploit-poc: Bu repo PoC (proof of concept)'tir. Discord, son güncellemeleri ile birlikte bu hatayı düzeltmiştir.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: talos
👤 项目作者: vu1Art1st
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-30 15:54:19

📝 项目描述:
现代化漏洞管理平台:FastAPI + Vue3 重构版(Word导入/在线报告编辑/PDF与Word导出)

🔗 点击访问项目地址 GitHub - vu1Art1st/talos: 现代化漏洞管理平台:FastAPI + Vue3 重构版(Word导入/在线报告编辑/PDF与Word导出)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: cve-writeups-and-pocs
👤 项目作者: suruurism
🛠 开发语言: C
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 16:58:56

📝 项目描述:
CVE-2026-80724 PoC + full write-up — Linux kernel ptp/vmclock read-only mapping becomes writable (VM_MAYWRITE). Discovered, reported & fixed by Abdifatah Suruur (suruurism)

🔗 点击访问项目地址 GitHub - suruurism/cve-writeups-and-pocs: CVE-2026-80724 PoC + full write-up — Linux kernel ptp/vmclock read-only mapping becomes…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: juice
👤 项目作者: ardnyx
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 15:55:48

📝 项目描述:
Custom experimental command-and-control (C2) framework and study documentation

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: pentest-redteam
👤 项目作者: lanyz1
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 15:58:08

📝 项目描述:
假设驱动红队渗透测试技能框架,融合思念派大星/真心为你三包精华

🔗 点击访问项目地址 GitHub - lanyz1/pentest-redteam: 假设驱动红队渗透测试技能框架,融合思念派大星/真心为你三包精华
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: CVE-priority-tool
👤 项目作者: charitha-6270
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 15:58:04

📝 项目描述:
Built a CVE prioritization tool in Python that scans installed software, resolves it to NVD CPE identifiers, and ranks vulnerabilities using CVSS, EPSS exploit-prediction scores, and CISA's KEV catalog — surfacing real-world risk instead of raw severity.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: phpBB-CVE-2026-48611
👤 项目作者: Ethicalgrey
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-30 15:37:36

📝 项目描述:
Automated PoC for CVE-2026-48611 — phpBB OAuth login_link authentication bypass

🔗 点击访问项目地址 GitHub - Ethicalgrey/phpBB-CVE-2026-48611: Automated PoC for CVE-2026-48611 — phpBB OAuth login_link authentication bypass
Back to Top