📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2018-14667_Lab_POC
👤 项目作者: aitLmalem
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 13:05:15

📝 项目描述:
Demonstration of the expression language (EL) injection vulnerability CVE-2018-14667 using the photoalbum lab under Jboss application server

🔗 点击访问项目地址 GitHub - aitLmalem/CVE-2018-14667_Lab_POC: Demonstration of the expression language (EL) injection vulnerability CVE-2018-14667…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #Phishing

📦 项目名称: ShadowPhish
👤 项目作者: baohuiking
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 08:42:43

📝 项目描述:
ShadowPhish 钓鱼意识教学 GUI:深色主题、操作手册、启动诊断与子进程 cwd 修复

🔗 点击访问项目地址 GitHub - baohuiking/ShadowPhish: ShadowPhish 钓鱼意识教学 GUI:深色主题、操作手册、启动诊断与子进程 cwd 修复
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #邮件

📦 项目名称: apocalypse-inbox
👤 项目作者: ypuppy
🛠 开发语言: CSS
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 12:58:37

📝 项目描述:
末日收件箱:识别伪造域名的反钓鱼生存小游戏 MVP

🔗 点击访问项目地址 GitHub - ypuppy/apocalypse-inbox: 末日收件箱:识别伪造域名的反钓鱼生存小游戏 MVP
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: url-metadata-social-fetcher
👤 项目作者: vpicciuolo
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 11:35:59

📝 项目描述:
Production-ready TypeScript URL metadata & social profile fetcher. Extract Open Graph, SEO metadata, titles, descriptions, images, social links, follower counts and more with SSRF-safe fetching for Node.js, Bun, Deno and Edge.

🔗 点击访问项目地址 GitHub - vpicciuolo/url-metadata-social-fetcher: Production-ready TypeScript URL metadata & social profile fetcher. Extract Open…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #漏洞

📦 项目名称: zhuatech-oms
👤 项目作者: zhihua-tech
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 08:00:14

📝 项目描述:
知华科技 OMS 社区源码版:Java、Spring Boot、Vue 3 与 MySQL 多渠道订单管理系统

🔗 点击访问项目地址 GitHub - zhihua-tech/zhuatech-oms: 知华科技 OMS 社区源码版:Java、Spring Boot、Vue 3 与 MySQL 多渠道订单管理系统
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Automated-Vulnerability-Scanner
👤 项目作者: awais0-malik
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 11:25:08

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - awais0-malik/Automated-Vulnerability-Scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vuln-scanner
👤 项目作者: igorkuchenbecker
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 10:56:37

📝 项目描述:
Non-destructive web vulnerability scanner. Every request passes one scope-checked, rate-limited chokepoint; findings keep severity and confidence separate and never accuse on weak signal. CLI, self-contained HTML report, and a terminal UI with the full request/response history.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates #CVE #漏洞

📦 项目名称: nuclei-gui
👤 项目作者: ANullBug
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 10:20:46

📝 项目描述:
Nuclei GUI

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates

📦 项目名称: glarion
👤 项目作者: AurelioAvila
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 10:51:33

📝 项目描述:
Authorized website security scanner for agencies, with ownership verification, SSRF protection, controlled Nuclei orchestration and client-ready reports.

🔗 点击访问项目地址 GitHub - AurelioAvila/glarion: Authorized website security scanner for agencies, with ownership verification, SSRF protection,…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: RAQIB_SEC
👤 项目作者: Ali5667
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 09:43:26

📝 项目描述:
Modular security scanning tool for Kali/Debian — malware, rootkits, YARA, persistence, integrity, network & Docker checks, with GPG-signed baselines, JSON reporting, and systemd-based real-time monitoring.

🔗 点击访问项目地址 GitHub - Ali5667/RAQIB_SEC: Modular security scanning tool for Kali/Debian — malware, rootkits, YARA, persistence, integrity, network…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: yara-rules
👤 项目作者: Lynk4
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 09:58:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: incident-to-rce
👤 项目作者: Xeroxx75
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 09:20:18

📝 项目描述:
Controlled TCP server case study: PCAP reconstruction, C source audit, stack corruption, x86 shellcode, RCE, and remediation.

🔗 点击访问项目地址 GitHub - Xeroxx75/incident-to-rce: Controlled TCP server case study: PCAP reconstruction, C source audit, stack corruption, x86…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Execute

📦 项目名称: clovshell
👤 项目作者: atulhacks
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 08:45:54

📝 项目描述:
shellcode workbench — assemble, disassemble, emulate and extract x86/ARM shellcode entirely in your browser

🔗 点击访问项目地址 GitHub - atulhacks/clovshell: shellcode workbench — assemble, disassemble, emulate and extract x86/ARM shellcode entirely in your…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exchange #CVE

📦 项目名称: mex-testing
👤 项目作者: robert-koch-institut
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 10:00:01

📝 项目描述:
RKI Metadata Exchange | Assets, tools and services for mocking and testing MEx packages.

🔗 点击访问项目地址 GitHub - robert-koch-institut/mex-testing: RKI Metadata Exchange | Assets, tools and services for mocking and testing MEx packages.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-82222
👤 项目作者: R0x19
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 09:38:10

📝 项目描述:
GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE

🔗 点击访问项目地址 GitHub - R0x19/CVE-2026-82222: GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏扫

📦 项目名称: leak-sentinel
👤 项目作者: bobxzy-0
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 08:39:41

📝 项目描述:
暗网监控 泄漏扫描

🔗 点击访问项目地址 GitHub - bobxzy-0/leak-sentinel: 暗网监控 泄漏扫描
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: varlib-cve-2025-66034
👤 项目作者: symphony2colour
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 09:00:47

📝 项目描述:
Proof-of-concept exploit for CVE-2025-66034 in the fontTools variable font generation pipeline. A crafted .designspace file allows control of the output path, enabling arbitrary file writes. The script automates payload creation, font generation, and upload to demonstrate the issue.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: burpi
👤 项目作者: Pabl0l
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 07:48:56

📝 项目描述:
Mini suite for web pentesting from CLI.

🔗 点击访问项目地址 GitHub - Pabl0l/burpi: Mini suite for web pentesting from CLI.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #插件 #Extension #漏洞 #渗透

📦 项目名称: BurpFastjsonScan
👤 项目作者: sqsec
🛠 开发语言: Java
Star数量: 6 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-31 08:36:19

📝 项目描述:
一款基于BurpSuite的被动式Fastjson检测插件

🔗 点击访问项目地址 GitHub - sqsec/BurpFastjsonScan: 一款基于BurpSuite的被动式Fastjson检测插件
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: POC-CVE-2026-0073
👤 项目作者: naheeju
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-31 08:43:43

📝 项目描述:
无描述

🔗 点击访问项目地址 naheeju/POC-CVE-2026-0073
Back to Top