​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SQL注入 #EXP

📦 项目名称: wafx
👤 项目作者: JiuZero
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 11:29:07

📝 项目描述:
Minimal-request SQL injection confirmation tool (error/boolean/time triage, surgical extract of database()/user()). | 极简请求SQL注入确认工具(错误/布尔/时间三向分流,精准提取database()/user())

🔗 点击访问项目地址 GitHub - JiuZero/wafx: Minimal-request SQL injection confirmation tool (error/boolean/time triage, surgical extract of database()/user()).…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: LAB1-metasploitable
👤 项目作者: aboubacar70
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 11:59:31

📝 项目描述:
Exploitation des vulnérabilités sur la version vsftpd 2.3.4 du service ftp (CVE-2011-2523)

🔗 点击访问项目地址 GitHub - aboubacar70/LAB1-metasploitable: Exploitation des vulnérabilités sur la version vsftpd 2.3.4 du service ftp (CVE-2011…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: svelte-purify
👤 项目作者: humanspeak
🛠 开发语言: TypeScript
⭐ Star数量: 7 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 10:36:50

📝 项目描述:
DOMPurify-powered HTML sanitizer for Svelte — SSR-safe, browser-ready, TypeScript-first.

🔗 点击访问项目地址 GitHub - humanspeak/svelte-purify: DOMPurify-powered HTML sanitizer for Svelte — SSR-safe, browser-ready, TypeScript-first.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: K50G-POCOF4GT-CVE-2026-43499-PoC
👤 项目作者: Cxyofficial
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 11:26:39

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - Cxyofficial/K50G-POCOF4GT-CVE-2026-43499-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: XSS-lab
👤 项目作者: hamdy62
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 10:14:29

📝 项目描述:
guestbook app with intentional XSS vulnerabilities, for authorized web pentesting practice only, with simple stored and reflected XSS

🔗 点击访问项目地址 GitHub - hamdy62/XSS-lab: guestbook app with intentional XSS vulnerabilities, for authorized web pentesting practice only, with…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: hkcors
👤 项目作者: halilkirazkaya
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 09:04:22

📝 项目描述:
A Burp Suite extension that scans for CORS misconfigurations with 35+ techniques directly inside BurpSuite.

🔗 点击访问项目地址 GitHub - halilkirazkaya/hkcors: A Burp Suite extension that scans for CORS misconfigurations with 35+ techniques directly inside…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #复现

📦 项目名称: my-dshrness-aipentest
👤 项目作者: caoxianglu
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 09:33:36

📝 项目描述:
基于deepseek-hraness+kali搭建一套属于自己的AI渗透测试工具,用多代理 AI 跑完整渗透测试,我把它做成了可复现、防幻觉的工作流。一句话:给定目标与授权,自动完成信息收集 → 扫描枚举 → 认证突破 → 漏洞分析 → 深挖循环 → 框架专项 → 后渗透验证 → 主审复核 → 标准报告 的全流程,并输出一份带真实抓包证据的 12 章渗透测试报告。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #malware

📦 项目名称: devops1
👤 项目作者: SRI659
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 09:28:32

📝 项目描述:
Malware Detection – A lightweight, cross-platform scanner that identifies malicious files and processes using signature-based matching, heuristic analysis, and real-time behavior monitoring. Built with Python, it offers a simple CLI, YARA rule support, and quarantine capabilities for safe handling of threats.

🔗 点击访问项目地址 GitHub - SRI659/devops1: Malware Detection – A lightweight, cross-platform scanner that identifies malicious files and processes…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #红队

📦 项目名称: StrikeAgent_AtkBrain-Flash
👤 项目作者: Yean-Sec
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 08:38:14

📝 项目描述:
由夜安团队研发开发的AI渗透测试平台,涵盖红队打点、SRC、CTF,特别是在红队领域有极为亮眼的存在

🔗 点击访问项目地址 GitHub - Yean-Sec/StrikeAgent_AtkBrain-Flash: The AI Agent pentesting platform built by the Ye'an team is all about self-supervision…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: DLL-Search-Order-Exploit-POC
👤 项目作者: kdjebat
🛠 开发语言: C++
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 08:55:21

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - kdjebat/DLL-Search-Order-Exploit-POC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: Argo
👤 项目作者: M0tHs3C
🛠 开发语言: Python
⭐ Star数量: 55 | 🍴 Fork数量: 20
📅 更新时间: 2026-09-02 08:59:11

📝 项目描述:
Multi camera gathering and exploiting tool

🔗 点击访问项目地址 GitHub - M0tHs3C/Argo: Multi camera gathering and exploiting tool
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-App-Vulnerability-Scanner
👤 项目作者: Shumii98
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 07:15:48

📝 项目描述:
A Python-based web application security scanner for detecting common security misconfigurations and generating security reports.

🔗 点击访问项目地址 GitHub - Shumii98/Web-App-Vulnerability-Scanner: A Python-based web application security scanner for detecting common security…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: java-vulnerability-scanner
👤 项目作者: deshmanesakshi4-bit
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 07:55:08

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - deshmanesakshi4-bit/java-vulnerability-scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: xby-scan-code
👤 项目作者: xby-skill
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 07:48:41

📝 项目描述:
CodeGuard MCP是一款实时AI代码安全扫描工具,用于检测AI生成代码中的漏洞、密钥和合规性问题,适用于开发环境中的代码安全审查。

🔗 点击访问项目地址 GitHub - xby-skill/xby-scan-code: CodeGuard MCP是一款实时AI代码安全扫描工具,用于检测AI生成代码中的漏洞、密钥和合规性问题,适用于开发环境中的代码安全审查。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #钓鱼 #Phishing

📦 项目名称: phishingtest
👤 项目作者: SoraKasvgano
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 06:58:57

📝 项目描述:
一个基于 Vue 3 的纯前端防钓鱼测试网站,参照北京大学 Phishing Quiz 设计。

🔗 点击访问项目地址 GitHub - SoraKasvgano/phishingtest: 一个基于 Vue 3 的纯前端防钓鱼测试网站,参照北京大学 Phishing Quiz 设计。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: webvulnebilityscanner
👤 项目作者: PranshuCyb3r
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 06:42:29

📝 项目描述:
Python-based Web Vulnerability Scanner using Nmap, Nikto, Wafw00f, DNSRecon, Wapiti and other security tools.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web_scanner
👤 项目作者: s8109180-byte
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 05:57:57

📝 项目描述:
A simple web vulnerability scanner tool

🔗 点击访问项目地址 GitHub - s8109180-byte/web_scanner: A simple web vulnerability scanner tool
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #POC

📦 项目名称: poc-batch-verifier
👤 项目作者: Pick-program
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 05:33:58

📝 项目描述:
对多目标批量验证漏洞修复情况的跨平台工具

🔗 点击访问项目地址 GitHub - Pick-program/poc-batch-verifier: 对多目标批量验证漏洞修复情况的跨平台工具
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-84361-poc
👤 项目作者: Saku0512
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 05:26:32

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - Saku0512/CVE-2026-84361-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: pinhole-ftp-ddr-rats
👤 项目作者: yankywilson
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-02 03:19:25

📝 项目描述:
Independent reverse engineering, detection content, and threat-hunting intelligence for the PINHOLE and E4del FTP-banner dead-drop-resolver RATs. Validated YARA/Sigma/Suricata + tooling.

🔗 点击访问项目地址 GitHub - yankywilson/pinhole-ftp-ddr-rats: Independent reverse engineering, detection content, and threat-hunting intelligence…
Back to Top