📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Plugin
📦 项目名称: BurpVault
👤 项目作者: PallidWhisper
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:33:52
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Plugin
📦 项目名称: BurpVault
👤 项目作者: PallidWhisper
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:33:52
📝 项目描述:
Bug bounty workspace for Burp Suite that automatically collects, parses, deduplicates and stores HTTP requests/responses for web application security testing.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Vindex
👤 项目作者: Yanmife-source
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 20:02:24
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Vindex
👤 项目作者: Yanmife-source
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 20:02:24
📝 项目描述:
Vindex — a growing OWASP Top 10 vulnerability scanner written in Go, one check at a time.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #CVE #POC #Remote Code Execution
📦 项目名称: Flowise-RCE-CVE-2025-59528
👤 项目作者: arensballiu
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:44:34
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #CVE #POC #Remote Code Execution
📦 项目名称: Flowise-RCE-CVE-2025-59528
👤 项目作者: arensballiu
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:44:34
📝 项目描述:
Authenticated Remote Code Execution (RCE) exploit for Flowise AI versions ≤ 3.0.4. Leverages a vulnerability in the /api/v1/node-load-method/customMCP endpoint to execute arbitrary system commands via Node.js child_process.execSync(). Includes full PoC script and remediation steps.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-33439-PoC
👤 项目作者: JonasChen0103
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:35:53
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-33439-PoC
👤 项目作者: JonasChen0103
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:35:53
📝 项目描述:
CVE-2026-33439 OpenAM pre-auth RCE PoC🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-33017-langflow-rce
👤 项目作者: arensballiu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:47:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-33017-langflow-rce
👤 项目作者: arensballiu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:47:08
📝 项目描述:
Proof-of-concept for CVE-2026-33017, demonstrating unauthenticated remote code execution in vulnerable Langflow versions through malicious CustomComponent code injection.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #template #templates #CVE
📦 项目名称: whiterabbit
👤 项目作者: ajauch
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-19 16:59:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #template #templates #CVE
📦 项目名称: whiterabbit
👤 项目作者: ajauch
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-19 16:59:29
📝 项目描述:
Grade the security posture of a deployed web app in one command. Built for the gaps agent-written code tends to ship with.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: autovulnscannah
👤 项目作者: zaw44d
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 18:54:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: autovulnscannah
👤 项目作者: zaw44d
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 18:54:38
📝 项目描述:
Automated Vulnerability Scanner🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: web-vuln-scanner
👤 项目作者: aimansam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:02:34
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: web-vuln-scanner
👤 项目作者: aimansam
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 19:02:34
📝 项目描述:
Lightweight web vulnerability scanner in Python — scans for SQLi, XSS, path traversal, sensitive files, and more.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #WAF
📦 项目名称: website-store
👤 项目作者: Curr3ncyV01D
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 18:59:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #WAF
📦 项目名称: website-store
👤 项目作者: Curr3ncyV01D
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 18:59:49
📝 项目描述:
High-performance catalog & scraping pipeline for 30k+ albums. FastAPI, PostgreSQL pg_trgm, Playwright stealth WAF bypass, Telegram-as-a-CDN, and HTMX infinite scroll.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-74469
👤 项目作者: 0xBlackash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:32:47
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-74469
👤 项目作者: 0xBlackash
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:32:47
📝 项目描述:
CVE-2026-74469🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-78159
👤 项目作者: abraxas
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:52:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-78159
👤 项目作者: abraxas
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:52:55
📝 项目描述:
CVE-2026-78159 - stellarwp - Critical 9.8 - Unauthenticated POST /wp-comments-post.php - Remote Code Execution🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Log4j #CVE
📦 项目名称: springboot-log4j-fix
👤 项目作者: ajayrahul11
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:16:02
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Log4j #CVE
📦 项目名称: springboot-log4j-fix
👤 项目作者: ajayrahul11
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:16:02
📝 项目描述:
This repo is a dummy repo for the vuln-agent project🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #渗透测试 #内网 #漏洞
📦 项目名称: MuLuSaoMiao
👤 项目作者: JordanANDJohn
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:33:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #渗透测试 #内网 #漏洞
📦 项目名称: MuLuSaoMiao
👤 项目作者: JordanANDJohn
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:33:14
📝 项目描述:
MuLuSaoMiao(目录扫描) 是一款用 Go 编写的命令行网站目录/路径枚举工具,用于授权渗透测试中快速发现目标站点的隐藏目录、后台入口、备份文件与敏感接口。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework
📦 项目名称: shadowlink
👤 项目作者: mmahyar639-del
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:57:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework
📦 项目名称: shadowlink
👤 项目作者: mmahyar639-del
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:57:38
📝 项目描述:
A lightweight, modular, and stealthy C2 framework written in Go for educational purposes and CTF competitions🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Reflected-XSS-JavaScript-String-Lab
👤 项目作者: ElioKettaneh-git
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:55:18
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Reflected-XSS-JavaScript-String-Lab
👤 项目作者: ElioKettaneh-git
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 16:55:18
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #插件 #漏洞
📦 项目名称: hediwen831-star
👤 项目作者: hediwen831-star
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:55:09
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #插件 #漏洞
📦 项目名称: hediwen831-star
👤 项目作者: hediwen831-star
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:55:09
📝 项目描述:
作品集总览:攻击面测绘平台 / Web 漏洞靶场 / Burp 越权检测插件🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Jenkins #POC
📦 项目名称: jenkins-poc
👤 项目作者: Bardak8
🛠 开发语言: HCL
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:00:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Jenkins #POC
📦 项目名称: jenkins-poc
👤 项目作者: Bardak8
🛠 开发语言: HCL
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 15:00:08
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: reconcile-core
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 14:25:06
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: reconcile-core
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 14:25:06
📝 项目描述:
Research into virtual-DOM diffing/reconciliation algorithms, plus a from-scratch React-style reconciler build and its XSS attack surface.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: trust-boundary
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 14:33:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: trust-boundary
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-19 14:33:10
📝 项目描述:
Content Security Policy and Trusted Types from scratch: header parsing, directive enforcement, nonces/hashes, strict-dynamic, and DOM-XSS sink policy enforcement.🔗 点击访问项目地址