📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: Burp-Save-Item-XML-Importer
👤 项目作者: 0xBrAinsTorM
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 10:29:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: Burp-Save-Item-XML-Importer
👤 项目作者: 0xBrAinsTorM
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 10:29:29
📝 项目描述:
Burp Suite extension for importing saved Request/Response XML items back into the Site Map.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #POC #Stored
📦 项目名称: wordpress-7.1-comment-stored-xss
👤 项目作者: Federico1976
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:46:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #POC #Stored
📦 项目名称: wordpress-7.1-comment-stored-xss
👤 项目作者: Federico1976
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:46:55
📝 项目描述:
Studio tecnico e PoC della Stored XSS non autenticata nei commenti di WordPress 7.1, corretta in WordPress 7.1.1.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE #POC
📦 项目名称: DYNAMIC-DATA-UPDATES-AND-WEIGHT-OPTIMIZATION-FOR-PREDICTING-VULNERABILITY-EXPLOITABILITY
👤 项目作者: sounthararajan2
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:56:59
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE #POC
📦 项目名称: DYNAMIC-DATA-UPDATES-AND-WEIGHT-OPTIMIZATION-FOR-PREDICTING-VULNERABILITY-EXPLOITABILITY
👤 项目作者: sounthararajan2
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 09:56:59
📝 项目描述:
This project proposes a novel framework for predicting vulnerability exploitability using dynamic datasets and optimized scoring mechanisms.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework
📦 项目名称: C2R2-v2
👤 项目作者: G4sp4rCS
🛠 开发语言: Rust
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:43
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework
📦 项目名称: C2R2-v2
👤 项目作者: G4sp4rCS
🛠 开发语言: Rust
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:43
📝 项目描述:
A modular offensive security framework written in Rust, designed for authorized penetration testing and red team operations.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: heretix-cli
👤 项目作者: TITeee
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: heretix-cli
👤 项目作者: TITeee
🛠 开发语言: Go
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:46:08
📝 项目描述:
Vulnerability scanner CLI: scans OS packages (RPM, DPKG, APK), OSS dependencies (PyPI, npm/yarn/pnpm, Go, Composer, Maven, Gradle, JAR), and Docker images for known CVEs via the heretix API, emits CycloneDX SBOMs, and flags supply-chain attacks (dependency confusion, malicious installs, CI/CD poisoning).🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSTI #RCE
📦 项目名称: SuperSecretTip-TryHackMe-Walkthrough
👤 项目作者: anurag-rvnkr1
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:35:28
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSTI #RCE
📦 项目名称: SuperSecretTip-TryHackMe-Walkthrough
👤 项目作者: anurag-rvnkr1
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:35:28
📝 项目描述:
Professional TryHackMe SuperSecretTip walkthrough covering source-code disclosure, XOR secret reconstruction, SSTI, RCE, Linux lateral movement, PATH hijacking, cron abuse, and root-context curl configuration exploitation. Flags redacted for portfolio-safe documentation.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #BlueTeam #Detection
📦 项目名称: chainsaw
👤 项目作者: WithSecureOpenSource
🛠 开发语言: Rust
⭐ Star数量: 3670 | 🍴 Fork数量: 306
📅 更新时间: 2026-09-23 08:01:09
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #BlueTeam #Detection
📦 项目名称: chainsaw
👤 项目作者: WithSecureOpenSource
🛠 开发语言: Rust
⭐ Star数量: 3670 | 🍴 Fork数量: 306
📅 更新时间: 2026-09-23 08:01:09
📝 项目描述:
Rapidly Search and Hunt through Windows Forensic Artefacts🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: foster-parser
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:32
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: foster-parser
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:32
📝 项目描述:
HTML5 parser internals from scratch: insertion modes, the stack of open elements, the foster-parenting algorithm, and how it enables mutation XSS.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored #Reflected #DOM
📦 项目名称: requestcraft
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:52
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored #Reflected #DOM
📦 项目名称: requestcraft
👤 项目作者: Robert-Doe
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:51:52
📝 项目描述:
GET/POST HTTP request handling from raw bytes to a hardened web app, with the XSS attacks/defenses built on top, in PHP and Node.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fortinet #CVE
📦 项目名称: heretix-management
👤 项目作者: TITeee
🛠 开发语言: TypeScript
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:01:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fortinet #CVE
📦 项目名称: heretix-management
👤 项目作者: TITeee
🛠 开发语言: TypeScript
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 07:01:35
📝 项目描述:
Vulnerability management dashboard tracking CVEs across servers, containers, and network appliances (Fortinet, Palo Alto Networks, Cisco, and more), with EPSS/KEV prioritization, SLA tracking, and VEX triage. Self-hosted; Next.js, Prisma, PostgreSQL.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: cve-2026-87902-wordpress-lfi-lab
👤 项目作者: dinosn
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 05:20:16
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: cve-2026-87902-wordpress-lfi-lab
👤 项目作者: dinosn
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 05:20:16
📝 项目描述:
Reproduction lab + URL-list scanner + PoC for CVE-2026-87902 / GHSA-7hp8-65ch-5whp — WordPress get_page_template() unauthenticated LFI to conditional RCE (WP 4.7.0-7.1.1, fixed 7.1.2). Authorized/defensive testing.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored #Reflected #DOM
📦 项目名称: klg-xss-hailamdev
👤 项目作者: xuanhai0913
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 04:36:52
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored #Reflected #DOM
📦 项目名称: klg-xss-hailamdev
👤 项目作者: xuanhai0913
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 04:36:52
📝 项目描述:
Authorized security research prototype for KLG/XSS analysis.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: ayron-tools-api
👤 项目作者: ayronjins
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 03:29:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: ayron-tools-api
👤 项目作者: ayronjins
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 03:29:27
📝 项目描述:
SSRF-hardened FastAPI service behind the DNS/TLS and site-metadata tools on ayron.in. Pins connections to pre-validated IPs to defeat DNS rebinding.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Web-Application-for-Vul-Scanner
👤 项目作者: 008479010-source
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:20:53
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Web-Application-for-Vul-Scanner
👤 项目作者: 008479010-source
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:20:53
📝 项目描述:
Vulnerability scanner🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #malware
📦 项目名称: m6-backup-extract
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:24:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #malware
📦 项目名称: m6-backup-extract
👤 项目作者: 5h4d0wn1k
🛠 开发语言: Python
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:24:07
📝 项目描述:
Backup extraction analyzer - mines device backups for credentials, keys and sensitive data.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-93616-PoC
👤 项目作者: nebula031
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:43:01
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-93616-PoC
👤 项目作者: nebula031
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:43:01
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
👤 项目作者: rabakuku
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:49:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
👤 项目作者: rabakuku
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 02:49:03
📝 项目描述:
Critical Zero-Authentication Vulnerability Alert! CVE-2026-87902 carries a massive CVSS 9.2 rating affecting nearly every version of WordPress Core from 4.7.0 up through 7.1.1. how attackers chain it with PHP environments to achieve full Remote Code Execution (RCE), and exactly how to mitigate and patch it immediately. 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #template #templates
📦 项目名称: Firebase_Nuclei
👤 项目作者: CypherNova1337
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:19:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #template #templates
📦 项目名称: Firebase_Nuclei
👤 项目作者: CypherNova1337
🛠 开发语言: Unknown
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-23 00:19:03
📝 项目描述:
Nuclei template for thorough Firebase service discovery - realtime database, firestore, storage, hosting, functions and linked GCP endpoints, with strict matching.🔗 点击访问项目地址