📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:反序列化
描述:iOS json 序列化 、反序列化库
URL:https://github.com/HangZhouShuChengKeJi/ZBWJson
标签:#反序列化
更新了:反序列化
描述:iOS json 序列化 、反序列化库
URL:https://github.com/HangZhouShuChengKeJi/ZBWJson
标签:#反序列化
GitHub监控消息提醒!!!
更新了:信息收集
描述:密探渗透测试工具包含资产信息收集,子域名爆破,搜索语法,资产测绘(FOFA,Hunter,quake, ZoomEye),指纹识别,敏感信息采集,文件扫描、端口扫描、批量信息权重查询、密码字典等功能
URL:https://github.com/haishikeji/QT-JYZ-YY
标签:#信息收集
更新了:信息收集
描述:密探渗透测试工具包含资产信息收集,子域名爆破,搜索语法,资产测绘(FOFA,Hunter,quake, ZoomEye),指纹识别,敏感信息采集,文件扫描、端口扫描、批量信息权重查询、密码字典等功能
URL:https://github.com/haishikeji/QT-JYZ-YY
标签:#信息收集
GitHub监控消息提醒!!!
更新了:Cobalt Strike
描述:Homemade Aggressor scripts kit for Cobalt Strike
URL:https://github.com/nickvourd/CS-Aggressor-Kit
标签:#Cobalt Strike
更新了:Cobalt Strike
描述:Homemade Aggressor scripts kit for Cobalt Strike
URL:https://github.com/nickvourd/CS-Aggressor-Kit
标签:#Cobalt Strike
GitHub监控消息提醒!!!
更新了:越权
描述:一个支持被动代理的调用 KIMI AI 进行越权漏洞检测的工具。
URL:https://github.com/Ed1s0nZ/PrivHunterAI
标签:#越权
更新了:越权
描述:一个支持被动代理的调用 KIMI AI 进行越权漏洞检测的工具。
URL:https://github.com/Ed1s0nZ/PrivHunterAI
标签:#越权
GitHub监控消息提醒!!!
更新了:绕过
描述:一个使用Python开发的工具,通过修改gerber内文件的方法来绕过嘉立创白嫖PCB时的拆单检测
URL:https://github.com/zhangMonday/JLC-no-chaidan
标签:#绕过
更新了:绕过
描述:一个使用Python开发的工具,通过修改gerber内文件的方法来绕过嘉立创白嫖PCB时的拆单检测
URL:https://github.com/zhangMonday/JLC-no-chaidan
标签:#绕过
GitHub监控消息提醒!!!
更新了:RCE
描述:Ivanti Connect Secure IFT TLS Stack Overflow pre-auth RCE (CVE-2025-0282)
URL:https://github.com/watchtowrlabs/CVE-2025-0282
标签:#RCE
更新了:RCE
描述:Ivanti Connect Secure IFT TLS Stack Overflow pre-auth RCE (CVE-2025-0282)
URL:https://github.com/watchtowrlabs/CVE-2025-0282
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:PoC for CVE-2025-0282: A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA gateways
URL:https://github.com/sfewer-r7/CVE-2025-0282
标签:#CVE-2025
更新了:CVE-2025
描述:PoC for CVE-2025-0282: A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA gateways
URL:https://github.com/sfewer-r7/CVE-2025-0282
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:xdebug 2.5.5 RCE exploit
URL:https://github.com/D3Ext/xdebug-exploit
标签:#RCE
更新了:RCE
描述:xdebug 2.5.5 RCE exploit
URL:https://github.com/D3Ext/xdebug-exploit
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:xdebug 2.5.5 RCE exploit
URL:https://github.com/D3Ext/XDEBUG-Exploit
标签:#RCE
更新了:RCE
描述:xdebug 2.5.5 RCE exploit
URL:https://github.com/D3Ext/XDEBUG-Exploit
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:CVE-2024-11972 in Hunk Companion <1.9.0 allows unauthenticated attackers to exploit insecure REST API endpoints and install vulnerable plugins, risking RCE, SQLi, XSS, and backdoors.
URL:https://github.com/RonF98/CVE-2024-11972-POC
标签:#RCE
更新了:RCE
描述:CVE-2024-11972 in Hunk Companion <1.9.0 allows unauthenticated attackers to exploit insecure REST API endpoints and install vulnerable plugins, risking RCE, SQLi, XSS, and backdoors.
URL:https://github.com/RonF98/CVE-2024-11972-POC
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/mrmtwoj/CVE-2023-25136
标签:#RCE
更新了:RCE
描述:Automatic thesauri backups from RCE PoolParty
URL:https://github.com/mrmtwoj/CVE-2023-25136
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:PoC of CVE-2025-22710
URL:https://github.com/DoTTak/CVE-2025-22710
标签:#CVE-2025
更新了:CVE-2025
描述:PoC of CVE-2025-22710
URL:https://github.com/DoTTak/CVE-2025-22710
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:Red Team
描述:Setup Active Directory with Sysmon and Attack on it using Crowbar , Generate Telemetry using Atomic Red Team and investigate the logs using Splunk
URL:https://github.com/muja789/Active-Directory-Project
标签:#Red Team
更新了:Red Team
描述:Setup Active Directory with Sysmon and Attack on it using Crowbar , Generate Telemetry using Atomic Red Team and investigate the logs using Splunk
URL:https://github.com/muja789/Active-Directory-Project
标签:#Red Team
GitHub监控消息提醒!!!
更新了:Red Team
描述:This project automates the setup of work environments for Red Team operators, enabling faster deployment and operational readiness.
URL:https://github.com/Oni-kuki/RedTeam-Operator_Workstation
标签:#Red Team
更新了:Red Team
描述:This project automates the setup of work environments for Red Team operators, enabling faster deployment and operational readiness.
URL:https://github.com/Oni-kuki/RedTeam-Operator_Workstation
标签:#Red Team
GitHub监控消息提醒!!!
更新了:反序列化
描述:JSFTomcatExample: 用Tomcat搭建的JSF框架简单Demo,用于学习和研究JSF反序列化。
URL:https://github.com/B0T1eR/JSFTomcatExample
标签:#反序列化
更新了:反序列化
描述:JSFTomcatExample: 用Tomcat搭建的JSF框架简单Demo,用于学习和研究JSF反序列化。
URL:https://github.com/B0T1eR/JSFTomcatExample
标签:#反序列化
GitHub监控消息提醒!!!
更新了:护网
描述:gateway2 执行程序发布版 此项目将维护网关2的最新稳定版发布版,请大家在此下载使用,不必到源码或示例中下载网关2。
URL:https://github.com/carocean/gateway2-release
标签:#护网
更新了:护网
描述:gateway2 执行程序发布版 此项目将维护网关2的最新稳定版发布版,请大家在此下载使用,不必到源码或示例中下载网关2。
URL:https://github.com/carocean/gateway2-release
标签:#护网
GitHub监控消息提醒!!!
更新了:钓鱼
描述:AntiAutoFish 旨在检测并阻止服务器中的自动化钓鱼行为。 | AntiAutoFish is a Minecraft Bukkit/Spigot plugin designed to detect and prevent automated fishing on servers, ensuring fair gameplay.
URL:https://github.com/PSHNIM/AntiAutoFish
标签:#钓鱼
更新了:钓鱼
描述:AntiAutoFish 旨在检测并阻止服务器中的自动化钓鱼行为。 | AntiAutoFish is a Minecraft Bukkit/Spigot plugin designed to detect and prevent automated fishing on servers, ensuring fair gameplay.
URL:https://github.com/PSHNIM/AntiAutoFish
标签:#钓鱼
GitHub监控消息提醒!!!
更新了:RCE
描述:REMOTE COMMAND EXECUTION RCE
URL:https://github.com/DarkspaceSoftwareandSecurity/SPIDERFOOT
标签:#RCE
更新了:RCE
描述:REMOTE COMMAND EXECUTION RCE
URL:https://github.com/DarkspaceSoftwareandSecurity/SPIDERFOOT
标签:#RCE