📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!

更新了:CVE-2025
描述:POC CVE-2025
URL:https://github.com/shacojx/POC-CVE-2025

标签:#CVE-2025
GitHub监控消息提醒!!!

更新了:Red Team
描述:PhantomStrike - A Stealth C2 Framework for Red Teaming | AES Encrypted C2, Reverse Shell, Persistence, and Anti-Forensics.
URL:https://github.com/HocineBel/PhantomStrike

标签:#Red Team
GitHub监控消息提醒!!!

更新了:Cobalt Strike
描述:Webcam capture capability for Cobalt Strike as a BOF, with in-memory download options
URL:https://github.com/djbobjuniorhrg/WebcamBOF

标签:#Cobalt Strike
GitHub监控消息提醒!!!

更新了:CVE-2025
描述:PoC, and documentation of deployment of a vulnerable instance of ClipBucket-v5 for demonstration of CVE-2025-21624.
URL:https://github.com/shreyas-malhotra/CVE-2025-21624

标签:#CVE-2025
GitHub监控消息提醒!!!

更新了:内网渗透
描述:通过windows的DCOM接口进行网卡进行信息枚举,无需认证,只要目标的135端口开放即可获得信息。可以有效提高内网渗透的效率,定位多网卡主机。 oxid
URL:https://github.com/chiefplanet/OXID

标签:#内网渗透
GitHub监控消息提醒!!!

更新了:代码审计
描述:一款基于Zjackky/CodeScan的轻量级匹配Sink点并AI审计的代码审计扫描器
URL:https://github.com/politemobile/AICodeScan

标签:#代码审计
GitHub监控消息提醒!!!

更新了:RCE
描述:PAN-OS auth bypass + RCE
URL:https://github.com/concretesign/CVE-2024-9474

标签:#RCE
GitHub监控消息提醒!!!

更新了:CVE-2025
描述:New vulnerability type called CVE-2025-03 on Nese 7 Professional only (not including Nese 7 IoT Pro LTSC 2025)
URL:https://github.com/NeseOSCorp/CVE-2025-03

标签:#CVE-2025
GitHub监控消息提醒!!!

更新了:RCE
描述:Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE)
URL:https://github.com/thishistorian/CVE-2023-21839

标签:#RCE
Back to Top