📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:RCE
描述:锐捷Ruijie Networks RCE漏洞检测工具,可批量检测上🔪、冰蝎、哥斯拉
URL:https://github.com/oldboudoir/RuijieRCE
标签:#RCE
更新了:RCE
描述:锐捷Ruijie Networks RCE漏洞检测工具,可批量检测上🔪、冰蝎、哥斯拉
URL:https://github.com/oldboudoir/RuijieRCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:禅道研发项目管理系统`misc-captcha-user`认证绕过后台命令注入漏洞
URL:https://github.com/noxiousthin/Zentao-Captcha-RCE
标签:#RCE
更新了:RCE
描述:禅道研发项目管理系统`misc-captcha-user`认证绕过后台命令注入漏洞
URL:https://github.com/noxiousthin/Zentao-Captcha-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Umbraco User Enum - CVE-2025-24011 PoC
URL:https://github.com/Puben/CVE-2025-24011-PoC
标签:#CVE-2025
更新了:CVE-2025
描述:Umbraco User Enum - CVE-2025-24011 PoC
URL:https://github.com/Puben/CVE-2025-24011-PoC
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Exploit CVE-2025-24071
URL:https://github.com/shacojx/CVE-2025-24071-Exploit
标签:#CVE-2025
更新了:CVE-2025
描述:Exploit CVE-2025-24071
URL:https://github.com/shacojx/CVE-2025-24071-Exploit
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:测试 test good 没有 you buy RCE
URL:https://github.com/nsvizp/cve-2025-0000000
标签:#RCE
更新了:RCE
描述:测试 test good 没有 you buy RCE
URL:https://github.com/nsvizp/cve-2025-0000000
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:POC for CVE-2025-24813 using Spring-Boot
URL:https://github.com/n0n-zer0/Spring-Boot-Tomcat-CVE-2025-24813
标签:#CVE-2025
更新了:CVE-2025
描述:POC for CVE-2025-24813 using Spring-Boot
URL:https://github.com/n0n-zer0/Spring-Boot-Tomcat-CVE-2025-24813
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File
URL:https://github.com/0x6rss/CVE-2025-24071_PoC
标签:#CVE-2025
更新了:CVE-2025
描述:CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File
URL:https://github.com/0x6rss/CVE-2025-24071_PoC
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:webshell
描述:Simple webshell cli written in Python for CTFs
URL:https://github.com/Hoopshaker/simple-wbeshell-cli
标签:#webshell
更新了:webshell
描述:Simple webshell cli written in Python for CTFs
URL:https://github.com/Hoopshaker/simple-wbeshell-cli
标签:#webshell
GitHub监控消息提醒!!!
更新了:RCE
描述:Arbitrary file write in Gibbon LMS can leverage to RCE
URL:https://github.com/jrbH4CK/GibbonLMS-FileWrite-RCE
标签:#RCE
更新了:RCE
描述:Arbitrary file write in Gibbon LMS can leverage to RCE
URL:https://github.com/jrbH4CK/GibbonLMS-FileWrite-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Alternativa CVE-2025-24071_PoC
URL:https://github.com/ctabango/CVE-2025-24071_PoCExtra
标签:#CVE-2025
更新了:CVE-2025
描述:Alternativa CVE-2025-24071_PoC
URL:https://github.com/ctabango/CVE-2025-24071_PoCExtra
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:越权
描述:一款通过被动代理方式,利用主流 AI(如 Kimi、DeepSeek、GPT 等)检测越权漏洞的工具。其核心检测功能依托相关 AI 引擎的开放 API 构建,支持 HTTPS 协议的数据传输与交互。
URL:https://github.com/Brandy467/xinzigodie
标签:#越权
更新了:越权
描述:一款通过被动代理方式,利用主流 AI(如 Kimi、DeepSeek、GPT 等)检测越权漏洞的工具。其核心检测功能依托相关 AI 引擎的开放 API 构建,支持 HTTPS 协议的数据传输与交互。
URL:https://github.com/Brandy467/xinzigodie
标签:#越权
GitHub监控消息提醒!!!
更新了:绕过
描述:【Hello-CTF labs】新手向的ssrf靶场,从协议,场景,绕过等多个ssrf攻击的基础维度展开。
URL:https://github.com/ProbiusOfficial/hello-ssrf
标签:#绕过
更新了:绕过
描述:【Hello-CTF labs】新手向的ssrf靶场,从协议,场景,绕过等多个ssrf攻击的基础维度展开。
URL:https://github.com/ProbiusOfficial/hello-ssrf
标签:#绕过
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Windows File Explorer Spoofing Vulnerability (CVE-2025-24071)
URL:https://github.com/aleongx/CVE-2025-24071
标签:#CVE-2025
更新了:CVE-2025
描述:Windows File Explorer Spoofing Vulnerability (CVE-2025-24071)
URL:https://github.com/aleongx/CVE-2025-24071
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Apache Tomcat Vulnerability POC (CVE-2025-24813)
URL:https://github.com/michael-david-fry/Apache-Tomcat-Vulnerability-POC-CVE-2025-24813
标签:#CVE-2025
更新了:CVE-2025
描述:Apache Tomcat Vulnerability POC (CVE-2025-24813)
URL:https://github.com/michael-david-fry/Apache-Tomcat-Vulnerability-POC-CVE-2025-24813
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Apache Tomcat Vulnerability POC (CVE-2025-24813)
URL:https://github.com/michael-david-fry/Apache-Tomcat-Vulnerability-POC-CVE-2025-24813-
标签:#CVE-2025
更新了:CVE-2025
描述:Apache Tomcat Vulnerability POC (CVE-2025-24813)
URL:https://github.com/michael-david-fry/Apache-Tomcat-Vulnerability-POC-CVE-2025-24813-
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:反序列化
描述:Java漏洞复现,包括反序列化、XXE、JNDI注入等
URL:https://github.com/Minshenyao/java-security-hub
标签:#反序列化
更新了:反序列化
描述:Java漏洞复现,包括反序列化、XXE、JNDI注入等
URL:https://github.com/Minshenyao/java-security-hub
标签:#反序列化
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Koha CVE-2025-22954: SQL Injection in lateissues-export.pl
URL:https://github.com/RandomRobbieBF/CVE-2025-22954
标签:#CVE-2025
更新了:CVE-2025
描述:Koha CVE-2025-22954: SQL Injection in lateissues-export.pl
URL:https://github.com/RandomRobbieBF/CVE-2025-22954
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:Cobalt Strike
描述:Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers
URL:https://github.com/0xRedpoll/ludus_cobaltstrike_teamserver
标签:#Cobalt Strike
更新了:Cobalt Strike
描述:Ludus role for deploying a Cobalt Strike Teamserver onto Linux servers
URL:https://github.com/0xRedpoll/ludus_cobaltstrike_teamserver
标签:#Cobalt Strike