📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Technical Details and Exploit for CVE-2025-50472
URL:https://github.com/xhjy2020/CVE-2025-50472
标签:#CVE-2025
更新了:CVE-2025
描述:Technical Details and Exploit for CVE-2025-50472
URL:https://github.com/xhjy2020/CVE-2025-50472
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:CVE-2017-XXXX-Audacious-3.8-3.9-AAC-Stack-Overflow-RCE
URL:https://github.com/hdbreaker/Audacious-3.8-3.9-AAC-Stack-Overflow-RCE
标签:#RCE
更新了:RCE
描述:CVE-2017-XXXX-Audacious-3.8-3.9-AAC-Stack-Overflow-RCE
URL:https://github.com/hdbreaker/Audacious-3.8-3.9-AAC-Stack-Overflow-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:攻防
描述::atom: [WIP] 整理过去的分享,从零开始的Kubernetes攻防 🧐
URL:https://github.com/neargle/re0-kubernetes-sec-archive
标签:#攻防
更新了:攻防
描述::atom: [WIP] 整理过去的分享,从零开始的Kubernetes攻防 🧐
URL:https://github.com/neargle/re0-kubernetes-sec-archive
标签:#攻防
GitHub监控消息提醒!!!
更新了:横向移动
描述:WindowsAD环境下使用GPO进行横向移动
URL:https://github.com/wqreytuk/AD_GPO_EXEC
标签:#横向移动
更新了:横向移动
描述:WindowsAD环境下使用GPO进行横向移动
URL:https://github.com/wqreytuk/AD_GPO_EXEC
标签:#横向移动
GitHub监控消息提醒!!!
更新了:Red Team
描述:lab environment designed for Purple Team operations, including tools, scripts, and documentation for Blue Team and Red Team cybersecurity exercises, threat detection, and adversary emulation.
URL:https://github.com/DiegoPretelt/Purple-Team-Home-Lab
标签:#Red Team
更新了:Red Team
描述:lab environment designed for Purple Team operations, including tools, scripts, and documentation for Blue Team and Red Team cybersecurity exercises, threat detection, and adversary emulation.
URL:https://github.com/DiegoPretelt/Purple-Team-Home-Lab
标签:#Red Team
GitHub监控消息提醒!!!
更新了:Cobalt Strike
描述:Explore Crystal Loaders, a collection of PIC loaders for Cobalt Strike. Enhance your toolkit with easy setup and integration. 🌟🔧
URL:https://github.com/Akshaysagar31/Crystal-Loaders
标签:#Cobalt Strike
更新了:Cobalt Strike
描述:Explore Crystal Loaders, a collection of PIC loaders for Cobalt Strike. Enhance your toolkit with easy setup and integration. 🌟🔧
URL:https://github.com/Akshaysagar31/Crystal-Loaders
标签:#Cobalt Strike
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:→ poc for CVE-2025-29927
URL:https://github.com/b4sh0xf/PoC-CVE-2025-29927
标签:#CVE-2025
更新了:CVE-2025
描述:→ poc for CVE-2025-29927
URL:https://github.com/b4sh0xf/PoC-CVE-2025-29927
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:CVE-2025-54352 PoC
URL:https://github.com/yohannslm/CVE-2025-54352
标签:#CVE-2025
更新了:CVE-2025
描述:CVE-2025-54352 PoC
URL:https://github.com/yohannslm/CVE-2025-54352
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:Dependency Confusion to RCE POC
URL:https://github.com/Hun33er/NPM-RCE
标签:#RCE
更新了:RCE
描述:Dependency Confusion to RCE POC
URL:https://github.com/Hun33er/NPM-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:CVE-2025-47227
URL:https://github.com/B1ack4sh/Blackash-CVE-2025-47227
标签:#CVE-2025
更新了:CVE-2025
描述:CVE-2025-47227
URL:https://github.com/B1ack4sh/Blackash-CVE-2025-47227
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:CVE-2025-32463 - Sudo Chroot Privilege Escalation Exploit
URL:https://github.com/KaiHT-Ladiant/CVE-2025-32463
标签:#CVE-2025
更新了:CVE-2025
描述:CVE-2025-32463 - Sudo Chroot Privilege Escalation Exploit
URL:https://github.com/KaiHT-Ladiant/CVE-2025-32463
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:This repository contains a proof-of-concept (PoC) for exploiting the OpenSSH ProxyCommand vulnerability — CVE-2025-51385 — affecting OpenSSH servers <9.6 Version
URL:https://github.com/saarcastified/CVE-2023-51385---OpenSSH-ProxyCommand-Injection-PoC
标签:#CVE-2025
更新了:CVE-2025
描述:This repository contains a proof-of-concept (PoC) for exploiting the OpenSSH ProxyCommand vulnerability — CVE-2025-51385 — affecting OpenSSH servers <9.6 Version
URL:https://github.com/saarcastified/CVE-2023-51385---OpenSSH-ProxyCommand-Injection-PoC
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:渗透测试
描述:一款图形化的Web漏洞利用工具,用于渗透测试。支持Jeecg-Boot、泛微OA以及强大的Fastjson漏洞利用功能
URL:https://github.com/danran12/-web-exploit-tool
标签:#渗透测试
更新了:渗透测试
描述:一款图形化的Web漏洞利用工具,用于渗透测试。支持Jeecg-Boot、泛微OA以及强大的Fastjson漏洞利用功能
URL:https://github.com/danran12/-web-exploit-tool
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:RCE
描述:RCE using Minecraft Mod
URL:https://github.com/ShorterKing/Minecraft-RCE-Mod
标签:#RCE
更新了:RCE
描述:RCE using Minecraft Mod
URL:https://github.com/ShorterKing/Minecraft-RCE-Mod
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted base64+gzip payload. 🛡️ Developed by Ahmed Tamer.
URL:https://github.com/0x-crypt/CVE-2025-53770-Scanner
标签:#CVE-2025
更新了:CVE-2025
描述:🎯 Vulnerability scanner for SharePoint servers affected by CVE-2025-53770. Detects unsafe deserialization using ToolPane.aspx with a crafted base64+gzip payload. 🛡️ Developed by Ahmed Tamer.
URL:https://github.com/0x-crypt/CVE-2025-53770-Scanner
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:RCE in Amazon Managed Workflows for Apache Airflow (MWAA) service
URL:https://github.com/ricardojoserf/amazon-mwaa-RCE
标签:#RCE
更新了:RCE
描述:RCE in Amazon Managed Workflows for Apache Airflow (MWAA) service
URL:https://github.com/ricardojoserf/amazon-mwaa-RCE
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述: Apache Tomcat PUT JSP RCE - CVE-2025-24813 - Exploit & PoC
URL:https://github.com/Shivshantp/CVE-2025-24813
标签:#RCE
更新了:RCE
描述: Apache Tomcat PUT JSP RCE - CVE-2025-24813 - Exploit & PoC
URL:https://github.com/Shivshantp/CVE-2025-24813
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:Penetration testing on DVWA: Brute-force, Command Injection, File Upload (RCE), SQL Injection, and XSS
URL:https://github.com/Mihirk23/dvwa-penetration-testing
标签:#RCE
更新了:RCE
描述:Penetration testing on DVWA: Brute-force, Command Injection, File Upload (RCE), SQL Injection, and XSS
URL:https://github.com/Mihirk23/dvwa-penetration-testing
标签:#RCE