📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:信息收集
描述:一个基于Java和Jsoup的高效爬虫工具,专门用于自动化收集BOSS直聘网站的职位招聘信息。该项目通过模拟浏览器行为绕过反爬机制,支持多关键词搜索、多城市切换和自动翻页功能,能够提取职位名称、薪资范围、工作要求、公司信息等详细数据,并导出为结构化CSV格式。
URL:https://github.com/Showma88ker/BossZhiPinCrawler
标签:#信息收集
更新了:信息收集
描述:一个基于Java和Jsoup的高效爬虫工具,专门用于自动化收集BOSS直聘网站的职位招聘信息。该项目通过模拟浏览器行为绕过反爬机制,支持多关键词搜索、多城市切换和自动翻页功能,能够提取职位名称、薪资范围、工作要求、公司信息等详细数据,并导出为结构化CSV格式。
URL:https://github.com/Showma88ker/BossZhiPinCrawler
标签:#信息收集
GitHub监控消息提醒!!!
更新了:代码注入
描述:漏洞链靶场搭建与渗透~xxe文件读取+sql注入+代码审计+越权漏洞
URL:https://github.com/SimonSkywalke/SimpleRL
标签:#代码注入
更新了:代码注入
描述:漏洞链靶场搭建与渗透~xxe文件读取+sql注入+代码审计+越权漏洞
URL:https://github.com/SimonSkywalke/SimpleRL
标签:#代码注入
GitHub监控消息提醒!!!
更新了:Red Team
描述:Security Researcher | VAPT | Red Teaming | Blue Teaming | Web Application Security
URL:https://github.com/kunal-5055/kunal-5055
标签:#Red Team
更新了:Red Team
描述:Security Researcher | VAPT | Red Teaming | Blue Teaming | Web Application Security
URL:https://github.com/kunal-5055/kunal-5055
标签:#Red Team
GitHub监控消息提醒!!!
更新了:漏洞验证
描述:漏洞验证测试集(Proof-of-Concept Test Suites)
URL:https://github.com/h0umu5u/pocsuites
标签:#漏洞验证
更新了:漏洞验证
描述:漏洞验证测试集(Proof-of-Concept Test Suites)
URL:https://github.com/h0umu5u/pocsuites
标签:#漏洞验证
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:WinRAR漏洞CVE-2025-8088的payload一键生成工具
URL:https://github.com/hbesljx/CVE-2025-8088-EXP
标签:#CVE-2025
更新了:CVE-2025
描述:WinRAR漏洞CVE-2025-8088的payload一键生成工具
URL:https://github.com/hbesljx/CVE-2025-8088-EXP
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:WinRAR漏洞CVE-2025-8088的payload一键生成工具
URL:https://github.com/hbesljx/CVE-2025-8088-EXP
标签:#CVE-2025
更新了:CVE-2025
描述:WinRAR漏洞CVE-2025-8088的payload一键生成工具
URL:https://github.com/hbesljx/CVE-2025-8088-EXP
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:MotionEye RCE via Client-Side Validation Bypass through config parameter
URL:https://github.com/aprabhatverma/RCE-in-motioneye-0.43.1b4
标签:#RCE
更新了:RCE
描述:MotionEye RCE via Client-Side Validation Bypass through config parameter
URL:https://github.com/aprabhatverma/RCE-in-motioneye-0.43.1b4
标签:#RCE
GitHub监控消息提醒!!!
更新了:漏洞验证
描述:漏洞验证测试集(Proof-of-Concept Test Suites)
URL:https://github.com/h0umu5u/pocsuites
标签:#漏洞验证
更新了:漏洞验证
描述:漏洞验证测试集(Proof-of-Concept Test Suites)
URL:https://github.com/h0umu5u/pocsuites
标签:#漏洞验证
GitHub监控消息提醒!!!
更新了:渗透测试
描述:渗透测试语义特征词典(涵盖认证绕过、路径遍历、注入攻击等典型测试用例数据集)
URL:https://github.com/h0umu5u/nosec-dict
标签:#渗透测试
更新了:渗透测试
描述:渗透测试语义特征词典(涵盖认证绕过、路径遍历、注入攻击等典型测试用例数据集)
URL:https://github.com/h0umu5u/nosec-dict
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:渗透测试
描述:渗透测试语义特征词典(涵盖认证绕过、路径遍历、注入攻击等典型测试用例数据集)
URL:https://github.com/h0umu5u/nosec-dict
标签:#渗透测试
更新了:渗透测试
描述:渗透测试语义特征词典(涵盖认证绕过、路径遍历、注入攻击等典型测试用例数据集)
URL:https://github.com/h0umu5u/nosec-dict
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:This tiny lab simulates the core idea behind CVE-2025-29306: unsafe use of `unserialize()` on attacker-controlled input leading to remote code execution.
URL:https://github.com/amalpvatayam67/day06-foxcms-rce
标签:#CVE-2025
更新了:CVE-2025
描述:This tiny lab simulates the core idea behind CVE-2025-29306: unsafe use of `unserialize()` on attacker-controlled input leading to remote code execution.
URL:https://github.com/amalpvatayam67/day06-foxcms-rce
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:This tiny lab simulates the core idea behind CVE-2025-29306: unsafe use of `unserialize()` on attacker-controlled input leading to remote code execution.
URL:https://github.com/amalpvatayam67/day06-foxcms-rce
标签:#CVE-2025
更新了:CVE-2025
描述:This tiny lab simulates the core idea behind CVE-2025-29306: unsafe use of `unserialize()` on attacker-controlled input leading to remote code execution.
URL:https://github.com/amalpvatayam67/day06-foxcms-rce
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:MotionEye RCE via Client-Side Validation Bypass through config parameter
URL:https://github.com/aprabhatverma/RCE-in-motioneye-0.43.1b4
标签:#RCE
更新了:RCE
描述:MotionEye RCE via Client-Side Validation Bypass through config parameter
URL:https://github.com/aprabhatverma/RCE-in-motioneye-0.43.1b4
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🔓 Explore CVE-2025-31258 with this PoC demonstrating partial sandbox escape using RemoteViewServices for practical 1-day security practice.
URL:https://github.com/mrk336/Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover
标签:#CVE-2025
更新了:CVE-2025
描述:🔓 Explore CVE-2025-31258 with this PoC demonstrating partial sandbox escape using RemoteViewServices for practical 1-day security practice.
URL:https://github.com/mrk336/Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:攻防
描述:anliu 是一个专注于安全领域的信息流网站,旨在聚合与分发高质量的安全资讯、漏洞通告、攻防研究、工具动态等内容
URL:https://github.com/Sec-labels/Anliu
标签:#攻防
更新了:攻防
描述:anliu 是一个专注于安全领域的信息流网站,旨在聚合与分发高质量的安全资讯、漏洞通告、攻防研究、工具动态等内容
URL:https://github.com/Sec-labels/Anliu
标签:#攻防
GitHub监控消息提醒!!!
更新了:攻防
描述:anliu 是一个专注于安全领域的信息流网站,旨在聚合与分发高质量的安全资讯、漏洞通告、攻防研究、工具动态等内容
URL:https://github.com/bios000/Anliu
标签:#攻防
更新了:攻防
描述:anliu 是一个专注于安全领域的信息流网站,旨在聚合与分发高质量的安全资讯、漏洞通告、攻防研究、工具动态等内容
URL:https://github.com/bios000/Anliu
标签:#攻防
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🐙 CVE-2025-54253 exploit demo for Adobe AEM Forms on JEE: OGNL injection to RCE with PoC, Python 3.10 exploit code, reproducer and mitigation guidance.
URL:https://github.com/mrk336/Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover
标签:#CVE-2025
更新了:CVE-2025
描述:🐙 CVE-2025-54253 exploit demo for Adobe AEM Forms on JEE: OGNL injection to RCE with PoC, Python 3.10 exploit code, reproducer and mitigation guidance.
URL:https://github.com/mrk336/Cluster-Chaos-Exploiting-CVE-2025-59359-for-Kubernetes-Takeover
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:代码审计
描述:一套 Python 自动化安全工具脚本,用于端口检测、日志分析、代码审计、密码策略评估与报告生成
URL:https://github.com/ccscscs1212/security-tools
标签:#代码审计
更新了:代码审计
描述:一套 Python 自动化安全工具脚本,用于端口检测、日志分析、代码审计、密码策略评估与报告生成
URL:https://github.com/ccscscs1212/security-tools
标签:#代码审计
GitHub监控消息提醒!!!
更新了:代码审计
描述:一套 Python 自动化安全工具脚本,用于端口检测、日志分析、代码审计、密码策略评估与报告生成
URL:https://github.com/ccscscs1212/security-tools
标签:#代码审计
更新了:代码审计
描述:一套 Python 自动化安全工具脚本,用于端口检测、日志分析、代码审计、密码策略评估与报告生成
URL:https://github.com/ccscscs1212/security-tools
标签:#代码审计
GitHub监控消息提醒!!!
更新了:Red Team
描述:AD + Splunk + Sysmon lab with brute force & Atomic Red Team attack simulations.
URL:https://github.com/shaurya96/AD-1.0
标签:#Red Team
更新了:Red Team
描述:AD + Splunk + Sysmon lab with brute force & Atomic Red Team attack simulations.
URL:https://github.com/shaurya96/AD-1.0
标签:#Red Team