📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:RCE
描述:nunjucks RCE for Nunchuck Machine Ctf - Hackthebox
URL:https://github.com/declanmiddleton/nunjucks-rce
标签:#RCE
更新了:RCE
描述:nunjucks RCE for Nunchuck Machine Ctf - Hackthebox
URL:https://github.com/declanmiddleton/nunjucks-rce
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:CVE-2025-8088 path traversal tool
URL:https://github.com/m4nbun/CVE-2025-8088
标签:#CVE-2025
更新了:CVE-2025
描述:CVE-2025-8088 path traversal tool
URL:https://github.com/m4nbun/CVE-2025-8088
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Shenzhen Aitemi M300 Wi-Fi Repeater Unauthenticated RCE (CVE-2025-34152)
URL:https://github.com/kh4sh3i/CVE-2025-34152
标签:#CVE-2025
更新了:CVE-2025
描述:Shenzhen Aitemi M300 Wi-Fi Repeater Unauthenticated RCE (CVE-2025-34152)
URL:https://github.com/kh4sh3i/CVE-2025-34152
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:This repo contains RCE exploit for Era htb machine
URL:https://github.com/symphony2colour/era-htb-rce
标签:#RCE
更新了:RCE
描述:This repo contains RCE exploit for Era htb machine
URL:https://github.com/symphony2colour/era-htb-rce
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:A working (at least for me :] ) exploit for CVE-2025-25257
URL:https://github.com/segfault-it/CVE-2025-25257
标签:#CVE-2025
更新了:CVE-2025
描述:A working (at least for me :] ) exploit for CVE-2025-25257
URL:https://github.com/segfault-it/CVE-2025-25257
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:RCE
描述:Backdrop CMS 1.27.1 – Authenticated RCE
URL:https://github.com/lineeralgebra/backdrop_rce.py
标签:#RCE
更新了:RCE
描述:Backdrop CMS 1.27.1 – Authenticated RCE
URL:https://github.com/lineeralgebra/backdrop_rce.py
标签:#RCE
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🔍 Demonstrate the CVE-2025-32463 privilege-escalation flaw in sudo's chroot feature with this minimal, reproducible proof of concept environment.
URL:https://github.com/ashardev002/CVE-2025-32463_chwoot
标签:#CVE-2025
更新了:CVE-2025
描述:🔍 Demonstrate the CVE-2025-32463 privilege-escalation flaw in sudo's chroot feature with this minimal, reproducible proof of concept environment.
URL:https://github.com/ashardev002/CVE-2025-32463_chwoot
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:漏洞EXP
描述:POCGeneratorMCP一个基于 Model Context Protocol (MCP) 的 POCSuite3 POC/EXP 生成工具服务实现。这个服务可以帮助安全研究人员快速生成和测试漏洞验证代码。
URL:https://github.com/rockmelodies/POCGeneratorMCP
标签:#漏洞EXP
更新了:漏洞EXP
描述:POCGeneratorMCP一个基于 Model Context Protocol (MCP) 的 POCSuite3 POC/EXP 生成工具服务实现。这个服务可以帮助安全研究人员快速生成和测试漏洞验证代码。
URL:https://github.com/rockmelodies/POCGeneratorMCP
标签:#漏洞EXP
GitHub监控消息提醒!!!
更新了:RCE
描述:PHP to .jpg embedding script, designed to support PHP RCE polyglot techniques.
URL:https://github.com/amalpvatayam67/day08-CISCO-fmc-sim
标签:#RCE
更新了:RCE
描述:PHP to .jpg embedding script, designed to support PHP RCE polyglot techniques.
URL:https://github.com/amalpvatayam67/day08-CISCO-fmc-sim
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:CTF that including path traversal and RCE vulnerabilities in Flask due to the server is running on Debug Mode
URL:https://github.com/doriav20/FlaskCTF
标签:#RCE
更新了:RCE
描述:CTF that including path traversal and RCE vulnerabilities in Flask due to the server is running on Debug Mode
URL:https://github.com/doriav20/FlaskCTF
标签:#RCE
GitHub监控消息提醒!!!
更新了:渗透测试
描述:渗透测试报告生成工具
URL:https://github.com/djytmdj/Penetration-test-report-generation-tool
标签:#渗透测试
更新了:渗透测试
描述:渗透测试报告生成工具
URL:https://github.com/djytmdj/Penetration-test-report-generation-tool
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Detection for CVE-2025-10035
URL:https://github.com/rxerium/CVE-2025-10035
标签:#CVE-2025
更新了:CVE-2025
描述:Detection for CVE-2025-10035
URL:https://github.com/rxerium/CVE-2025-10035
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🛡️ Exploit Akamai's RepositoryService XXE vulnerability (CVE-2025-49493) with this testbed, aiding in secure coding practices and vulnerability assessments.
URL:https://github.com/sanchitsahni/CVE-2025-57515
标签:#CVE-2025
更新了:CVE-2025
描述:🛡️ Exploit Akamai's RepositoryService XXE vulnerability (CVE-2025-49493) with this testbed, aiding in secure coding practices and vulnerability assessments.
URL:https://github.com/sanchitsahni/CVE-2025-57515
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:域渗透
描述:CM Security Tools 是一款模块化、多线程的网络安全扫描工具包,集成主机发现、端口扫描、弱口令检测和子域名枚举等功能,适用于渗透测试与安全研究。
URL:https://github.com/ChildBad/ChicoMaloTools
标签:#域渗透
更新了:域渗透
描述:CM Security Tools 是一款模块化、多线程的网络安全扫描工具包,集成主机发现、端口扫描、弱口令检测和子域名枚举等功能,适用于渗透测试与安全研究。
URL:https://github.com/ChildBad/ChicoMaloTools
标签:#域渗透
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:🛡️ Exploit Akamai's RepositoryService XXE vulnerability (CVE-2025-49493) with this testbed, aiding in secure coding practices and vulnerability assessments.
URL:https://github.com/Soham-id/2025hvv
标签:#CVE-2025
更新了:CVE-2025
描述:🛡️ Exploit Akamai's RepositoryService XXE vulnerability (CVE-2025-49493) with this testbed, aiding in secure coding practices and vulnerability assessments.
URL:https://github.com/Soham-id/2025hvv
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Google patched CVE-2025-10585, a Chrome V8 zero-day under active exploitation — here’s what it is, why it matters, and how to stay safe.
URL:https://github.com/AdityaBhatt3010/CVE-2025-10585-The-Chrome-V8-Zero-Day
标签:#CVE-2025
更新了:CVE-2025
描述:Google patched CVE-2025-10585, a Chrome V8 zero-day under active exploitation — here’s what it is, why it matters, and how to stay safe.
URL:https://github.com/AdityaBhatt3010/CVE-2025-10585-The-Chrome-V8-Zero-Day
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Proof of Concept for CVE-2025-56762
URL:https://github.com/Shaunak-Chatterjee/CVE-2025-56762
标签:#CVE-2025
更新了:CVE-2025
描述:Proof of Concept for CVE-2025-56762
URL:https://github.com/Shaunak-Chatterjee/CVE-2025-56762
标签:#CVE-2025
GitHub监控消息提醒!!!
更新了:代码审计
描述:一个由大语言模型(LLM)驱动、并由可解释人工智能(XAI)增强的现代化代码审计平台,旨在为整个代码仓库和单个代码片段提供深度、智能且易于理解的审查反馈。
URL:https://github.com/lintsinghua/XCodeReviewer
标签:#代码审计
更新了:代码审计
描述:一个由大语言模型(LLM)驱动、并由可解释人工智能(XAI)增强的现代化代码审计平台,旨在为整个代码仓库和单个代码片段提供深度、智能且易于理解的审查反馈。
URL:https://github.com/lintsinghua/XCodeReviewer
标签:#代码审计
GitHub监控消息提醒!!!
更新了:CVE-2025
描述:Audit Tool for CVE-2025-55241 - No Warranty Provided or Assumed. Analyze and Use at Own Risk
URL:https://github.com/Spanky-McSpank/CVE-2025-55241-Internal-Audit
标签:#CVE-2025
更新了:CVE-2025
描述:Audit Tool for CVE-2025-55241 - No Warranty Provided or Assumed. Analyze and Use at Own Risk
URL:https://github.com/Spanky-McSpank/CVE-2025-55241-Internal-Audit
标签:#CVE-2025