📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:RCE
描述:Apache Solr Backup/Restore APIs RCE Poc (CVE-2023-50386)
URL:https://github.com/vvmdx/Apache-Solr-RCE_CVE-2023-50386_POC
标签:#RCE
更新了:RCE
描述:Apache Solr Backup/Restore APIs RCE Poc (CVE-2023-50386)
URL:https://github.com/vvmdx/Apache-Solr-RCE_CVE-2023-50386_POC
标签:#RCE
GitHub监控消息提醒!!!
更新了:漏洞扫描
描述:代码安全组件扫描-DependencyCheck升级版,增加对maven项目pom.xml文件引用的依赖jar进行组件漏洞扫描并输出报告
URL:https://github.com/MrBUGLF/Code-Audit-DependencyCheck
标签:#漏洞扫描
更新了:漏洞扫描
描述:代码安全组件扫描-DependencyCheck升级版,增加对maven项目pom.xml文件引用的依赖jar进行组件漏洞扫描并输出报告
URL:https://github.com/MrBUGLF/Code-Audit-DependencyCheck
标签:#漏洞扫描
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-23334
URL:https://github.com/ox1111/CVE-2024-23334
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-23334
URL:https://github.com/ox1111/CVE-2024-23334
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:FortiOS 6.0 - 7.4.2 Out of bound exploit --> RCE!!!
URL:https://github.com/c0d3b3af/CVE-2024-21762-POC
标签:#RCE
更新了:RCE
描述:FortiOS 6.0 - 7.4.2 Out of bound exploit --> RCE!!!
URL:https://github.com/c0d3b3af/CVE-2024-21762-POC
标签:#RCE
GitHub监控消息提醒!!!
更新了:webshell
描述:A collection of webshell
URL:https://github.com/Peaky-XD/webshell
标签:#webshell
更新了:webshell
描述:A collection of webshell
URL:https://github.com/Peaky-XD/webshell
标签:#webshell
GitHub监控消息提醒!!!
更新了:应急响应
描述:突发事件应急响应案例收集
URL:https://github.com/learnblockc/Film-website-design
标签:#应急响应
更新了:应急响应
描述:突发事件应急响应案例收集
URL:https://github.com/learnblockc/Film-website-design
标签:#应急响应
GitHub监控消息提醒!!!
更新了:漏洞扫描
描述:基于veo师傅的漏扫工具vscan二次开发的版本,开源、轻量、快速、跨平台 的网站漏洞扫描工具,帮助您快速检测网站安全隐患。功能 端口扫描(port scan) 指纹识别(fingerprint) 漏洞检测(nday check) 智能爆破 (admin brute) 敏感文件扫描(file fuzz)
URL:https://github.com/youki992/VscanPlus
标签:#漏洞扫描
更新了:漏洞扫描
描述:基于veo师傅的漏扫工具vscan二次开发的版本,开源、轻量、快速、跨平台 的网站漏洞扫描工具,帮助您快速检测网站安全隐患。功能 端口扫描(port scan) 指纹识别(fingerprint) 漏洞检测(nday check) 智能爆破 (admin brute) 敏感文件扫描(file fuzz)
URL:https://github.com/youki992/VscanPlus
标签:#漏洞扫描
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:CVE-2024-21413 exploit
URL:https://github.com/DevAkabari/CVE-2024-21413
标签:#CVE-2024
更新了:CVE-2024
描述:CVE-2024-21413 exploit
URL:https://github.com/DevAkabari/CVE-2024-21413
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:漏洞挖掘
描述:基于Ghidra反编译工具的p-code中间码,实现iot固件的自动化的漏洞挖掘,这个脚本只实现了任意命令执行的漏洞挖掘,使用中间码索引漏洞调用链,成功索引处则表示为潜在漏洞,后续需要人工确认漏洞是否为真。
URL:https://github.com/MiniMangosteen/MyGhidraScripts
标签:#漏洞挖掘
更新了:漏洞挖掘
描述:基于Ghidra反编译工具的p-code中间码,实现iot固件的自动化的漏洞挖掘,这个脚本只实现了任意命令执行的漏洞挖掘,使用中间码索引漏洞调用链,成功索引处则表示为潜在漏洞,后续需要人工确认漏洞是否为真。
URL:https://github.com/MiniMangosteen/MyGhidraScripts
标签:#漏洞挖掘
GitHub监控消息提醒!!!
更新了:bypassav
描述:Cobalt Strike plugin
URL:https://github.com/yutianqaq/CSx4Ldr
标签:#bypassav
更新了:bypassav
描述:Cobalt Strike plugin
URL:https://github.com/yutianqaq/CSx4Ldr
标签:#bypassav
GitHub监控消息提醒!!!
更新了:应急响应
描述:突发事件应急响应案例收集
URL:https://github.com/liuzhenliangstd/EmergencyEventCollection
标签:#应急响应
更新了:应急响应
描述:突发事件应急响应案例收集
URL:https://github.com/liuzhenliangstd/EmergencyEventCollection
标签:#应急响应
GitHub监控消息提醒!!!
更新了:CVE-2024
描述:Auto exploitation tool for CVE-2024-24401.
URL:https://github.com/MAWK0235/CVE-2024-24401
标签:#CVE-2024
更新了:CVE-2024
描述:Auto exploitation tool for CVE-2024-24401.
URL:https://github.com/MAWK0235/CVE-2024-24401
标签:#CVE-2024
GitHub监控消息提醒!!!
更新了:RCE
描述:A Craft CMS vulnerability that allows Remote Code Execution (RCE).
URL:https://github.com/acesoyeo/CVE-2023-41892
标签:#RCE
更新了:RCE
描述:A Craft CMS vulnerability that allows Remote Code Execution (RCE).
URL:https://github.com/acesoyeo/CVE-2023-41892
标签:#RCE
GitHub监控消息提醒!!!
更新了:免杀
描述:用于Webshell木马免杀、流量加密传输
URL:https://github.com/marrysaved/xnxxsexmovies.ru-Exploring-teen-sexuality-from-masturbation-to-creampie-movies
标签:#免杀
更新了:免杀
描述:用于Webshell木马免杀、流量加密传输
URL:https://github.com/marrysaved/xnxxsexmovies.ru-Exploring-teen-sexuality-from-masturbation-to-creampie-movies
标签:#免杀
GitHub监控消息提醒!!!
更新了:Red Team
描述:Blackdagger is a DAG-based automation tool specifically used in DevOps, DevSecOps, MLOps, MLSecOps, and Continuous Red Teaming (CART).
URL:https://github.com/ErdemOzgen/blackdagger
标签:#Red Team
更新了:Red Team
描述:Blackdagger is a DAG-based automation tool specifically used in DevOps, DevSecOps, MLOps, MLSecOps, and Continuous Red Teaming (CART).
URL:https://github.com/ErdemOzgen/blackdagger
标签:#Red Team
GitHub监控消息提醒!!!
更新了:渗透测试
描述:TangGo测试平台是无糖信息技术有限公司集多年渗透测试实战经验设计和开发的国产化综合性测试平台,为软件测试、网络安全从业人员提供强大且易用的测试工具及多人协同的工作环境,主要用于Web站点的功能测试、安全测试和安全评估。
URL:https://github.com/TangGolang/TangGo
标签:#渗透测试
更新了:渗透测试
描述:TangGo测试平台是无糖信息技术有限公司集多年渗透测试实战经验设计和开发的国产化综合性测试平台,为软件测试、网络安全从业人员提供强大且易用的测试工具及多人协同的工作环境,主要用于Web站点的功能测试、安全测试和安全评估。
URL:https://github.com/TangGolang/TangGo
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:RCE
描述:A multi-threaded Remote Code Execution (RCE) Server implemented in C
URL:https://github.com/anpa6841/remote-code-execution
标签:#RCE
更新了:RCE
描述:A multi-threaded Remote Code Execution (RCE) Server implemented in C
URL:https://github.com/anpa6841/remote-code-execution
标签:#RCE
GitHub监控消息提醒!!!
更新了:RCE
描述:This module implements a shell to exploit a RCE in umbraco CMS.
URL:https://github.com/mauricelambert/Shell-Exploit-Umbraco
标签:#RCE
更新了:RCE
描述:This module implements a shell to exploit a RCE in umbraco CMS.
URL:https://github.com/mauricelambert/Shell-Exploit-Umbraco
标签:#RCE