📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #WAF
📦 项目名称: agentrouter-setup-guide
👤 项目作者: marko1olo
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 10:00:33
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #WAF
📦 项目名称: agentrouter-setup-guide
👤 项目作者: marko1olo
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 10:00:33
📝 项目描述:
Complete guide to run Claude Code CLI & VS Code with AgentRouter using a WAF bypass proxy🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49099
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 09:20:39
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49099
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 09:20:39
📝 项目描述:
PoC reproducer for CVE-2026-49099 (Apache Camel camel-salesforce): the non-Camel-prefixed sObjectQuery header escapes the HTTP header filter and overrides the producer's configured SOQL (SOQL injection / broken access control). Fixed in 4.14.8/4.18.3/4.21.0.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49365
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 09:56:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49365
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 09:56:56
📝 项目描述:
PoC reproducer for CVE-2026-49365 (Apache Camel camel-netty-http / camel-undertow): muteException defaults to false, so an uncaught exception's full Java stack trace is returned to the HTTP client (CWE-209). Fixed in 4.14.8/4.18.3/4.21.0.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE
📦 项目名称: user999leak
👤 项目作者: congyu-bot
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:58:17
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE
📦 项目名称: user999leak
👤 项目作者: congyu-bot
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:58:17
📝 项目描述:
CVE-2025-21479_Exploit.bin🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #templates
📦 项目名称: security-templates
👤 项目作者: FURQANAHMAD34
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:49:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #templates
📦 项目名称: security-templates
👤 项目作者: FURQANAHMAD34
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:49:40
📝 项目描述:
DAST and SAST bug-bounty automation toolkit (secsuite.sh).🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit #RCE
📦 项目名称: n8n-cve-2026-21858
👤 项目作者: qianlijaingshan
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:56:22
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit #RCE
📦 项目名称: n8n-cve-2026-21858
👤 项目作者: qianlijaingshan
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 08:56:22
📝 项目描述:
CVE-2026-21858 + CVE-2025-68613 — n8n unauthenticated file read to RCE exploit🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #malware
📦 项目名称: C52-CRUNCH-MALWARE
👤 项目作者: CODECRUNCHWORLDWIDE
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:51:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #malware
📦 项目名称: C52-CRUNCH-MALWARE
👤 项目作者: CODECRUNCHWORLDWIDE
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:51:55
📝 项目描述:
A free, open-source 12-week course on taking malware apart safely: static and dynamic analysis, disassembly, sandboxing, and YARA — strict🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #WAF
📦 项目名称: Script
👤 项目作者: hemalathasriram96-pentester
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:59:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #WAF
📦 项目名称: Script
👤 项目作者: hemalathasriram96-pentester
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:59:21
📝 项目描述:
A Python script for vulnerability scanning with double encoding and WAF bypass capabilities.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Beacon
📦 项目名称: dns-https-c2-ueba-detection
👤 项目作者: Sushanth2624
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:56:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Beacon
📦 项目名称: dns-https-c2-ueba-detection
👤 项目作者: Sushanth2624
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 07:56:21
📝 项目描述:
Capstone 2 — Behavioral Detection of Hidden DNS/HTTPS C2 Using UEBA and Multi-Indicator Analysis. All 7 phases (0-6) complete; deployed end-to-end (Zeek/Suricata/ES/Kibana). Result C>B>A: F1 1.00 vs 0.80 vs 0.67.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Ai-assited-client-side-web-vulnerability-scanner
👤 项目作者: Yuva-shreee
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 06:37:54
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Ai-assited-client-side-web-vulnerability-scanner
👤 项目作者: Yuva-shreee
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 06:37:54
📝 项目描述:
Developed a client-side Web Vulnerability Scanner that analyzes HTML and JavaScript to detect security issues like XSS, insecure eval(), and data exposure. Implemented DOM parsing, AST analysis, and OWASP-based risk scoring with automated fix suggestions and secure coding guidance.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #漏洞 #扫描
📦 项目名称: baota-server-vulnerability-guard
👤 项目作者: belone1993
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 05:37:02
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #漏洞 #扫描
📦 项目名称: baota-server-vulnerability-guard
👤 项目作者: belone1993
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 05:37:02
📝 项目描述:
宝塔服务器漏洞检测与分级修复插件:本地审计、备份回滚、维护窗口边界🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #RCE #POC
📦 项目名称: fastjson-1.2.83-rce
👤 项目作者: hello0matter
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 04:48:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #RCE #POC
📦 项目名称: fastjson-1.2.83-rce
👤 项目作者: hello0matter
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 04:48:14
📝 项目描述:
fastjson-1.2.83-rce poc 热乎的🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #POC
📦 项目名称: nodejs-supply-chain-attack-poc
👤 项目作者: unitnikolai
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 03:57:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #POC
📦 项目名称: nodejs-supply-chain-attack-poc
👤 项目作者: unitnikolai
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-21 03:57:45
📝 项目描述:
NodeJS reverse shell exploit // supply chain attack proof of concept - npm run preinstall -> breach🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #RCE #POC
📦 项目名称: 2026FastjsonPoC
👤 项目作者: triplexlove
🛠 开发语言: Unknown
⭐ Star数量: 5 | 🍴 Fork数量: 71
📅 更新时间: 2026-07-21 03:26:13
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #RCE #POC
📦 项目名称: 2026FastjsonPoC
👤 项目作者: triplexlove
🛠 开发语言: Unknown
⭐ Star数量: 5 | 🍴 Fork数量: 71
📅 更新时间: 2026-07-21 03:26:13
📝 项目描述:
Fastjson 1.2.66-1.2.83 JsonType pure-library RCE PoC (AutoType off, JDK8 + Spring Boot LaunchedURLClassLoader). Authorized research only.🔗 点击访问项目地址