📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #红蓝对抗 #靶场
📦 项目名称: xuandun-cyber-range
👤 项目作者: TrueFurina
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:49:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #红蓝对抗 #靶场
📦 项目名称: xuandun-cyber-range
👤 项目作者: TrueFurina
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:49:27
📝 项目描述:
玄盾 XUANDUN · AI 攻防靶场系统 — 面向红蓝对抗训练的 AI 攻防靶场 / 多智能体强化学习🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: rolebreaker
👤 项目作者: Guarina0x0
🛠 开发语言: Kotlin
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:47:01
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: rolebreaker
👤 项目作者: Guarina0x0
🛠 开发语言: Kotlin
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:47:01
📝 项目描述:
Burp Suite extension for JWT multi-role broken access control testing — auto-discovery, access matrix, privilege hierarchy, JWT attacks, HMAC cracker, IDOR analysis🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-55993
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:15:09
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-55993
👤 项目作者: oscerd
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 09:15:09
📝 项目描述:
PoC reproducer for CVE-2026-55993 (Apache Camel camel-atmosphere-websocket): the WebSocket consumer copies connection query parameters onto the Exchange unfiltered, so an injected CamelHttpUri drives a server-side request (SSRF) and leaks resolved property placeholders. Fixed in 4.14.8/4.18.3/4.21.0.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Shellcode #AV
📦 项目名称: shellcod_encoder
👤 项目作者: Wissemben84
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:27:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Shellcode #AV
📦 项目名称: shellcod_encoder
👤 项目作者: Wissemben84
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:27:03
📝 项目描述:
a python script for encoding shellcode, and then adding it to the syntax script files in C for bypassing AV 2026🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #RCE
📦 项目名称: fastjson-1.2.83-getresource-rce-lab-java-only-20260722-155842
👤 项目作者: hg0434hongzh0
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:42:23
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #RCE
📦 项目名称: fastjson-1.2.83-getresource-rce-lab-java-only-20260722-155842
👤 项目作者: hg0434hongzh0
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:42:23
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: ocular
👤 项目作者: guatxlabs
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:51:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: ocular
👤 项目作者: guatxlabs
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:51:45
📝 项目描述:
Moteur de capture et d'analyse web durci : recon anti-bot, analyse de HTML hostile, sessions interactives isolées. Séparation de privilèges, conteneurs éphémères, garde SSRF.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: laravel-ssrf
👤 项目作者: securized
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:59:25
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: laravel-ssrf
👤 项目作者: securized
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:59:25
📝 项目描述:
SSRF prevention for Laravel. Protect Http::, Guzzle, and validate user-supplied URLs against server-side request forgery.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: login-fish-scanner
👤 项目作者: mailsaiat96-beep
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:56:47
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: login-fish-scanner
👤 项目作者: mailsaiat96-beep
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:56:47
📝 项目描述:
An automated DAST tool for identifying authentication vulnerabilities🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: AI-Powered-Code-Vulnerability-Scanner
👤 项目作者: bhargavismiley314-cpu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:29:54
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: AI-Powered-Code-Vulnerability-Scanner
👤 项目作者: bhargavismiley314-cpu
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:29:54
📝 项目描述:
Automated static code analysis and security vulnerability scanner using Python AST.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE
📦 项目名称: epss-cve-feed
👤 项目作者: novadyne-hq
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:46:33
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE
📦 项目名称: epss-cve-feed
👤 项目作者: novadyne-hq
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 08:46:33
📝 项目描述:
A free, machine-readable feed of notable open-source dependency CVEs ranked by live EPSS exploit-probability (FIRST.org, daily). Pure-stdlib Python.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #钓鱼 #邮件 #Phishing
📦 项目名称: phishing-trainer
👤 项目作者: EarthOnline0115
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:56:36
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #钓鱼 #邮件 #Phishing
📦 项目名称: phishing-trainer
👤 项目作者: EarthOnline0115
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:56:36
📝 项目描述:
钓鱼邮件鉴别训练营🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #POC
📦 项目名称: Fastjson_RCE_POC
👤 项目作者: FishOfDead
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:53:44
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #POC
📦 项目名称: Fastjson_RCE_POC
👤 项目作者: FishOfDead
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:53:44
📝 项目描述:
Fastjson_RCE_POC🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCustomHook
👤 项目作者: KaiHT-Ladiant
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:31:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCustomHook
👤 项目作者: KaiHT-Ladiant
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:31:03
📝 项目描述:
Burp Suite extension that serves a custom HTML webhook page via a dedicated local HTTP server🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: DOM-XSS
👤 项目作者: Layansabha
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:02:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: DOM-XSS
👤 项目作者: Layansabha
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 07:02:07
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #POC #EXP
📦 项目名称: chaveiro
👤 项目作者: Paulo-Marcos-Lucio
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 04:53:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #POC #EXP
📦 项目名称: chaveiro
👤 项目作者: Paulo-Marcos-Lucio
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 04:53:55
📝 项目描述:
Auditor de segurança de tokens JWT/JWS — alg:none, confusão de algoritmo (RS→HS), brute de segredo HMAC, kid/jku SSRF e validação de claims. Inclui referência de validação correta. Python · MIT.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: lumina-ve
👤 项目作者: atriganguly
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 06:31:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: lumina-ve
👤 项目作者: atriganguly
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-22 06:31:08
📝 项目描述:
High-performance, memory-aware REST engine for e-commerce image validation, Amazon compliance checks, background removal, pHash, and SSRF-safe network telemetry with non-ML fallback pipelines.🔗 点击访问项目地址