📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Shellcode #Loader
📦 项目名称: half-way-process-hollowing
👤 项目作者: asvased
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 21:57:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Shellcode #Loader
📦 项目名称: half-way-process-hollowing
👤 项目作者: asvased
🛠 开发语言: C#
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 21:57:10
📝 项目描述:
OPSEC-safe shellcode loader — half-way process hollowing in C#. No unbacked RX regions, no VirtualAllocEx, no APC injection.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-60206-PoC-Exploit
👤 项目作者: tc4dy
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 21:44:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #Exploit
📦 项目名称: CVE-2026-60206-PoC-Exploit
👤 项目作者: tc4dy
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 21:44:07
📝 项目描述:
👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit combo/unsigned/xsw/nameid/all, --shodan integration, --tor support, mass scanning, JSON/CSV/JSONL output, cookie validation. 🛡️ CVSS 9.9 Critical - Use Ethically, Stay Legal. 🔒🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #Remote Code Execution
📦 项目名称: RCE
👤 项目作者: vineelsai26
🛠 开发语言: Go
⭐ Star数量: 5 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:39:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #Remote Code Execution
📦 项目名称: RCE
👤 项目作者: vineelsai26
🛠 开发语言: Go
⭐ Star数量: 5 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:39:27
📝 项目描述:
Remote Code Execution engine in Go 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rules
📦 项目名称: yara_check
👤 项目作者: Ibeneme
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:55:33
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rules
📦 项目名称: yara_check
👤 项目作者: Ibeneme
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:55:33
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: OAuth2-Vulnerability-Scanner
👤 项目作者: Ruaridh-Hunter
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:50:22
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: OAuth2-Vulnerability-Scanner
👤 项目作者: Ruaridh-Hunter
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:50:22
📝 项目描述:
OAuth2 simple authentication server and vulnerability scanner docker network🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-9198
👤 项目作者: 0xgh057r3c0n
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:59:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-9198
👤 项目作者: 0xgh057r3c0n
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 20:59:40
📝 项目描述:
IBM Langflow Unauthenticated RCE via Auto-Login Bypass🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: IDOR-Hunter
👤 项目作者: AjayIngle1229
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 19:58:36
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: IDOR-Hunter
👤 项目作者: AjayIngle1229
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 19:58:36
📝 项目描述:
A Python-based IDOR vulnerability scanner for security testing and learning.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: Discuz-X5.0-Authentication-Bypass-Exploit-Framework
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 18:49:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: Discuz-X5.0-Authentication-Bypass-Exploit-Framework
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 18:49:40
📝 项目描述:
Discuz! X5.0 Authentication Bypass Exploit Framework (CVE-2026-49952) - Critical vulnerability allowing unauthenticated database backup access via UC_KEY encryption oracle token reuse. CVSS 9.1. Full-featured tool with version detection, multi-payload attacks, interactive shell, and automated exploitation. Authorized testing only.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: XSS-CROSS-SITE-SCRIPTING-AND-SQL-INJECTION-ON-SITE
👤 项目作者: rishikamishra0805-bit
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 18:01:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: XSS-CROSS-SITE-SCRIPTING-AND-SQL-INJECTION-ON-SITE
👤 项目作者: rishikamishra0805-bit
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 18:01:03
📝 项目描述:
Advanced Web Vulnerability Scanner - XSS & SQL Injection Detection with CVSS Scoring🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #POC #CVE
📦 项目名称: cve-2025-9951-ffmpeg-jp2-poc
👤 项目作者: fm0ss
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 17:06:51
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #POC #CVE
📦 项目名称: cve-2025-9951-ffmpeg-jp2-poc
👤 项目作者: fm0ss
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 17:06:51
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rule #malware
📦 项目名称: yara-tools
👤 项目作者: ChristianGLucas
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 16:54:51
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rule #malware
📦 项目名称: yara-tools
👤 项目作者: ChristianGLucas
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 16:54:51
📝 项目描述:
YARA malware/pattern rule compilation, validation, matching, and inspection for the Axiom marketplace, wrapping yara-python (Apache-2.0) + libyara (BSD-3-Clause)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: ApiDiscoveryBurpExtension
👤 项目作者: kruthikag12
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 15:39:50
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: ApiDiscoveryBurpExtension
👤 项目作者: kruthikag12
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 15:39:50
📝 项目描述:
Custom Burp Suite extension developed using the Montoya API for API discovery, endpoint monitoring, HTTP method tracking, and automated API reporting.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: website-scanner
👤 项目作者: saravana2501
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 16:00:11
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: website-scanner
👤 项目作者: saravana2501
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 16:00:11
📝 项目描述:
The **Website Vulnerability Scanner** is a web-based cybersecurity tool that detects common website security issues such as SQL Injection, XSS, and missing security headers. It generates a report with identified vulnerabilities and recommendations to improve website security.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE
📦 项目名称: React2Shell-Exploit-CVE-2025-55182
👤 项目作者: indra-031
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 15:59:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE
📦 项目名称: React2Shell-Exploit-CVE-2025-55182
👤 项目作者: indra-031
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 15:59:29
📝 项目描述:
React2Shell is a proof-of-concept exploit for CVE-2025-55182 affecting vulnerable React Server Components (RSC) implementations in Next.js🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #渗透测试 #漏洞
📦 项目名称: security-viz-lab
👤 项目作者: wangzifan396-wzf
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 14:19:28
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #渗透测试 #漏洞
📦 项目名称: security-viz-lab
👤 项目作者: wangzifan396-wzf
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 14:19:28
📝 项目描述:
网络安全可视化实验室 - DDoS、SQL注入、XSS/CSRF、渗透测试、WAF、IDS/IPS、蜜罐、零信任🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #CVE
📦 项目名称: sync-rce
👤 项目作者: MaddyGuthridge
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 14:52:06
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #CVE
📦 项目名称: sync-rce
👤 项目作者: MaddyGuthridge
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-24 14:52:06
📝 项目描述:
A proof-of-concept of an RCE attack against sync-rpc🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Confluence #POC
📦 项目名称: sentry
👤 项目作者: bera-jamal-cole
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-24 14:52:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Confluence #POC
📦 项目名称: sentry
👤 项目作者: bera-jamal-cole
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-24 14:52:56
📝 项目描述:
Pre-joins code, git history, Jira, Confluence, and Datadog APM behind one MCP server — gives AI agents a single tool call for "why does this code exist" and a testing framework for frontend and backend change-impact validation.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE #POC
📦 项目名称: pix-ai-coding-assistant
👤 项目作者: Vulnetix
🛠 开发语言: Shell
⭐ Star数量: 8 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-24 14:59:34
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE #POC
📦 项目名称: pix-ai-coding-assistant
👤 项目作者: Vulnetix
🛠 开发语言: Shell
⭐ Star数量: 8 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-24 14:59:34
📝 项目描述:
Vulnerability intelligence for Claude Code — scans dependencies on commit, searches packages, analyzes exploits, and proposes fixes🔗 点击访问项目地址