📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rule #malware
📦 项目名称: Smart-YARA-Rule-Generator
👤 项目作者: mokhtarfertit
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:53:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rule #malware
📦 项目名称: Smart-YARA-Rule-Generator
👤 项目作者: mokhtarfertit
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:53:00
📝 项目描述:
smart YARA its tools for make malware analysis 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Webrecon-
👤 项目作者: happysharma80119-lgtm
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:49:37
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Webrecon-
👤 项目作者: happysharma80119-lgtm
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:49:37
📝 项目描述:
WebRecon — Subdomain Enumeration & Reflected XSS Scanner WebRecon is a Python-based reconnaissance and web application security tool designed to streamline the early stages of a penetration test or bug bounty engagement. It combines active and passive subdomain discovery with automated reflected Cross-Site Scripting (XSS) detection.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: CVE-2026-60206
👤 项目作者: Debajyoti0-0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:32:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: CVE-2026-60206
👤 项目作者: Debajyoti0-0
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:32:38
📝 项目描述:
Technical analysis and Proof-of-Concept for CVE-2026-60206, a critical Oracle WebLogic Server SAML authentication bypass vulnerability.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: burp-suite-executor-scripts
👤 项目作者: tyler-youngzxv6238
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:04:13
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: burp-suite-executor-scripts
👤 项目作者: tyler-youngzxv6238
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 15:04:13
📝 项目描述:
A 2026 collection of practical Burp Suite scripts for security testers, combining hands-on automation, extension examples, and focused utilities in one organized repository.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #rule #rules
📦 项目名称: yara-scanner
👤 项目作者: davidattip
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:53:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #rule #rules
📦 项目名称: yara-scanner
👤 项目作者: davidattip
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:53:41
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vuln_scanner
👤 项目作者: shahadali-4
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: vuln_scanner
👤 项目作者: shahadali-4
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:56
📝 项目描述:
A lightweight Python web vulnerability scanner with PDF reporting.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: DOM_OWASP_JUICE_SHOP
👤 项目作者: devisalone
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: DOM_OWASP_JUICE_SHOP
👤 项目作者: devisalone
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 14:49:21
📝 项目描述:
Demonstration of OWASP JUICE SHOP DOM XSS🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: flan-go-scan
👤 项目作者: therandomsecurityguy
🛠 开发语言: Go
⭐ Star数量: 17 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 13:39:54
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: flan-go-scan
👤 项目作者: therandomsecurityguy
🛠 开发语言: Go
⭐ Star数量: 17 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 13:39:54
📝 项目描述:
A modular, extensible vulnerability scanner in Go. 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: Burp2Postman
👤 项目作者: tobiasGuta
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:30:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: Burp2Postman
👤 项目作者: tobiasGuta
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:30:41
📝 项目描述:
Burp2Postman is a Java/Montoya Burp Suite extension that sends selected HTTP requests directly to Postman. It does not export a collection file and does not hardcode workspace, collection, or folder IDs.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #信息收集 #渗透
📦 项目名称: WebScanner-with-AI
👤 项目作者: SilasWu50
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:58:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #信息收集 #渗透
📦 项目名称: WebScanner-with-AI
👤 项目作者: SilasWu50
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:58:29
📝 项目描述:
这是一款接入ai分析的集成信息收集工具,集成了多个主流github上优秀的信息收集工具,并通过ai进行自动化信息整理,精准高效暴露突破口给予渗透人员🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #NTLM Relay #AD
📦 项目名称: adscan
👤 项目作者: ADScanPro
🛠 开发语言: Python
⭐ Star数量: 492 | 🍴 Fork数量: 54
📅 更新时间: 2026-07-25 13:10:09
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #NTLM Relay #AD
📦 项目名称: adscan
👤 项目作者: ADScanPro
🛠 开发语言: Python
⭐ Star数量: 492 | 🍴 Fork数量: 54
📅 更新时间: 2026-07-25 13:10:09
📝 项目描述:
Free Active Directory pentesting tool for Linux. Automates AD and LDAP enumeration, Kerberoasting, ASREPRoast, password spraying, ADCS/ESC1, DCSync, RBCD, gMSA, shadow credentials, NTLM relay and credential dumping across 104 techniques, mapping BloodHound-compatible attack paths to Domain Admin. NIS2 / ISO 27001 reports. No Windows needed.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Syntecxhub_Vulnerability_Scanner
👤 项目作者: Kalsoom-Gill
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:05:15
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Syntecxhub_Vulnerability_Scanner
👤 项目作者: Kalsoom-Gill
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:05:15
📝 项目描述:
A simple Python-based vulnerability scanner that detects open ports, identifies common services, checks possible security issues, and generates a scan report.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #信息收集 #渗透
📦 项目名称: InformationCollecter-With-AI-analyzing
👤 项目作者: SilasWu50
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:59:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #信息收集 #渗透
📦 项目名称: InformationCollecter-With-AI-analyzing
👤 项目作者: SilasWu50
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:59:56
📝 项目描述:
接入ai分析的集成信息收集工具,集成了多个主流github上优秀的信息收集工具,并通过ai进行自动化信息整理,精准高效暴露突破口给予渗透人员🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #GitLab #EXP
📦 项目名称: glsec
👤 项目作者: glsec
🛠 开发语言: Go
⭐ Star数量: 19 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 12:45:57
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #GitLab #EXP
📦 项目名称: glsec
👤 项目作者: glsec
🛠 开发语言: Go
⭐ Star数量: 19 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-25 12:45:57
📝 项目描述:
Static security scanner and linter for GitLab CI. Finds .gitlab-ci.yml misconfigurations, supply-chain risks, and leaked secrets. Offline, SARIF output, OWASP CICD-SEC and CWE mappings.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework #Beacon
📦 项目名称: redops-hub-website
👤 项目作者: AbdoFawzi777
🛠 开发语言: Dart
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:03:23
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework #Beacon
📦 项目名称: redops-hub-website
👤 项目作者: AbdoFawzi777
🛠 开发语言: Dart
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 13:03:23
📝 项目描述:
Mobile command center for Red Team operators. Vuln tracking, C2 monitoring, encrypted payload vault. Built with Flutter + Firebase.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-14266
👤 项目作者: liyuxuan504-byte
🛠 开发语言: PowerShell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:32:43
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC #RCE
📦 项目名称: CVE-2026-14266
👤 项目作者: liyuxuan504-byte
🛠 开发语言: PowerShell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:32:43
📝 项目描述:
7-Zip XZ Decoder Heap Buffer Overflow - Full analysis, root cause, PoC, and RCE exploitation roadmap🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-48908-Joomla-SP-Page-Builder-RCE
👤 项目作者: imXur
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:57:50
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-48908-Joomla-SP-Page-Builder-RCE
👤 项目作者: imXur
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 12:57:50
📝 项目描述:
Technical analysis and advisory for CVE-2026-48908: Unauthenticated Arbitrary File Upload to RCE in JoomShaper SP Page Builder.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #RCE
📦 项目名称: fastjson-1.2.83-rce-jar-generator
👤 项目作者: heihu577
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 11:32:47
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #RCE
📦 项目名称: fastjson-1.2.83-rce-jar-generator
👤 项目作者: heihu577
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 11:32:47
📝 项目描述:
用于生成 fastjson 1.2.83 RCE 所需要的 Jar 包,含内存马注入功能。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: HexHunter
👤 项目作者: utkarsh206
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 11:39:59
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: HexHunter
👤 项目作者: utkarsh206
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-25 11:39:59
📝 项目描述:
HexHunter is a lightweight and beginner-friendly web vulnerability scanner designed for basic penetration testing. It crawls websites and detects common vulnerabilities such as SQL Injection (SQLi) and Cross-Site Scripting (XSS).🔗 点击访问项目地址