📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: MalwareLens_AI
👤 项目作者: Surajit-Samanta
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:54:39

📝 项目描述:
Static-analysis malware triage workbench (RF + MLP) with MBC/ATT&CK mapping, campaign clustering, and AI-assisted YARA rule generation — built for AICS-108

🔗 点击访问项目地址 GitHub - Surajit-Samanta/MalwareLens_AI: Static-analysis malware triage workbench (RF + MLP) with MBC/ATT&CK mapping, campaign…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vanguard-agentic-security-harness
👤 项目作者: 0xsharz
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:52:44

📝 项目描述:
Agentic vulnerability scanner that builds the target's environment, runs a real exploit inside it, and watches the vulnerability fire.

🔗 点击访问项目地址 GitHub - 0xsharz/vanguard-agentic-security-harness: Agentic vulnerability scanner that builds the target's environment, runs a…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #POC

📦 项目名称: tmf630-toolkit
👤 项目作者: opentmf
🛠 开发语言: Java
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 17:06:17

📝 项目描述:
The adaptation of TMF-630 REST API Design Guidelines for Spring Web MVC.

🔗 点击访问项目地址 GitHub - opentmf/tmf630-toolkit: The adaptation of TMF-630 REST API Design Guidelines for Spring Web MVC.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Evasion #EDR

📦 项目名称: offensive-maldev
👤 项目作者: SlugRegister
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:44:42

📝 项目描述:
Offensive security techniques including AMSI bypass, EDR evasion, process hollowing, and shellcode loading

🔗 点击访问项目地址 GitHub - SlugRegister/offensive-maldev: Offensive security techniques including AMSI bypass, EDR evasion, process hollowing, and…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei-templates
👤 项目作者: 0XFFFF-XD
🛠 开发语言: Unknown
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-26 16:57:12

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - 0XFFFF-XD/nuclei-templates
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: cPanel-WHM-CVE-2026-41940-auth-bypass-exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 16:52:26

📝 项目描述:
Critical authentication bypass exploit for cPanel/WHM CVE-2026-41940. Leverages CRLF injection in cpsrvd daemon to gain root WHM access without credentials. Includes version detection, verbose logging, proxy support, JSON reporting, and post-exploitation account enumeration. For authorized security testing only.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #Beacon

📦 项目名称: SliverCloak
👤 项目作者: bytebl33d
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:56:10

📝 项目描述:
Go-based build program to clone, run modules, and compile custom Sliver client and server binaries.

🔗 点击访问项目地址 GitHub - bytebl33d/SliverCloak: Go-based build program to clone, run modules, and compile custom Sliver client and server binaries.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2 #Implant

📦 项目名称: SliverLoader
👤 项目作者: bytebl33d
🛠 开发语言: C#
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:26:14

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - bytebl33d/SliverLoader
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-polyproto
👤 项目作者: th3-bl1nd3r
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 15:45:38

📝 项目描述:
A vendor-neutral API traffic decoder for Burp Suite — auto-detects gzip/zstd/brotli, gRPC/gRPC-Web, HTTP chunked, and protobuf/JSON/form/XML, with a rule engine and lossless edit+replay.

🔗 点击访问项目地址 GitHub - th3-bl1nd3r/burp-polyproto: A vendor-neutral API traffic decoder for Burp Suite — auto-detects gzip/zstd/brotli, gRPC/gRPC…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #RCE #反序列化 #POC #EXP

📦 项目名称: fastjson-1.2.83
👤 项目作者: mua520
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:31:01

📝 项目描述:
fastjson-1.2.83

🔗 点击访问项目地址 GitHub - mua520/fastjson-1.2.83: fastjson-1.2.83
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #RCE #反序列化

📦 项目名称: FastjsonAutoPwn
👤 项目作者: milantgh
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:53:14

📝 项目描述:
FastjsonAutoPwn

🔗 点击访问项目地址 GitHub - milantgh/FastjsonAutoPwn: FastjsonAutoPwn
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Professional-Vulnerability-CVE-Scanner
👤 项目作者: waniaazam000-cpu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 14:57:01

📝 项目描述:
This project is a Python-based vulnerability scanner. It scans a website or IP address to find: Open ports Running services Software versions Known vulnerabilities (CVEs) Risk level Finally, it generates a PDF report and a JSON report.

🔗 点击访问项目地址 GitHub - waniaazam000-cpu/Professional-Vulnerability-CVE-Scanner: This project is a Python-based vulnerability scanner. It scans…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: safe-fetch-guard
👤 项目作者: anatolyben
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 13:20:41

📝 项目描述:
SSRF-safe URL validation and bounded, redirect-controlled HTTP fetch for untrusted outbound requests.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fscan #内网 #漏洞 #POC

📦 项目名称: fscan-gui
👤 项目作者: nas-tool
🛠 开发语言: Vue
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 07:42:03

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - nas-tool/fscan-gui
🚨 GitHub 监控消息提醒

🚨 发现关键词: #文件上传 #EXP

📦 项目名称: Employment-Recommendation-System
👤 项目作者: zhangsan594226632
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:49:28

📝 项目描述:
【万字文档+源码】 基于SpringBoot+Vue就业推荐系统-可用于毕设-课程设计-练手学习-学习资料分享-本文介绍了一个基于SpringBoot和Vue3的毕业生就业推荐系统设计方案。系统采用前后端分离架构,包含毕业生、企业和管理员三类角色,旨在解决高校就业信息不对称问题。毕业生可投递简历、查看面试通知;企业能发布岗位、管理简历;管理员统一管理平台数据并可视化统计招聘信息。系统实现了从注册登录、简历投递到面试管理的完整求职流程,具备文件上传、权限控制等基础模块。数据库设计了用户表、企业表、招聘岗位表等核心数据表,支持三方角色协同工作。该平台为高校毕业生求职、企业招聘和校方管理提供了规范化的线上解决方案。

🔗 点击访问项目地址 GitHub - zhangsan594226632/Employment-Recommendation-System: 【万字文档+源码】 基于SpringBoot+Vue就业推荐系统-可用于毕设-课程设计-练手学习-学习资料分享-本文介绍了一个基于…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #Privilege

📦 项目名称: up0x
👤 项目作者: g0ubu1i
🛠 开发语言: Go
Star数量: 6 | 🍴 Fork数量: 1
📅 更新时间: 2026-07-26 12:17:33

📝 项目描述:
一款集合常见提权方法的提权工具

🔗 点击访问项目地址 GitHub - g0ubu1i/up0x: 一款集合常见提权方法的提权工具
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-64600
👤 项目作者: Debajyoti0-0
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:53:35

📝 项目描述:
A C-based Linux security utility for detecting, safely verifying (Proof of Concept), and mitigating CVE-2026-64600 (RefluXFS). It provides kernel vulnerability assessment, XFS reflink detection, a safe race-condition PoC, and layered mitigation using SystemTap and XFS hardening.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #漏洞

📦 项目名称: CVE-2026-43499-root-KernelSU
👤 项目作者: woshimaniubi8
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 12:56:25

📝 项目描述:
基于内核漏洞CVE-2026-43499的本地提权适配,集成嵌入式 KernelSU 。编译生成`preload.so`;触发成功后会以 `late-load` 模式(越狱模式)启动 KernelSU。支持(xbl_config.img / vendor_boot.img) + boot.img 生成target.h Local privilege escalation adaptation based on a kernel vulnerability, integrating embedded KernelSU. Compiles and generates `preload.so`; , KernelSU will be started in `late-load` mode

🔗 点击访问项目地址 GitHub - woshimaniubi8/CVE-2026-43499-root-KernelSU: 基于内核漏洞CVE-2026-43499的本地提权适配,集成嵌入式 KernelSU.CVE-2026-43499+KernelSU越狱模式
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp_extension
👤 项目作者: olu-96
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:28:41

📝 项目描述:
无描述

🔗 点击访问项目地址 olu-96/burp_extension
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #RCE

📦 项目名称: fastjson-1.2.83-rce
👤 项目作者: mua520
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-26 11:57:44

📝 项目描述:
fastjson-1.2.83-rce-main

🔗 点击访问项目地址 mua520/fastjson-1.2.83-rce
Back to Top