📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #CVE
📦 项目名称: liferay-ga4-rce-research
👤 项目作者: dinosn
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:31:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #CVE
📦 项目名称: liferay-ga4-rce-research
👤 项目作者: dinosn
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:31:29
📝 项目描述:
Security research on Liferay CE 7.0.3 GA4: pre-auth RCE as root (CVE-2020-7961 class) reproduced end-to-end, plus 16 more findings — 8+ with no known CVE. Agentic loop-hunt: 25 generators, 22 judges, 9 live validators on Docker. Evidence trail + one-go checker included.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: RefluxFS_CVE-2026-64600
👤 项目作者: letsr00t
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:19:12
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: RefluxFS_CVE-2026-64600
👤 项目作者: letsr00t
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:19:12
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: cve-2026-64725-poc
👤 项目作者: altvist
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:50:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: cve-2026-64725-poc
👤 项目作者: altvist
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 10:50:08
📝 项目描述:
PoC for CVE-2026-64725-poc🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored
📦 项目名称: Web-Exploitation-
👤 项目作者: umargill9565-sudo
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:31:05
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored
📦 项目名称: Web-Exploitation-
👤 项目作者: umargill9565-sudo
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:31:05
📝 项目描述:
Web Exploitation | Techniques: Stored XSS · CSP Bypass · JSONP Gadget · Cross-User Exfiltration🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #漏洞
📦 项目名称: server-side-vulnerabilities
👤 项目作者: xzhibo99-code
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:40:02
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #漏洞
📦 项目名称: server-side-vulnerabilities
👤 项目作者: xzhibo99-code
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:40:02
📝 项目描述:
涵盖 SSRF、SSTI、XXE 三种服务端侧漏洞的原理、实战、防护与心得的系统学习笔记。 适合 Web 安全入门者阅读,同样可作为面试准备的技术展示材料。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #文件上传 #漏洞
📦 项目名称: file-upload-guide
👤 项目作者: xzhibo99-code
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:16:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #文件上传 #漏洞
📦 项目名称: file-upload-guide
👤 项目作者: xzhibo99-code
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:16:35
📝 项目描述:
一份涵盖文件上传漏洞原理、upload-labs靶场实战、防护方案与心得的系统学习笔记。 适合Web安全入门者阅读,同样可作为面试准备的技术展示材料。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #Remote Code Execution
📦 项目名称: Write-Up_standoff_bootcamp-web-1-1-RCE-library.edu.stf
👤 项目作者: Svatoslav334
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:47:54
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #Remote Code Execution
📦 项目名称: Write-Up_standoff_bootcamp-web-1-1-RCE-library.edu.stf
👤 项目作者: Svatoslav334
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:47:54
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #CVE
📦 项目名称: CVE-2022-30024
👤 项目作者: ilizavr
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:46:30
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #CVE
📦 项目名称: CVE-2022-30024
👤 项目作者: ilizavr
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:46:30
📝 项目描述:
Tplink wr841 v10 rce exploit🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: CVE-2026-64600-Exploit
👤 项目作者: bha-vin
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:42:55
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: CVE-2026-64600-Exploit
👤 项目作者: bha-vin
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 09:42:55
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: d1v1sion-one.github.io
👤 项目作者: D1v1sion-One
🛠 开发语言: CSS
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:48:59
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: d1v1sion-one.github.io
👤 项目作者: D1v1sion-One
🛠 开发语言: CSS
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:48:59
📝 项目描述:
A static code Vulnerability scanner🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fortinet #CVE
📦 项目名称: NSE7_FSN_AR-7.6-Prep-Guide-Your-Path-to-Fortinet-NSE-7-Secure-Networking-Certification
👤 项目作者: wilsontank
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:52:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fortinet #CVE
📦 项目名称: NSE7_FSN_AR-7.6-Prep-Guide-Your-Path-to-Fortinet-NSE-7-Secure-Networking-Certification
👤 项目作者: wilsontank
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:52:07
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-14856-TastyIgniter
👤 项目作者: jonas-fernandez-as
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:08:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-14856-TastyIgniter
👤 项目作者: jonas-fernandez-as
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:08:14
📝 项目描述:
CVE-2026-14856 TastyIgniter v4.3.0🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #template
📦 项目名称: portwave
👤 项目作者: assassin-marcos
🛠 开发语言: Rust
⭐ Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:28:33
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #template
📦 项目名称: portwave
👤 项目作者: assassin-marcos
🛠 开发语言: Rust
⭐ Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:28:33
📝 项目描述:
Ultra-fast hybrid IPv4/IPv6 port scanner with adaptive concurrency, banner grab, TLS sniff, and built-in httpx + nuclei recon pipeline — written in async Rust.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: PagePulse
👤 项目作者: shivaydwivedi
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:29:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: PagePulse
👤 项目作者: shivaydwivedi
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:29:35
📝 项目描述:
Security-focused web page auditing service built with Node.js, Express 5, Zod, Undici, and Cheerio, providing SSRF-aware page validation, static HTML analysis, deterministic security scoring, and RESTful APIs with production-grade logging and testing.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #POC
📦 项目名称: copilot-security-test-plugin
👤 项目作者: blooddiamondz
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:03:05
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #POC
📦 项目名称: copilot-security-test-plugin
👤 项目作者: blooddiamondz
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:03:05
📝 项目描述:
Security research - Copilot plugin intake RCE PoC🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework #Command and Control
📦 项目名称: Covenant-C2-Advanced-Suite
👤 项目作者: occurred2464-indorsed
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:03:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework #Command and Control
📦 项目名称: Covenant-C2-Advanced-Suite
👤 项目作者: occurred2464-indorsed
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 08:03:27
📝 项目描述:
C2 Frameworks & Post-extensionation – Advanced command and control suite with multi-framework support and undetectable features.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Confluence #POC
📦 项目名称: confluence-sync
👤 项目作者: wonseok-han
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:38:20
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Confluence #POC
📦 项目名称: confluence-sync
👤 项目作者: wonseok-han
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:38:20
📝 项目描述:
Bidirectional Confluence ↔ Markdown sync CLI — publish docs to Confluence and pull pages, folders, or an entire space back as Markdown.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: NGINX_2026_CVE_Bundle_CTI_Report
👤 项目作者: ChPratik
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:35:17
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: NGINX_2026_CVE_Bundle_CTI_Report
👤 项目作者: ChPratik
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-28 07:35:17
📝 项目描述:
Covered CVEs: CVE-2026-28755, CVE-2026-42926, CVE-2026-9256, CVE-2026-42055, CVE-2026-42533🔗 点击访问项目地址