📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #POC
📦 项目名称: stusds-exploit-poc
👤 项目作者: krittidet007
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:57:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #POC
📦 项目名称: stusds-exploit-poc
👤 项目作者: krittidet007
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:57:29
📝 项目描述:
Critical vulnerability PoC for StUSDS , Admin backdoor via cut() allows theft of all user funds🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #WAF
📦 项目名称: playwright-web-fetcher
👤 项目作者: ZaZ712
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 09:00:05
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #WAF
📦 项目名称: playwright-web-fetcher
👤 项目作者: ZaZ712
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 09:00:05
📝 项目描述:
Deploy a real browser to the cloud. AI-agent ready web fetching API — bypass Cloudflare, get clean content, persist sessions. curl-friendly, self-hosted, Docker-ready.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: mt6985-CVE-2026-43499
👤 项目作者: 233laoliu
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:22:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: mt6985-CVE-2026-43499
👤 项目作者: 233laoliu
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:22:40
📝 项目描述:
CVE-2026-43499 exploit adapter for MT6985 MediaTek Dimensity 9300 (vivo PD2241)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit #RCE
📦 项目名称: CVE-2026-61511
👤 项目作者: tc4dy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:31:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit #RCE
📦 项目名称: CVE-2026-61511
👤 项目作者: tc4dy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:31:14
📝 项目描述:
CVE-2026-61511 – vBulletin Pre-Auth RCE (CVSS 9.8). Vuln 5.x/6.x (unpatched). Multi-exploit via Endpoint Pool, AJAX, PHPFuck WAF bypass. Full toolkit: reverse shell, proxy, persistence, webshell, database operations, firewall control, log management, mass scanning. 2 versions: multi-exploit & safe-check. Python 3.8+ Use Ethically, Stay Legal. 🔒🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #POC
📦 项目名称: cors-poc
👤 项目作者: jiangrun0213
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 07:22:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #POC
📦 项目名称: cors-poc
👤 项目作者: jiangrun0213
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 07:22:21
📝 项目描述:
CORS + XSS Attack POC - CyberStrikeAI🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: python-simple-vulnerability-scanner
👤 项目作者: dinalliyanage
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:04:23
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: python-simple-vulnerability-scanner
👤 项目作者: dinalliyanage
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:04:23
📝 项目描述:
A custom Python-based vulnerability scanner that detects open TCP ports, fingerprints active services, and identifies default web page misconfigurations.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #malware
📦 项目名称: Portable-Malware-Scanner
👤 项目作者: PotateBulle
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:02:34
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #malware
📦 项目名称: Portable-Malware-Scanner
👤 项目作者: PotateBulle
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 08:02:34
📝 项目描述:
Scanner de logiciels malveillants portable et multi-moteur pour Windows, utilisant SHA-256, YARA, ClamAV et Microsoft Defender, avec des rapports JSON unifiés.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored #Reflected
📦 项目名称: CDAC-Major-Project-VAPT
👤 项目作者: shantanu1245
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:37:28
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored #Reflected
📦 项目名称: CDAC-Major-Project-VAPT
👤 项目作者: shantanu1245
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:37:28
📝 项目描述:
Conducted VAPT on Altoro Mutual (testfire.net) in a controlled lab using Kali Linux, Burp Suite, Nmap, and SQLmap. Performed reconnaissance and security testing, identifying SQLi, Stored/Reflected XSS, CSRF, Broken Access Control, weak authentication, and network misconfigurations. Documented PoCs and recommended remediations.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Nemesis-Python
👤 项目作者: Nemesis-Tools
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:55:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Nemesis-Python
👤 项目作者: Nemesis-Tools
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:55:38
📝 项目描述:
A Selenium-based web vulnerability scanner · HTTP/HTTPS · 323 techniques · HackerOne-format reports (auto CWE/CVSS)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49176_BOF
👤 项目作者: 777erp
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:57:57
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-49176_BOF
👤 项目作者: 777erp
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 06:57:57
📝 项目描述:
CVE-2026-49176 WalletService LPE — standalone PoC + Cobalt Strike BOF (SYSTEM command on interactive session)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Command and Control
📦 项目名称: thm-tempest-investigation
👤 项目作者: Amal-shaji7
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 05:51:24
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Command and Control
📦 项目名称: thm-tempest-investigation
👤 项目作者: Amal-shaji7
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 05:51:24
📝 项目描述:
Incident response investigation of a compromised Windows endpoint. Reconstructed the full attack chain using Sysmon logs, Windows Event Logs, and network packet capture covering initial access, C2, discovery, privilege escalation, and persistence.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: chatsite-ai
👤 项目作者: Zephyrex21
🛠 开发语言: TypeScript
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 04:11:18
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: chatsite-ai
👤 项目作者: Zephyrex21
🛠 开发语言: TypeScript
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 04:11:18
📝 项目描述:
Chat with any website — paste a URL, get a grounded AI conversation about its actual content. Next.js 16 + Prisma 7 + Gemini, built portfolio-grade with full CI/CD, testing, and SSRF-hardened scraping.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #YARA #malware
📦 项目名称: Zeus-Malware-Hunt-lab-with-Suricata-Splunk-Volatility-YARA
👤 项目作者: osama-moussa
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:36:06
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #YARA #malware
📦 项目名称: Zeus-Malware-Hunt-lab-with-Suricata-Splunk-Volatility-YARA
👤 项目作者: osama-moussa
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:36:06
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework
📦 项目名称: ArtFramework
👤 项目作者: ZJustin117
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:59:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework
📦 项目名称: ArtFramework
👤 项目作者: ZJustin117
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:59:35
📝 项目描述:
ART Framework — presentation framework for Slay the Spire (C1/C2 dual-track UI)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: grype
👤 项目作者: marcinbojko
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:40:52
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: grype
👤 项目作者: marcinbojko
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:40:52
📝 项目描述:
Chocolatey package for Grype, a vulnerability scanner for container images and filesystems🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCustomHook-archived
👤 项目作者: KaiHT-Ladiant
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:48:42
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCustomHook-archived
👤 项目作者: KaiHT-Ladiant
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:48:42
📝 项目描述:
Burp Suite extension that serves a custom HTML webhook page via a dedicated local HTTP server🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: Atlas-burpsuite-extension
👤 项目作者: Raunaksplanet
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:02:32
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: Atlas-burpsuite-extension
👤 项目作者: Raunaksplanet
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 02:02:32
📝 项目描述:
Passive attack-surface mapper for Burp Suite. Watches HTTP traffic, deduplicates endpoints, presents them in a live table.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: code-security-scanner-nextjs-ts-v50
👤 项目作者: ejajmahmud
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:27:32
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: code-security-scanner-nextjs-ts-v50
👤 项目作者: ejajmahmud
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-29 01:27:32
📝 项目描述:
Automated Code Quality & Vulnerability Scanner enterprise system built with TypeScript / Next.js React App🔗 点击访问项目地址