📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: websocket-scribe
👤 项目作者: Blueeyes3
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 15:33:04

📝 项目描述:
A passive Burp Suite extension for capturing, inspecting, classifying, and exporting application-level WebSocket messages.

🔗 点击访问项目地址 GitHub - Blueeyes3/websocket-scribe: A passive Burp Suite extension for capturing, inspecting, classifying, and exporting application…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Spider-C2
👤 项目作者: theanonspider
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 15:53:15

📝 项目描述:
Modular Command & Control framework for authorized security testing

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: polybolos-denied-comms-c2
👤 项目作者: Polybolos-Institute
🛠 开发语言: C++
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 15:59:17

📝 项目描述:
Denied-comms C2 fusion framework - deterministic edge-native sensor fusion

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: securefile-scanner-enterprise
👤 项目作者: HackForgeX
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 15:57:40

📝 项目描述:
Enterprise-grade File Upload Security Scanner built with Python, Flask, YARA, REST API, 2FA, and Security Analytics.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: AES_DLL_ShellcodeLoader
👤 项目作者: bloggins
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 12:48:10

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - bloggins/AES_DLL_ShellcodeLoader
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: zafiyet-lab
👤 项目作者: Pavlushkax
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 14:15:10

📝 项目描述:
Eğitim amaçlı geliştirilmiş, içerisinde kasıtlı olarak siber güvenlik zafiyetleri (SQLi, XSS, Command Injection) barındıran basit bir Node.js laboratuvar ortamı.

🔗 点击访问项目地址 GitHub - Pavlushkax/zafiyet-lab: Eğitim amaçlı geliştirilmiş, içerisinde kasıtlı olarak siber güvenlik zafiyetleri (SQLi, XSS,…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: web-vulnerability-scanner
👤 项目作者: amanahmed-dotcom
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 14:50:36

📝 项目描述:
A Python-based web vulnerability scanner for educational and authorized security testing. Features website reconnaissance, crawling, HTTP header analysis, SSL/TLS checks, SQLi & XSS detection, HTML report generation, and a Flask web interface. Built with a modular architecture for easy extension.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Monitor #Response #Detection

📦 项目名称: OmniProx
👤 项目作者: ZephrFish
🛠 开发语言: Python
Star数量: 293 | 🍴 Fork数量: 20
📅 更新时间: 2026-07-30 13:43:02

📝 项目描述:
IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare

🔗 点击访问项目地址 GitHub - ZephrFish/OmniProx: IP Rotation from different providers - Like FireProx but for GCP, Azure, Alibaba and CloudFlare
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Security-Vulnerability-Scanner
👤 项目作者: Shubhambhanuse
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 13:38:18

📝 项目描述:
Python Flask based Website Security Vulnerability Scanner. Features: • SSL Checker • XSS Detection • SQL Injection Testing • Security Header Analysis • Port Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SecuraScan-
👤 项目作者: Erin131
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 13:55:49

📝 项目描述:
Python/Flask web vulnerability scanner — detects missing security headers, weak cookies, reflected XSS, and SQL injection (error-based + time-based blind). Built to understand detection logic behind tools like OWASP ZAP.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Fastjson #漏洞 #CVE #反序列化

📦 项目名称: fastjson-testDemo
👤 项目作者: changjiaqiu
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 09:37:56

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - changjiaqiu/fastjson-testDemo
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: BurpFeed
👤 项目作者: ZephrFish
🛠 开发语言: Python
Star数量: 95 | 🍴 Fork数量: 22
📅 更新时间: 2026-07-30 13:43:59

📝 项目描述:
Hacked together script for feeding urls into Burp's Sitemap

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: Ritesh-hack
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 13:01:22

📝 项目描述:
Python-based Web Vulnerability Scanner that automates security assessment by analyzing HTTP headers, cookie security, server information disclosure, OWASP Top 10 misconfigurations, SQL Injection, XSS, SSRF indicators, and HTML forms.

🔗 点击访问项目地址 GitHub - Ritesh-hack/Web-Vulnerability-Scanner: Python-based Web Vulnerability Scanner that automates security assessment by analyzing…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43499-A34
👤 项目作者: FuCnox
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 12:53:00

📝 项目描述:
Standalone CVE-2026-43499 PoC for Galaxy A34 SM-A346E A346EXXSEEZC7

🔗 点击访问项目地址 GitHub - FuCnox/CVE-2026-43499-A34: Standalone CVE-2026-43499 PoC for Galaxy A34 SM-A346E A346EXXSEEZC7
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2022-24355
👤 项目作者: ilizavr
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 11:11:29

📝 项目描述:
Tplink wr841 v10 rce exploit

🔗 点击访问项目地址 GitHub - ilizavr/CVE-2022-24355: Tplink wr841 v10 rce exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #Remote Code Execution

📦 项目名称: CVE-2025-49091-Gajim-RCE
👤 项目作者: thefreestyleresearcher
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 11:22:53

📝 项目描述:
Single click Remote Code Execution exploit targeting Gajim on devices with KDE Plasma.

🔗 点击访问项目地址 GitHub - thefreestyleresearcher/CVE-2025-49091-Gajim-RCE: Single click Remote Code Execution exploit targeting Gajim on devices…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Sivon-RAT
👤 项目作者: naix1337
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 11:52:09

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - naix1337/Sivon-RAT
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: JS-Extractor
👤 项目作者: keshrisaksham
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 10:53:58

📝 项目描述:
A Burp Suite extension that extracts JavaScript file URLs from your sitemap — either from a single page or recursively across an entire domain. Extracted URLs are saved to a file with ready-to-run `curl`, `wget`, and PowerShell download commands generated automatically.

🔗 点击访问项目地址 GitHub - keshrisaksham/JS-Extractor: A Burp Suite extension that extracts JavaScript file URLs from your sitemap — either from…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: burrowed-bofs
👤 项目作者: s4wbvnny
🛠 开发语言: C
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 10:44:28

📝 项目描述:
A repo of 𝗌̶𝗍̶𝗈̶𝗅̶𝖾̶𝗇̶ burrowed bofs from Cobalt Strike and other popular github bofs that could make sliver extra spicy.

🔗 点击访问项目地址 GitHub - s4wbvnny/burrowed-bofs: A repo of 𝗌̶𝗍̶𝗈̶𝗅̶𝖾̶𝗇̶ burrowed bofs from Cobalt Strike and other popular github bofs that could…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: ligolo-bof
👤 项目作者: s4wbvnny
🛠 开发语言: Go
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-30 10:57:38

📝 项目描述:
Sliver extension that runs the ligolo-ng agent as a shared library (DLL/SO) for in-memory tunnelling.

🔗 点击访问项目地址
Back to Top