📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vamp-subdomain-takeover
👤 项目作者: belky-me
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:34:09

📝 项目描述:
VampSecure Labs — Subdomain Takeover Vulnerability Scanner

🔗 点击访问项目地址 GitHub - belky-me/vamp-subdomain-takeover: VampSecure Labs — Subdomain Takeover Vulnerability Scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: darkcrypt
👤 项目作者: darkness215
🛠 开发语言: C
Star数量: 4 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:43:08

📝 项目描述:
AES-256-CBC shellcode loader with Hell's Gate direct syscalls and Early Bird APC injection

🔗 点击访问项目地址 GitHub - darkness215/darkcrypt: AES-256-CBC shellcode loader with Hell's Gate direct syscalls and Early Bird APC injection
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: security-research-orchestrator-prompt
👤 项目作者: dinosn
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:03:55

📝 项目描述:
High-assurance, artifact-agnostic prompt for authorized security labs, exploit-chain research, PoC validation, and evidence-led reporting.

🔗 点击访问项目地址 GitHub - dinosn/security-research-orchestrator-prompt: High-assurance, artifact-agnostic prompt for authorized security labs, exploit…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: auth-bypass-scanner
👤 项目作者: Thar-un
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:38:47

📝 项目描述:
4xx auth/authz bypass scanner — 54 verbs, 1137 headers, 22+ path tricks, FP suppression, Burp integration

🔗 点击访问项目地址 GitHub - Thar-un/auth-bypass-scanner: 4xx auth/authz bypass scanner — 54 verbs, 1137 headers, 22+ path tricks, FP suppression,…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: NessusScan
👤 项目作者: signature-creator
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:43:40

📝 项目描述:
A basic network scan using the Nessus Vulnerability Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-13158
👤 项目作者: MinhHK68
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 13:01:12

📝 项目描述:
无描述

🔗 点击访问项目地址 MinhHK68/CVE-2026-13158
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-53625-GLPI-PoC
👤 项目作者: 7h30th3r0n3
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:46:16

📝 项目描述:
GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical PoC for the GLPI vulnerability allowing a Technician to take full control of any Super-Admin account through REST API authtype manipulation.

🔗 点击访问项目地址 GitHub - 7h30th3r0n3/CVE-2026-53625-GLPI-PoC: GLPI Privilege Escalation via authtype Manipulation PoC - CVE-2026-53625. Ethical…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Weblogic #CVE

📦 项目名称: IHateWeblogic
👤 项目作者: gpipperr
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 12:00:00

📝 项目描述:
Oracle Forms and Reports on WebLogic is powerful but notoriously difficult to diagnose. This script library exists because the author has spent too many hours debugging obscure configuration issues, font problems, segfaults, and SSL mismatches on Oracle Middleware installations.

🔗 点击访问项目地址 GitHub - gpipperr/IHateWeblogic: Oracle Forms and Reports on WebLogic is powerful but notoriously difficult to diagnose. This script…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: xssadvancehunt
👤 项目作者: tripatpu
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:40:05

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner-tool
👤 项目作者: pavankumar-bhadram
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:59:01

📝 项目描述:
Automated Vulnerability Assessment & Security Audit Framework with CVSS v3.1 Scoring, 16 Security Audit Engines, OWASP/ISO/PCI Mappings & Graphical Executive HTML Dashboards.

🔗 点击访问项目地址 GitHub - pavankumar-bhadram/vulnerability-scanner-tool: Automated Vulnerability Assessment & Security Audit Framework with CVSS…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: malware-lab
👤 项目作者: m55681518-byte
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:33:05

📝 项目描述:
Spy vs Defender - educational malware lab: 20 technique demos, HTML game, YARA/Sigma detection rules, Windows Sandbox launcher

🔗 点击访问项目地址 GitHub - m55681518-byte/malware-lab: Spy vs Defender - educational malware lab: 20 technique demos, HTML game, YARA/Sigma detection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Python-Vulnerability-Scanner
👤 项目作者: vardhanpetakamsetty2005-max
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 10:07:46

📝 项目描述:
Python-based Vulnerability Scanner using Nmap with automated PDF reporting.

🔗 点击访问项目地址 GitHub - vardhanpetakamsetty2005-max/Python-Vulnerability-Scanner: Python-based Vulnerability Scanner using Nmap with automated…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Implant

📦 项目名称: uefi_bootkit_softlanding
👤 项目作者: ARES-SYS
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:53:29

📝 项目描述:
First public analysis of SoftLanding UEFI bootkit: Ring -2 implant, CVE-2025-7029, 240+ Gigabyte boards, GPU AI evasion, dual C2. YARA + Sigma + Suricata included.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Execute #Evasion

📦 项目名称: RepentanceStealer
👤 项目作者: Nuf1p
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-31 20:09:59

📝 项目描述:
x64 PIC shellcode that enable chrome CDP in-memory and extract/exfiltrate cookies

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #Evasion

📦 项目名称: apk-antivirus-evasion-20260801
👤 项目作者: scdnai
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:01:41

📝 项目描述:
APK爆毒免杀处理方案 - https://www.133l.com

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE

📦 项目名称: Cyber-Defenders-lab-
👤 项目作者: abiral-timalsina
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:29:44

📝 项目描述:
My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and LLMNR/NBT-NS credential poisoning — each with step-by-step packet analysis, screenshots, and a full Wireshark filter/command reference. Personal SOC Analyst Tier 1 learning log.

🔗 点击访问项目地址 GitHub - abiral-timalsina/Cyber-Defenders-lab-: My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: xss-grenade
👤 项目作者: tX-c0re
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:33:09

📝 项目描述:
Modern XSS detection engine with real browser validation, designed for authorized security testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #CVE

📦 项目名称: reconowl
👤 项目作者: Ayberk-Irmak
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 09:04:03

📝 项目描述:
Recon → scan → report CLI penetration-testing orchestrator (native checks + nmap/nuclei/httpx/sqlmap). Authorized use only.

🔗 点击访问项目地址 GitHub - Ayberk-Irmak/reconowl: Recon → scan → report CLI penetration-testing orchestrator (native checks + nmap/nuclei/httpx/sqlmap).…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Xray #漏洞

📦 项目名称: xray-ui
👤 项目作者: qist
🛠 开发语言: JavaScript
Star数量: 861 | 🍴 Fork数量: 117
📅 更新时间: 2026-08-01 09:02:39

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - qist/xray-ui
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: vanilla-js-quiz-engine
👤 项目作者: PranavRoy07
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-01 08:22:42

📝 项目描述:
Dependency-free JS quiz engine built to expose core language internals — execution contexts, hoisting, TDZ, closures, event loop — with XSS-safe DOM rendering (no innerHTML)

🔗 点击访问项目地址
Back to Top