📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-70553-PoC
👤 项目作者: woshidashabi1126
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 14:20:01

📝 项目描述:
无描述

🔗 点击访问项目地址 woshidashabi1126/CVE-2026-70553-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: apk-injector-hub-app
👤 项目作者: ammeericcu3243
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:41:00

📝 项目描述:
Inject APK payloads via an HTML-based Telegram mini-app interface for streamlined web injection tasks.

🔗 点击访问项目地址 GitHub - ammeericcu3243/apk-injector-hub-app: Inject APK payloads via an HTML-based Telegram mini-app interface for streamlined…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #免杀 #Shellcode

📦 项目名称: oktos
👤 项目作者: 1y0n
🛠 开发语言: Unknown
Star数量: 15 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-06 07:18:33

📝 项目描述:
Oktos 是一款红队后渗透平台,作为 XRED.TEAM 的一部分。它采用了模块化设计,支持 BOF 动态加载、多信道异步通信与内存免杀,内置的 AI 助手可辅助编排或自动执行后渗透任务,为红队提供隐蔽、高效、智能的作战能力。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-CVE-2026-56164-exploit
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:30:08

📝 项目描述:
CVE-2026-56164 is a critical missing-authentication vulnerability affecting on-premises Microsoft SharePoint Server. It allows unauthenticated, remote attackers to elevate privileges over a network.

🔗 点击访问项目地址 sam00/POC-CVE-2026-56164-exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: CVE-2018-7600-Drupalgeddon2-RCE
👤 项目作者: Shams-Ul-Mehmood
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 13:02:19

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: POC-CVE-2026-0300-exploit
👤 项目作者: sam00
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 12:37:16

📝 项目描述:
Palo Alto - CVE-2026-0300 exploit

🔗 点击访问项目地址 sam00/POC-CVE-2026-0300-exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: ICARUS
👤 项目作者: IcarusSec
🛠 开发语言: Java
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:44:30

📝 项目描述:
Enterprise-grade Burp Suite extension for automated API security testing, vulnerability detection, and evidence-based reporting.

🔗 点击访问项目地址 GitHub - IcarusSec/ICARUS: Enterprise-grade Burp Suite extension for automated API security testing, vulnerability detection, and…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: ssrf
👤 项目作者: nethunterxy
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:40:21

📝 项目描述:
ssrf poc

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #EXP #Exploit

📦 项目名称: CVE-2026-0163-EXP
👤 项目作者: sentinel-aidefense
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:42:41

📝 项目描述:
CVE-2026-0163 Exploit

🔗 点击访问项目地址 GitHub - sentinel-aidefense/CVE-2026-0163-EXP: CVE-2026-0163 Exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malconsole
👤 项目作者: raKSum-cybersec
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:18:44

📝 项目描述:
A single msfconsole-style terminal for static reverse-engineering and malware triage — unified hashing, PE/ELF analysis, string/IOC extraction, YARA, and disassembly, sandboxed by default, with a one-command Markdown/PDF report at the end.

🔗 点击访问项目地址 GitHub - raKSum-cybersec/malconsole: A single msfconsole-style terminal for static reverse-engineering and malware triage — unified…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Threat-Hunting-Using-YARA-Rules-
👤 项目作者: GOWTHAMMG347
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:34:09

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - GOWTHAMMG347/Threat-Hunting-Using-YARA-Rules-
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: thiranex-vulnerability-scanner
👤 项目作者: vikash-mishra-01
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 11:05:34

📝 项目描述:
Python Vulnerability Scanner for Thiranex Task 2

🔗 点击访问项目地址 GitHub - vikash-mishra-01/thiranex-vulnerability-scanner: Python Vulnerability Scanner  for Thiranex Task 2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: rce-poc-stub
👤 项目作者: kokifish
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:14:49

📝 项目描述:
RCE PoC stub file

🔗 点击访问项目地址 GitHub - kokifish/rce-poc-stub: RCE PoC stub file
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: galact-Skills
👤 项目作者: galact-byte
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:56:29

📝 项目描述:
个人自用 Agent Skill 库(SKILL.md 标准),现阶段聚焦授权渗透漏洞挖掘:14 类 hunt-* + 攻击面研判总线,自带静态+靶标端到端测试。后续扩展其它领域。

🔗 点击访问项目地址 galact-byte/galact-Skills
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: XsessionHandler
👤 项目作者: zalakamal08
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:25:02

📝 项目描述:
Burp Suite extension: automatic JWT / access token / refresh token / CSRF token session handling - capture from responses, inject into outgoing requests. No session handling rules needed.

🔗 点击访问项目地址 GitHub - zalakamal08/XsessionHandler: Burp Suite extension: automatic JWT / access token / refresh token / CSRF token session handling…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-69098_exploit
👤 项目作者: 0xdak
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 10:52:37

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - 0xdak/CVE-2026-69098_exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Confluence #POC

📦 项目名称: AutoDocBot-V2
👤 项目作者: DWProv
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 09:48:24

📝 项目描述:
MCP-based Copilot agent for generating styled Confluence process documentation with diagrams

🔗 点击访问项目地址 GitHub - DWProv/AutoDocBot-V2: MCP-based Copilot agent for generating styled Confluence process documentation with diagrams
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response

📦 项目名称: Cours-BlueTeam-CyberDef
👤 项目作者: lietoo7
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 09:42:48

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-58048-PoC-Exploit
👤 项目作者: tc4dy
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 09:45:12

📝 项目描述:
👾 CVE-2026-58048 – cPanel Root SQL Execution Toolkit (CVSS 9.4) | Full Red/Blue Team Toolkit suite for unpatched cPanel & WHM 11.x. 3 tools: Safe Checker (audit/reporting), PoC (verification), Weaponized (reverse shell, persistence, UDF RCE, deployment, file read/write, database operations, mass scan). w/Python. 🦾 Use Ethically, Stay Legal <3

🔗 点击访问项目地址 tc4dy/CVE-2026-58048-PoC-Exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: NT-Forensik-Repair
👤 项目作者: netztaucher
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 08:51:45

📝 项目描述:
Read-only Incident-Response-Forensik für WordPress/Plesk/Joomla — erkennt obfuskierte Backdoors, prüft DB & Root-Eskalation, erzeugt Kunden-, BSI- & Technik-Bericht mit SHA256-Belegen. Analyse frei und quelloffen; der Bereinigungsteil ist lizenzgebunden.

🔗 点击访问项目地址
Back to Top