📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Shellcode #Execute #Evasion
📦 项目名称: Phantom-Dropper-WebBased-Chrome-Bypas-Fud-Runtime-Native
👤 项目作者: Leemoys
🛠 开发语言: Visual Basic .NET
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:49:15
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Shellcode #Execute #Evasion
📦 项目名称: Phantom-Dropper-WebBased-Chrome-Bypas-Fud-Runtime-Native
👤 项目作者: Leemoys
🛠 开发语言: Visual Basic .NET
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:49:15
📝 项目描述:
Trojan builders focus on creating hidden malware with downloader and encryption capabilities. Assembly changers and mutex features ensure uniqueness, while RAT clients provide remote access to infected systems.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored
📦 项目名称: ai-threat-detection
👤 项目作者: Ishitalohani
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:24:13
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored
📦 项目名称: ai-threat-detection
👤 项目作者: Ishitalohani
🛠 开发语言: Python
⭐ Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:24:13
📝 项目描述:
AI-powered real-time threat detection system that analyzes nginx access logs using ML ensemble models and security rules to detect SQLi, XSS, SSRF, path traversal, command injection, and other web attacks.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Secrets-Dependency-Vulnerability-Scanner
👤 项目作者: YordanStankov
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:58:19
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Secrets-Dependency-Vulnerability-Scanner
👤 项目作者: YordanStankov
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 07:58:19
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Automated_Vulnerability_Scanner
👤 项目作者: alekzandren
🛠 开发语言: Python
⭐ Star数量: 5 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-14 08:02:16
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Automated_Vulnerability_Scanner
👤 项目作者: alekzandren
🛠 开发语言: Python
⭐ Star数量: 5 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-14 08:02:16
📝 项目描述:
A hybrid web vulnerability scanner built with Python 3.12, combining SAST (AST analysis) and DAST (SQLi, XSS) with an asynchronous web crawler.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Confluence #POC
📦 项目名称: jira_confluence_poc
👤 项目作者: saipranathi25
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:16:06
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Confluence #POC
📦 项目名称: jira_confluence_poc
👤 项目作者: saipranathi25
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:16:06
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Log4j #CVE #RCE
📦 项目名称: aig-shields-up-cybersecurity
👤 项目作者: alainmartar
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-13 21:25:39
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Log4j #CVE #RCE
📦 项目名称: aig-shields-up-cybersecurity
👤 项目作者: alainmartar
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-13 21:25:39
📝 项目描述:
Cybersecurity virtual experience projects covering Log4j vulnerability response and ransomware recovery with Python.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: safe-web-access
👤 项目作者: mirza1272
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:07:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: safe-web-access
👤 项目作者: mirza1272
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:07:00
📝 项目描述:
Safe, budget-aware Python web access with SSRF protection, safe redirects, domain policies, retries, and response limits.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-72550-poc
👤 项目作者: abdugafforov-bobur
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:58:43
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-72550-poc
👤 项目作者: abdugafforov-bobur
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 06:58:43
📝 项目描述:
CVE-2026-72550 — Friendica Unauthenticated Stacked-Query SQL Injection PoC (CVSS 9.8 Critical)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: WebLens
👤 项目作者: sahil-shaikh004
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 05:58:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: WebLens
👤 项目作者: sahil-shaikh004
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 05:58:45
📝 项目描述:
WebLens (Automated Web Application Vulnerability Scanner and Security Rating Platform) doesn't just find vulnerabilities—it explains them, prioritizes them, rates your application's security, and guides developers toward faster and smarter remediation.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored
📦 项目名称: php-mime-type
👤 项目作者: nguyenquocanhz
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:20:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored
📦 项目名称: php-mime-type
👤 项目作者: nguyenquocanhz
🛠 开发语言: PHP
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:20:45
📝 项目描述:
Xac dinh va kiem tra MIME type an toan cho PHP - chong path traversal, SVG XSS, upload gia mao🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Reflected #DOM
📦 项目名称: xss-challenges
👤 项目作者: secrecyberuz-commits
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 05:27:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Reflected #DOM
📦 项目名称: xss-challenges
👤 项目作者: secrecyberuz-commits
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 05:27:29
📝 项目描述:
Reflected, DOM-based, filter bypass va boshqa Cross-Site Scripting (XSS) usullarida amaliy XSS laboratoriya yechimlari va ularning tahlili.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #POC
📦 项目名称: PenTesting-001
👤 项目作者: Nizuii
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 04:58:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #POC
📦 项目名称: PenTesting-001
👤 项目作者: Nizuii
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 04:58:56
📝 项目描述:
OWASP checklist mastery, auth flow attacks, CSRF/SSRF/Session Fixation/Hijacking, payment gateway pentesting, VulnHub VMs (Mr. Robot, Zero Bank, Jangow, N7), and PoC/VAPT-style reporting.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #攻防演练 #靶场
📦 项目名称: spear-and-shield
👤 项目作者: AGIHunt
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 04:48:09
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #攻防演练 #靶场
📦 项目名称: spear-and-shield
👤 项目作者: AGIHunt
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 04:48:09
📝 项目描述:
矛与盾 — AI 攻防演练场:攻方 AI agent 入侵 Docker 靶场,守方 AI agent 实时防御,人类在可视化控制台围观全过程🔗 点击访问项目地址
机器人:@kuai @kuaia @kuaiaa
👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒
🚨 发现关键词: #BlueTeam #Response
📦 项目名称: dfir-toolkit.github.io
👤 项目作者: dfir-toolkit
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:57:10
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #BlueTeam #Response
📦 项目名称: dfir-toolkit.github.io
👤 项目作者: dfir-toolkit
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:57:10
📝 项目描述:
A curated, searchable index of 880 digital forensics and incident response tools, resources and references.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Stored
📦 项目名称: sabana-corp-network
👤 项目作者: maosuarez
🛠 开发语言: PHP
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:02:42
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Stored
📦 项目名称: sabana-corp-network
👤 项目作者: maosuarez
🛠 开发语言: PHP
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 03:02:42
📝 项目描述:
Intentionally vulnerable CTF lab simulating a full corporate breach — chain SQLi, IDOR, LFI, insecure JWT, and stored XSS through a PHP helpdesk into a weakly-hashed database, then privilege-escalate on Linux to root. 100% Docker, zero manual steps.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #漏洞 #反序列化
📦 项目名称: fastjson-1.2.24-TemplatesImpl
👤 项目作者: tiandeyiliushang-sudo
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-13 13:41:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #漏洞 #反序列化
📦 项目名称: fastjson-1.2.24-TemplatesImpl
👤 项目作者: tiandeyiliushang-sudo
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-13 13:41:45
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Fastjson #反序列化
📦 项目名称: fastjson-safemode-detector
👤 项目作者: hl0rey
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 00:55:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Fastjson #反序列化
📦 项目名称: fastjson-safemode-detector
👤 项目作者: hl0rey
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 00:55:03
📝 项目描述:
基于 Java Attach API(参考 Arthas 原理)的 fastjson safeMode 运行时检测工具。无需重启目标应用、无需修改目标代码,即可在线检测目标 JVM 中 fastjson 的 safeMode 配置状态、AutoType 行为及绕过风险。🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #漏洞 #复现 #CVE
📦 项目名称: Security-Blog
👤 项目作者: chengbochuan3
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 02:46:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #漏洞 #复现 #CVE
📦 项目名称: Security-Blog
👤 项目作者: chengbochuan3
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 02:46:41
📝 项目描述:
网络安全学习笔记 — CVE 漏洞研究与复现记录🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: bugseye
👤 项目作者: senseiink
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 01:53:57
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: bugseye
👤 项目作者: senseiink
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-14 01:53:57
📝 项目描述:
Lightweight, dependency-free web vulnerability scanner for common misconfigurations and application flaws.🔗 点击访问项目地址