📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Network-Vulnerability-Scanner
👤 项目作者: Shumii98
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 08:59:10

📝 项目描述:
Python network vulnerability scanner with port scanning, service detection, risk assessment, and automated reports.

🔗 点击访问项目地址 GitHub - Shumii98/Network-Vulnerability-Scanner: Python network vulnerability scanner with port scanning, service detection, risk…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC #Remote Code Execution

📦 项目名称: geoserver-0day-rce
👤 项目作者: YonLiud
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 09:00:48

📝 项目描述:
Unauthenticated SQL injection to complete RCE

🔗 点击访问项目地址 GitHub - YonLiud/geoserver-0day-rce
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Monitor #Detection

📦 项目名称: ForgeGuardian
👤 项目作者: Mah3Sec
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 09:05:44

📝 项目描述:
Local-first, AI-native Software Supply Chain Security Platform

🔗 点击访问项目地址 GitHub - Mah3Sec/ForgeGuardian: Local-first, AI-native Software Supply Chain Security Platform
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: Malware-analysis-sandbox
👤 项目作者: mushtaqmuzaffar875-a11y
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 08:33:04

📝 项目描述:
A safe malware analysis sandbox for detecting basic malware indicators using Python and YARA rules

🔗 点击访问项目地址 GitHub - mushtaqmuzaffar875-a11y/Malware-analysis-sandbox: A safe malware analysis sandbox for detecting basic malware indicators…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Kubernetes #POC

📦 项目名称: velero-playground-hourly
👤 项目作者: openmind-systems-lab
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 09:00:12

📝 项目描述:
Educational Velero playground for hourly and on-demand PostgreSQL backup and disaster recovery on Kubernetes

🔗 点击访问项目地址 GitHub - openmind-systems-lab/velero-playground-hourly: Educational Velero playground for hourly and on-demand PostgreSQL backup…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf-testing
👤 项目作者: app-sec-mm
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 07:44:53

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - app-sec-mm/ssrf-testing
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE #metadata

📦 项目名称: luckyguo-typecho-suite
👤 项目作者: jinlio
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 07:53:56

📝 项目描述:
Reusable Typecho 1.3.0 theme, plugins, Meilisearch search, monitoring, and SSRF hardening with bilingual deployment guides.

🔗 点击访问项目地址 GitHub - jinlio/luckyguo-typecho-suite: Reusable Typecho 1.3.0 theme, plugins, Meilisearch search, monitoring, and SSRF hardening…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #内网 #靶场 #漏洞

📦 项目名称: wyang
👤 项目作者: yMaine
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 04:42:37

📝 项目描述:
常用的渗透测试skills

🔗 点击访问项目地址 GitHub - yMaine/wyang: 常用的渗透测试skills
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞

📦 项目名称: darksword
👤 项目作者: coruna19980101
🛠 开发语言: JavaScript
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 07:25:05

📝 项目描述:
2026 最新 iOS Coruna 漏洞演练与 DarkSword 0day 前沿动态监测。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #利用

📦 项目名称: Forgex
👤 项目作者: AWY-Cipher
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 07:08:50

📝 项目描述:
Forgex 是一款面向 Windows 平台的集成式渗透测试工具箱。它将信息收集、漏洞扫描、爆破利用、逆向分析、移动端 Hook、代理隧道等数十款主流安全工具聚合在一个统一的可视化界面中,单击即可启动,免去了手工配置环境、切换多套软件的繁琐

🔗 点击访问项目地址 GitHub - AWY-Cipher/Forgex: Forgex 是一款面向 Windows 平台的集成式渗透测试工具箱。它将信息收集、漏洞扫描、爆破利用、逆向分析、移动端 Hook、代理隧道等数十款主流安全工具聚合在一个统一的可视化界面中,单击即…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: MrCipher
👤 项目作者: AWY-Cipher
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 07:59:23

📝 项目描述:
**MrCipher 是一款一体化的综合漏洞扫描与资产测绘工具**,把"主机发现 → 端口扫描 → 协议识别 → 子域枚举 → Web 指纹探测 → 漏洞检测 → 后渗透验证"整合成一条流水线,面向红队 / 安服 / 授权自检场景,提供 **命令行、交互式控制台、Web 界面(-ui)** 三种使用方式。 它的核心特点是:**自带一套 Go 原生重新实现的 MSF(Metasploit)风格模块系统**,并且把多个知名开源安全工具的优秀思路融合进来,做成"一个二进制、多种打法"。

🔗 点击访问项目地址 GitHub - AWY-Cipher/MrCipher: **MrCipher 是一款一体化的综合漏洞扫描与资产测绘工具**,把
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: infomaniak-stored-xss-assessment
👤 项目作者: unknownAgent10
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 05:30:53

📝 项目描述:
External attack-surface assessment identifying a Stored XSS condition through reconnaissance, asset enumeration, and web application testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #DOM

📦 项目名称: -VULNERABILITIES-ASSESSMENT-REPORT
👤 项目作者: profdniel
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 06:02:42

📝 项目描述:
Vulnerability Assessment Report — DOM-Based XSS on OWASP Juice Shop. Manual black-box testing, PoC, and professional remediation writeup for Project 03: Web App Security.

🔗 点击访问项目地址 GitHub - profdniel/-VULNERABILITIES-ASSESSMENT-REPORT: Vulnerability Assessment Report — DOM-Based XSS on OWASP Juice Shop.  Manual…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #GitLab #POC

📦 项目名称: llvm-sys.rs
👤 项目作者: tari
🛠 开发语言: Rust
Star数量: 227 | 🍴 Fork数量: 44
📅 更新时间: 2026-08-16 06:05:08

📝 项目描述:
Rust bindings to LLVM. (Mirror of https://gitlab.com/taricorp/llvm-sys.rs/)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: ExploiterX
👤 项目作者: anishalx
🛠 开发语言: Python
Star数量: 16 | 🍴 Fork数量: 13
📅 更新时间: 2026-08-16 05:24:17

📝 项目描述:
ExploiterX is a lightweight, customizable vulnerability scanner designed to detect security weaknesses in web applications. This tool crawls target websites, identifies potential links and forms, and checks for Cross-Site Scripting (XSS) vulnerabilities, helping security researchers and developers find exploitable points in their web applications.

🔗 点击访问项目地址 GitHub - anishalx/ExploiterX: ExploiterX is a lightweight, customizable vulnerability scanner designed to detect security weaknesses…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: awvs_json_word.py
👤 项目作者: kabuqin
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 05:31:41

📝 项目描述:
`awvs_json_word.py` 是一个将 **Acunetix(AWVS)/ Invicti** 扫描器导出的 JSON 结果文件,自动生成为**中文 Word 安全漏洞报告**的一体化工具。 脚本内置了数据解析、格式转换、中文化翻译、统计图表生成和报告排版等全部功能,只需一条命令即可完成从原始扫描数据到正式报告的全过程,无需任何人工干预。

🔗 点击访问项目地址 GitHub - kabuqin/awvs_json_word.py: `awvs_json_word.py` 是一个将 **Acunetix(AWVS)/ Invicti** 扫描器导出的 JSON 结果文件,自动生成为**中文 Word 安全漏洞报告**的一体化工具。…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-73519-WolfStack-PoC
👤 项目作者: squeeze440
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 04:38:30

📝 项目描述:
PoC for CVE-2026-73519 - WolfStack hardcoded cluster secret leads to unauthenticated RCE (CVSS 9.8)

🔗 点击访问项目地址 GitHub - squeeze440/CVE-2026-73519-WolfStack-PoC: PoC for CVE-2026-73519 - WolfStack hardcoded cluster secret leads to unauthenticated…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-73847-emlog-PoC
👤 项目作者: squeeze440
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 04:38:36

📝 项目描述:
PoC for CVE-2026-73847 - emlog AI Assistant CSRF to SQL execution to admin takeover (CVSS 6.8)

🔗 点击访问项目地址 GitHub - squeeze440/CVE-2026-73847-emlog-PoC: PoC for CVE-2026-73847 - emlog AI Assistant CSRF to SQL execution to admin takeover…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #CVE

📦 项目名称: PHP-Deserialization-Payload-Generator
👤 项目作者: Zekon-Xu
🛠 开发语言: HTML
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-15 16:50:09

📝 项目描述:
PHP反序列化Payload构造工具

🔗 点击访问项目地址 GitHub - Zekon-Xu/PHP-Deserialization-Payload-Generator: PHP反序列化Payload构造工具
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: malware-sandbox-analysis
👤 项目作者: JohnOkoji-source
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-16 01:01:40

📝 项目描述:
Malware analysis investigation using sandbox evidence to examine file indicators, behavioral activity, YARA detections, and command-and-control communications.

🔗 点击访问项目地址
Back to Top