📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-69099-poc
👤 项目作者: test3cd3wqe
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 02:34:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-69099-poc
👤 项目作者: test3cd3wqe
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 02:34:49
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: idor-tester-ai
👤 项目作者: tgsha4286
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 02:01:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: idor-tester-ai
👤 项目作者: tgsha4286
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 02:01:35
📝 项目描述:
Automatically detect and test IDOR/BOLA vulnerabilities in real time using AI-powered object ID swapping during Burp Suite browsing sessions.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #AV #Sandbox
📦 项目名称: obfuscator
👤 项目作者: v-lavrentikov
🛠 开发语言: Go
⭐ Star数量: 16 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-18 01:59:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #AV #Sandbox
📦 项目名称: obfuscator
👤 项目作者: v-lavrentikov
🛠 开发语言: Go
⭐ Star数量: 16 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-18 01:59:45
📝 项目描述:
Binary obfuscation, anti-reversing, anti-debugging and av-bypass framework for Windows🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #CVE
📦 项目名称: Project-Qogirl6-Unisoc-T606-Longcheer-Supply-Chain-Compromise
👤 项目作者: lexs201992-gif
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:40:53
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #CVE
📦 项目名称: Project-Qogirl6-Unisoc-T606-Longcheer-Supply-Chain-Compromise
👤 项目作者: lexs201992-gif
🛠 开发语言: YARA
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:40:53
📝 项目描述:
Clasificación BOD 26-04: Tier 1 (Máxima Prioridad) — Cumple las 4 variables de riesgo. Requiere remediación en 3 días + triaje forense.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: GhostLock-5.10
👤 项目作者: R0rt1z2
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:41:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #Exploit
📦 项目名称: GhostLock-5.10
👤 项目作者: R0rt1z2
🛠 开发语言: C
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:41:21
📝 项目描述:
Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Bypass #WAF
📦 项目名称: Web-Application-Security-Project
👤 项目作者: LegodiMahlatse1962
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:02:28
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Bypass #WAF
📦 项目名称: Web-Application-Security-Project
👤 项目作者: LegodiMahlatse1962
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 00:02:28
📝 项目描述:
Web application security project using PortSwigger Web Security Academy and Burp Suite to identify and validate SQL Injection vulnerabilities. Demonstrates HTTP analysis, WAF/filter bypass techniques, XML entity encoding, vulnerability assessment, evidence collection, impact analysis, and remediation recommendations.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpHistory2Pcap
👤 项目作者: turekt
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-17 22:48:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpHistory2Pcap
👤 项目作者: turekt
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-17 22:48:49
📝 项目描述:
Burp extension that enables export of selected traffic in Burp HTTP History tab to a PCAP file.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-20217
👤 项目作者: securifera
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:22:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #RCE
📦 项目名称: CVE-2026-20217
👤 项目作者: securifera
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:22:41
📝 项目描述:
ZendTo unauthenticated ClamAV CVE-2026-20217 RCE and default-profile root escalation reproduction🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-71518
👤 项目作者: IlhomjonR
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:23:42
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-71518
👤 项目作者: IlhomjonR
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 22:23:42
📝 项目描述:
CVE-2026-71518 — Typemill <2.26.0 unauthenticated authorization bypass in media file download (path-equivalent URL variants). Advisory + PoC.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #POC
📦 项目名称: xss-poc-demo
👤 项目作者: 3mptycrown
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:10:17
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #POC
📦 项目名称: xss-poc-demo
👤 项目作者: 3mptycrown
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:10:17
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework
📦 项目名称: gtri-emperor-c2
👤 项目作者: jim-koch-atlanta
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:57:06
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework
📦 项目名称: gtri-emperor-c2
👤 项目作者: jim-koch-atlanta
🛠 开发语言: TypeScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 20:57:06
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Vulnerability-Scanner
👤 项目作者: mohammed4141-g
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:52:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: Vulnerability-Scanner
👤 项目作者: mohammed4141-g
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:52:45
📝 项目描述:
Python vulnerability scanner🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Nuclei #template #CVE
📦 项目名称: Danish_Dev_Capstone
👤 项目作者: danishdev2003
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:28:56
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Nuclei #template #CVE
📦 项目名称: Danish_Dev_Capstone
👤 项目作者: danishdev2003
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 19:28:56
📝 项目描述:
CLI-based real-time network security assessment tool built with Bash.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #BlueTeam #Detection
📦 项目名称: python-sigma
👤 项目作者: calebstewart
🛠 开发语言: Python
⭐ Star数量: 55 | 🍴 Fork数量: 5
📅 更新时间: 2026-08-17 18:33:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #BlueTeam #Detection
📦 项目名称: python-sigma
👤 项目作者: calebstewart
🛠 开发语言: Python
⭐ Star数量: 55 | 🍴 Fork数量: 5
📅 更新时间: 2026-08-17 18:33:40
📝 项目描述:
Python API for interacting with sigma rules.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #DOM
📦 项目名称: OWASP-Juice-World-VAPT
👤 项目作者: dnssneak
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:36:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #DOM
📦 项目名称: OWASP-Juice-World-VAPT
👤 项目作者: dnssneak
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 18:36:38
📝 项目描述:
Web Application VAPT assessment of OWASP Juice Shop in a controlled Kali Linux lab. Includes reconnaissance, Burp Suite testing, vulnerability validation, evidence collection, risk assessment, and remediation for 7 findings including SQL Injection, DOM XSS, IDOR, information disclosure, verbose errors, missing CSP, and weak password recovery.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: SkeletonKey
👤 项目作者: defineid
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:06:48
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: SkeletonKey
👤 项目作者: defineid
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:06:48
📝 项目描述:
CVE-2026-6765 · Test only FormAutofill handlers exposed in Firefox🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: Magic-Blind-SSRF
👤 项目作者: Mrh43er
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:11:23
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: Magic-Blind-SSRF
👤 项目作者: Mrh43er
🛠 开发语言: Go
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:11:23
📝 项目描述:
A Go-based SSRF testing framework for authorized security assessments, featuring callback detection, cloud metadata checks, internal network scanning, DNS rebinding, and automated reporting.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: CerberusSSRFExploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:56:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: CerberusSSRFExploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
⭐ Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-17 17:56:35
📝 项目描述:
Cerberus SSRFExploit v3.0 - Advanced SSRF testing tool with cloud metadata, internal network scanning, and blind OOB detection via Interact.sh/Burp. Supports multiple protocols (file://, gopher://) and generates JSON/HTML/PDF reports. Ethical use only! 🚀🔗 点击访问项目地址