📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-assesment-tool
👤 项目作者: Deviyakhatri
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:53:55

📝 项目描述:
Automated Nmap, Nikto, Nuclei scanner with gemini 3.6 Flash AI reporting

🔗 点击访问项目地址 GitHub - Deviyakhatri/Vulnerability-assesment-tool: Automated Nmap, Nikto, Nuclei scanner with gemini 3.6 Flash AI reporting
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Weblogic #CVE #POC

📦 项目名称: CVE-2020-14882-WebLogic-Analysis
👤 项目作者: VelesSecurity
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:55:59

📝 项目描述:
Technical analysis and clean Java Thread Echo PoC for Oracle WebLogic Server vulnerability chain.

🔗 点击访问项目地址 GitHub - VelesSecurity/CVE-2020-14882-WebLogic-Analysis: Technical analysis and clean Java Thread Echo PoC for Oracle WebLogic…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19501-poc
👤 项目作者: typedefabcd1234ntd
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:33:14

📝 项目描述:
CVE-2026-19501 poc

🔗 点击访问项目地址 GitHub - typedefabcd1234ntd/CVE-2026-19501-poc: CVE-2026-19501 poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19500-poc
👤 项目作者: typedefabcd1234ntd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:35:13

📝 项目描述:
CVE-2026-19500 poc

🔗 点击访问项目地址 GitHub - typedefabcd1234ntd/CVE-2026-19500-poc: CVE-2026-19500 poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #RCE

📦 项目名称: cve-2026-15748
👤 项目作者: yora1928
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 15:01:52

📝 项目描述:
CVE-2026-15748 - Unauthenticated RCE exploit for WordPress Forminator plugin (≤1.56.1). Automated detection, deep crawl, nonce extraction, and safe upload test. For authorized testing only.

🔗 点击访问项目地址 GitHub - yora1928/cve-2026-15748: CVE-2026-15748 - Unauthenticated RCE exploit for WordPress Forminator plugin (≤1.56.1). Automated…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #漏洞

📦 项目名称: SafeRedirect
👤 项目作者: tjsky
🛠 开发语言: PHP
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:08:36

📝 项目描述:
安全的PHP外链跳转页面:AES加密解密、SSRF防御、Referer防盗链、XSS防御、倒计时过渡

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: NovaShyld-Task_4-
👤 项目作者: Reddy-hub-com
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:53:00

📝 项目描述:
Web Application Security Testing using Burp Suite and DVWA, covering SQL Injection, Command Injection, Reflected XSS, Stored XSS, proof-of-concept evidence, and remediation recommendations.

🔗 点击访问项目地址 GitHub - Reddy-hub-com/NovaShyld-Task_4-: Web Application Security Testing using Burp Suite and DVWA, covering SQL Injection, Command…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Response

📦 项目名称: writeups-
👤 项目作者: thedetectlab
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:57:36

📝 项目描述:
Longer-form writeups behind the cheat sheets — how a SQL injection actually breaks a query, what Wireshark shows you in a TCP handshake, how ARP spoofing turns a network against itself.

🔗 点击访问项目地址 GitHub - thedetectlab/writeups-: Longer-form writeups behind the cheat sheets — how a SQL injection actually breaks a query, what…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Secrets-Dependency-Vulnerability-Scanner
👤 项目作者: StefanTsonev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:52:32

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - StefanTsonev/Secrets-Dependency-Vulnerability-Scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: ferrous
👤 项目作者: 0x3xp
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:51:36

📝 项目描述:
Enterprise-grade adversary simulation and security research framework and C2 for Windows environments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44578
👤 项目作者: lxxexxbxx
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 14:47:15

📝 项目描述:
CVE-2026-44578 PoC

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: xia-sql-2open
👤 项目作者: mhszed
🛠 开发语言: Java
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-18 13:40:24

📝 项目描述:
Burp SQLi plugin | Secondary development of xia‑sql3.3, four‑quote parity rule, order‑by probe, referer header injection test, distinguish database error & application type‑convert exception.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: funnypot
👤 项目作者: bobbymaher
🛠 开发语言: PHP
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:57:04

📝 项目描述:
A PHP honeypot powered by nuclei templates

🔗 点击访问项目地址 GitHub - bobbymaher/funnypot: A PHP honeypot powered by nuclei templates
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: poc-bcr-ssrf
👤 项目作者: Tednoob17
🛠 开发语言: Starlark
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:14:21

📝 项目描述:
SSRF PoC for BCR

🔗 点击访问项目地址 GitHub - Tednoob17/poc-bcr-ssrf: SSRF PoC for BCR
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: Sl1verLoader
👤 项目作者: bloggins
🛠 开发语言: C#
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 13:06:07

📝 项目描述:
AES Shellcode loader for Sliver. EXE and DLL

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: xss-dom-waf-bypass-lab
👤 项目作者: mohammadjamal18
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 12:44:05

📝 项目描述:
An analytical and interactive security project inspired by concepts studied through the PortSwigger Web Security Academy

🔗 点击访问项目地址 GitHub - mohammadjamal18/xss-dom-waf-bypass-lab: An analytical and interactive security project inspired by concepts studied through…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: Windows_Check
👤 项目作者: qqliushiyu
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 12:48:57

📝 项目描述:
FxTools 是一款双特权级安全分析软件:用户态 Fxtools.exe(Win32 原生界面)负责交互与数据展示,内核驱动 FxtoolsDriver.sys(WDM)负责内核态扫描,两者通过 common/common.h 定义的 IOCTL 协议通信。它能够扫描 SSDT/IDT/Inline/IRP 钩子、检测隐藏进程与隐藏模块、分析系统日志与活动痕迹,并集成 YARA 规则扫描、Beacon 行为探测与漏洞驱动(LOLDrivers)检测,覆盖应急响应的"查、验、取、析"全流程。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #POC

📦 项目名称: ShieldBreak
👤 项目作者: 1neptune
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 07:17:44

📝 项目描述:
Windows Defender 0day vulnerability CVE-2026-69414 ShieldBreak

🔗 点击访问项目地址 GitHub - 1neptune/ShieldBreak: Windows Defender 0day vulnerability  CVE-2026-69414  ShieldBreak
🚨 GitHub 监控消息提醒

🚨 发现关键词: #0day #漏洞 #利用

📦 项目名称: zjmf_0day_patch_pro
👤 项目作者: YeXuanHs
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 09:57:59

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: RepeaterTabRenamer
👤 项目作者: falasi
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 12:45:46

📝 项目描述:
Quickly rename Burp Repeater tabs from selected text or request paths.

🔗 点击访问项目地址 GitHub - falasi/RepeaterTabRenamer: Quickly rename Burp Repeater tabs from selected text or request paths.
Back to Top