📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: threat-intel-toolkit
👤 项目作者: kevinmhorvath
🛠 开发语言: Python
Star数量: 4 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-18 22:01:18

📝 项目描述:
Defensive IOC + vulnerability triage for Claude Code: a subagent plus two key-free skills that aggregate 10 free open-source threat feeds and rate a CVE's exploit maturity. No API keys required.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-44848-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 22:04:37

📝 项目描述:
PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-44848-PoC: PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: TAPER-IIQ-YARA-
👤 项目作者: FAZI-1
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 20:50:10

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - FAZI-1/TAPER-IIQ-YARA-
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: sarkarpuspita17-dev
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 20:44:54

📝 项目描述:
A Python and Flask based vulnerability scanner for detecting open ports and common security risks.

🔗 点击访问项目地址 GitHub - sarkarpuspita17-dev/Vulnerability-Scanner: A Python and Flask based vulnerability scanner for detecting open ports and…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2025-62593-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 20:48:12

📝 项目描述:
PoC for CVE-2025-62593: unauthenticated RCE in Ray (CISA KEV). Stdlib-only Python.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2025-62593-PoC: PoC for CVE-2025-62593: unauthenticated RCE in Ray (CISA KEV). Stdlib-only Python.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: Perfex-CRM-3.4.x-Unauthenticated-RCE-via-Cookie-Deserialization
👤 项目作者: Yucaerin
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 19:59:21

📝 项目描述:
The popular CRM platform Perfex CRM versions <= 3.4.x is vulnerable to a full unauthenticated Remote Code Execution via cookie deserialization

🔗 点击访问项目地址 GitHub - Yucaerin/Perfex-CRM-3.4.x-Unauthenticated-RCE-via-Cookie-Deserialization: The popular CRM platform Perfex CRM versions…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: TAPER-IQ-YARA-..
👤 项目作者: FAZI-1
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 19:34:22

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: TAPER-IQ-YARA-.-
👤 项目作者: FAZI-1
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 19:44:50

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: dheeraj8256
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:50:51

📝 项目描述:
Python-based automated web vulnerability scanner with SQLi, XSS, form analysis, security headers, reporting, and Flask dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: gamefox
👤 项目作者: BossmanCom
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:51:44

📝 项目描述:
Defensive vulnerability scanner for video game projects you own or are authorized to test

🔗 点击访问项目地址 GitHub - BossmanCom/gamefox: Defensive vulnerability scanner for video game projects you own or are authorized to test
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #AV

📦 项目名称: awinrm
👤 项目作者: ridpath
🛠 开发语言: Ruby
Star数量: 9 | 🍴 Fork数量: 5
📅 更新时间: 2026-08-18 19:04:10

📝 项目描述:
Modern WinRM shell for red teams and CTFs with automated tool staging, AV bypass, recon, and credential/loot extraction

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: ReflectiveLoader
👤 项目作者: bloggins
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:40:45

📝 项目描述:
Reflective Loader - loads DLL, containing AES encrypted shellcode

🔗 点击访问项目地址 GitHub - bloggins/ReflectiveLoader: Reflective Loader - loads DLL, containing AES encrypted shellcode
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: YARA-WALLPRINTING
👤 项目作者: nithinvikrin
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:55:28

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: secure-generative-ui-input-sanitization
👤 项目作者: fatihsoysalcom
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:03:30

📝 项目描述:
This example demonstrates a basic generative user interface (UI) that dynamically creates UI components based on user input. It highlights a critical security aspect: sanitizing user input before rendering it in the DOM. By using `textContent`, the example prevents potential cross-site scripting (XSS) vulnerabilities, which are crucial for secure G

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnShield
👤 项目作者: XCodeCore
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 17:55:22

📝 项目描述:
A web application vulnerability scanner for penetration testing simulation and security assessment.

🔗 点击访问项目地址 XCodeCore/VulnShield
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Mini-Vulnerability-Scanner
👤 项目作者: bharath-1206
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 18:01:29

📝 项目描述:
A Python-based mini vulnerability scanner for detecting open ports, services, and basic security issues.

🔗 点击访问项目地址
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: OpenSecurity
👤 项目作者: nolancrowley101-bot
🛠 开发语言: C#
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 16:58:04

📝 项目描述:
On-demand malware scanner for Windows (hash signatures, YARA-style rules, PE heuristics) with a CLI and WPF desktop UI. By Nolan Crowley.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: MS17-010-EternalBlue-Command-Exploitation
👤 项目作者: VelesSecurity
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 16:58:33

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - VelesSecurity/MS17-010-EternalBlue-Command-Exploitation
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #EDR #Sandbox

📦 项目名称: Build-And-Bypass-EDR
👤 项目作者: 44yyyy
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 16:03:55

📝 项目描述:
A C++ (x86) cybersecurity sandbox investigating user-mode API hooking, dynamic memory evasion techniques, and static binary analysis with Ghidra.

🔗 点击访问项目地址
Back to Top