📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Docker #POC

📦 项目名称: data-logger
👤 项目作者: harveybc
🛠 开发语言: C++
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 05:16:45

📝 项目描述:
Puente de telemetría hacia ThingsBoard CE para personal no técnico: compose, ESP32 y prompts de agente.

🔗 点击访问项目地址 GitHub - harveybc/data-logger: Puente de telemetría hacia ThingsBoard CE para personal no técnico: compose, ESP32 y prompts de…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #利用

📦 项目名称: CVE-2026-16723
👤 项目作者: Superman-L
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 05:27:57

📝 项目描述:
fastjson jsontype利用

🔗 点击访问项目地址 Superman-L/CVE-2026-16723
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring4Shell #CVE

📦 项目名称: spring-boot-dependency-audit
👤 项目作者: Hajra-khan-3
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 04:57:50

📝 项目描述:
Demonstrates identifying and remediating a known critical CVE (Spring4Shell) using OWASP Dependency-Check

🔗 点击访问项目地址 GitHub - Hajra-khan-3/spring-boot-dependency-audit: Demonstrates identifying and remediating a known critical CVE (Spring4Shell)…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #CVE

📦 项目名称: cve-cnvd-cnnvd-submission-skill
👤 项目作者: rockmelodies
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 04:17:07

📝 项目描述:
本仓库提供一套标准化漏洞披露技能(skill),帮助安全研究人员、企业安全团队和漏洞响应人员在遵循负责任披露原则的前提下,按照 CVE、CNVD、CNNVD 的官方/公开规范准备和提交漏洞报告。支持字段校验、模板生成、多格式导出、状态跟踪,减少因格式错误、信息缺失导致的退稿。

🔗 点击访问项目地址 GitHub - rockmelodies/cve-cnvd-cnnvd-submission-skill: 本仓库提供一套标准化漏洞披露技能(skill),帮助安全研究人员、企业安全团队和漏洞响应人员在遵循负责任披露原则的前提下,按照 CVE、CNVD、CNNVD…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: OpenC2-Framework
👤 项目作者: sinyblack59-del
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 03:54:42

📝 项目描述:
A simple Open-Source C2 framework for Red Teaming labs.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #复现

📦 项目名称: crucible
👤 项目作者: pgnzbl-ux
🛠 开发语言: Python
Star数量: 56 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 04:01:55

📝 项目描述:
AI 驱动的漏洞自动验证平台:提交仓库与漏洞描述,在隔离沙箱中白盒审计、搭靶场复现并出具中文报告。

🔗 点击访问项目地址 GitHub - pgnzbl-ux/crucible: AI 驱动的漏洞自动验证平台:提交仓库与漏洞描述,在隔离沙箱中白盒审计、搭靶场复现并出具中文报告。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Vulnerability-Research-Portfolio
👤 项目作者: Jordan-Forthman
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 03:24:33

📝 项目描述:
A comprehensive portfolio of vulnerability research, network exploitation, and application security mitigations. Features custom exploits for DNS/TCP protocols, DOM-based XSS worms, SQL injection bypasses, and Set-UID privilege escalation, paired with robust defensive countermeasures.

🔗 点击访问项目地址 GitHub - Jordan-Forthman/Vulnerability-Research-Portfolio: A comprehensive portfolio of vulnerability research, network exploitation…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: memforensics-studio
👤 项目作者: Ashel7577
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 03:28:07

📝 项目描述:
Desktop app that detects process-injection malware in Windows memory images — a 7-stage Volatility 3 pipeline producing court-style PDF reports, STIX/CSV IOCs, and YARA/Sigma rules.

🔗 点击访问项目地址 GitHub - Ashel7577/memforensics-studio: Desktop app that detects process-injection malware in Windows memory images — a 7-stage…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #漏洞

📦 项目名称: CVE-2026-43499_HW-CLT-AL01
👤 项目作者: zychen027
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 03:41:37

📝 项目描述:
尝试移植CVE-2026-43499提权漏洞到HW P20Pro上

🔗 点击访问项目地址 GitHub - zychen027/CVE-2026-43499_HW-CLT-AL01: 尝试移植CVE-2026-43499提权漏洞到HW P20Pro上
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #templates

📦 项目名称: nuclei_templates
👤 项目作者: Hacker0neKD
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 02:44:02

📝 项目描述:
all nuclei templates

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-19598-PoC
👤 项目作者: DeadExpl0it
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 02:13:11

📝 项目描述:
Proof of Concept for CVE-2026-19598 affecting Pods <= 3.3.9.

🔗 点击访问项目地址 GitHub - DeadExpl0it/CVE-2026-19598-PoC: Proof of Concept for CVE-2026-19598 affecting Pods <= 3.3.9.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #POC

📦 项目名称: vuln-spring-sast-practice
👤 项目作者: jo-0412
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 01:58:04

📝 项目描述:
Jenkins pipeline practice for SAST scanning and Docker Compose deployment.

🔗 点击访问项目地址 GitHub - jo-0412/vuln-spring-sast-practice: Jenkins pipeline practice for SAST scanning and Docker Compose deployment.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules #malware

📦 项目名称: .github
👤 项目作者: YARA-malware
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 01:10:08

📝 项目描述:
Download YARA rules to detect, classify, and investigate suspicious files with a trusted open-source engine. Build precise patterns, automate security checks, speed up incident response, and strengthen YARA malware analysis workflows for teams researching threats across endpoints, repositories, and labs.

🔗 点击访问项目地址 GitHub - YARA-malware/.github: Download YARA rules to detect, classify, and investigate suspicious files with a trusted open-source…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-64849
👤 项目作者: BiuTrap
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 01:25:09

📝 项目描述:
CVE-2026-64849 PoC

🔗 点击访问项目地址 GitHub - BiuTrap/CVE-2026-64849: CVE-2026-64849 PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Execute

📦 项目名称: TinyShellcode
👤 项目作者: sebas-gith
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 17:22:08

📝 项目描述:
A minimal Linux x86-64 staged shellcode designed to demonstrate how a compact first-stage payload can load a larger second-stage shellcode into memory.

🔗 点击访问项目地址 GitHub - sebas-gith/TinyShellcode: A minimal Linux x86-64 staged shellcode designed to demonstrate how a compact first-stage payload…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Inject

📦 项目名称: shellcode-injection
👤 项目作者: sparflag
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-18 23:50:25

📝 项目描述:
picoclone CTF challenge: Shellcode Shack (binary exploitation · hard)

🔗 点击访问项目地址 GitHub - sparflag/shellcode-injection: picoclone CTF challenge: Shellcode Shack (binary exploitation · hard)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: msc-container-vulnerability-scanner-comparison
👤 项目作者: Manju0301
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 00:47:22

📝 项目描述:
Automated comparison of Trivy, Snyk and Clair

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: websentry
👤 项目作者: Dingding6633
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 00:56:39

📝 项目描述:
A dual-mode Web vulnerability scanner with active crawling/detection and passive traffic analysis

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule

📦 项目名称: IDS-YARA-Rule-Automation
👤 项目作者: Hackdany
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 00:24:43

📝 项目描述:
CI/CD-ready Python automation for continuous YARA rule ingestion, signature deduplication, and Wazuh indexing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #RCE

📦 项目名称: CVE-2026-34486---unauthenticated-RCE-via-Java-deserialization
👤 项目作者: CypherHippie
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 00:52:29

📝 项目描述:
EncryptInterceptor fail-open bypass in Apache Tomcat Tribes clustering leading to unauthenticated RCE via Java deserialization.

🔗 点击访问项目地址 GitHub - CypherHippie/CVE-2026-34486---unauthenticated-RCE-via-Java-deserialization: EncryptInterceptor fail-open bypass in Apache…
Back to Top