📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: vulnerability-notes
👤 项目作者: parsamajidipour
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-20 02:04:35

📝 项目描述:
A comprehensive collection of web security vulnerability notes covering concepts, attack techniques, real-world examples, exploitation methodologies, and mitigation strategies for security researchers, penetration testers, and bug bounty hunters.

🔗 点击访问项目地址 GitHub - parsamajidipour/vulnerability-notes: A comprehensive collection of web security vulnerability notes covering concepts…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: DSXS
👤 项目作者: stamparm
🛠 开发语言: Python
Star数量: 430 | 🍴 Fork数量: 131
📅 更新时间: 2026-08-19 22:14:18

📝 项目描述:
Damn Small XSS Scanner

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: form-validation-security-testing
👤 项目作者: Djones-qa
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:22:04

📝 项目描述:
Form validation security testing - XSS injection, SQL injection, boundary lengths, special characters. Found real vulnerability: checkout accepts malicious payloads. Playwright + TypeScript.

🔗 点击访问项目地址 GitHub - Djones-qa/form-validation-security-testing: Form validation security testing - XSS injection, SQL injection, boundary…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: CodeAlpha_SecureCodingReview
👤 项目作者: amantlemaakelo
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-20 00:28:08

📝 项目描述:
Secure code review of a sample banking application,10 vulnerabilities identified (SQLi, broken access control, XSS, CSRF) via manual review + Bandit, remediated and verified with a re-scan.

🔗 点击访问项目地址 GitHub - amantlemaakelo/CodeAlpha_SecureCodingReview: Secure code review of a sample banking application,10 vulnerabilities identified…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: AegisWeb
👤 项目作者: Saura0S
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-20 01:01:09

📝 项目描述:
🛡️ Enterprise-Grade Web Security Auditor, Vulnerability Scanner & Dual-Report Engine in Python

🔗 点击访问项目地址 GitHub - Saura0S/AegisWeb: 🛡️ Enterprise-Grade Web Security Auditor, Vulnerability Scanner & Dual-Report Engine in Python
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: SinyC2
👤 项目作者: sinyblack59-del
🛠 开发语言: HTML
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-20 00:31:10

📝 项目描述:
A simple Open-Source C2 framework for Red Teaming labs.

🔗 点击访问项目地址 GitHub - sinyblack59-del/SinyC2: A simple Open-Source C2 framework for Red Teaming labs.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #POC

📦 项目名称: sf-github-jenkins-poc
👤 项目作者: sirfmandeep-coast
🛠 开发语言: Apex
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:55:24

📝 项目描述:
Salesforce DX GitHub Jenkins POC

🔗 点击访问项目地址 GitHub - sirfmandeep-coast/sf-github-jenkins-poc: Salesforce DX GitHub Jenkins POC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE #RCE

📦 项目名称: log4j-ransomware-bruteforcer
👤 项目作者: emad-123
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 21:31:22

📝 项目描述:
automated Python-based cryptographic data recovery tool designed to mitigate post-exploit ransomware encryption vectors.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: awesome-yara
👤 项目作者: cybersecurity-dev
🛠 开发语言: Unknown
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:05:10

📝 项目描述:
Awesome YARA

🔗 点击访问项目地址 GitHub - cybersecurity-dev/awesome-yara: Awesome YARA
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: decoy
👤 项目作者: nizartuanku
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:29:20

📝 项目描述:
Self-hosted canary tokens and honeypots — free edition of the Sentinel line

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-76070
👤 项目作者: ozcanpng
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:35:47

📝 项目描述:
Original research and non-destructive PoC for a pre-auth Base64-decoded password stack buffer overflow in Netis NC63 login.cgi

🔗 点击访问项目地址 GitHub - ozcanpng/CVE-2026-76070: Original research and non-destructive PoC for a pre-auth Base64-decoded password stack buffer…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-76071
👤 项目作者: ozcanpng
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:35:49

📝 项目描述:
Original research and non-destructive PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

🔗 点击访问项目地址 GitHub - ozcanpng/CVE-2026-76071: Original research and non-destructive PoC for a pre-auth stack buffer overflow via unbounded…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #利用 #CVE

📦 项目名称: SecRSS
👤 项目作者: ZakoSec
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 16:13:16

📝 项目描述:
SecRSS 是一份面向网络安全从业者、研究人员和技术爱好者的 RSS 订阅源合集。内容以安全资讯、漏洞情报和技术研究为主,同时收录了开发、隐私与个人技术博客。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描 #复现 #CVE

📦 项目名称: dsh-install-guard
👤 项目作者: niaccky
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 16:32:43

📝 项目描述:
npm 安装门禁插件:在 DeepSeek Harness 执行 npm install 前审计漏洞、许可证、体积与包健康度,自动放行/询问/拦截。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template #templates #POC #CVE

📦 项目名称: scanforge
👤 项目作者: MikeRoss27
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 22:03:16

📝 项目描述:
One CLI to orchestrate your entire pentest and bug bounty recon workflow.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Nuclei #template

📦 项目名称: z3r0scan
👤 项目作者: OhanyanDavit
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 23:01:57

📝 项目描述:
Modular security recon & scan orchestrator — nmap, nuclei, subfinder, httpx, Shodan chained into one report. Real tools with pure-Python fallbacks.

🔗 点击访问项目地址 GitHub - OhanyanDavit/z3r0scan: Modular security recon & scan orchestrator — nmap, nuclei, subfinder, httpx, Shodan chained into…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Beacon

📦 项目名称: c2-beacon
👤 项目作者: OpKnock
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 20:40:43

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #UAC

📦 项目名称: Offensive-Windows-Privilege-Escalation
👤 项目作者: armourinfosec
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 21:05:24

📝 项目描述:
Offensive Windows Privilege Escalation — hands-on study notes: enumeration & methodology, service/scheduled-task misconfigs, UAC bypass, token-privilege abuse, the potato family, kernel exploits, and credential mining. Each technique with detection & defenses. CC BY 4.0.

🔗 点击访问项目地址 GitHub - armourinfosec/Offensive-Windows-Privilege-Escalation: Offensive Windows Privilege Escalation — hands-on study notes: enumeration…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: sliver-defense-evasion
👤 项目作者: XyrL02
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 20:58:59

📝 项目描述:
Sliver C2 defense evasion tools and guide for authorized red team engagements

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #RCE

📦 项目名称: ps5-payload-constellation
👤 项目作者: DeborahO18
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-19 20:53:44

📝 项目描述:
Ultimate PS5 Payload Atlas 2026: Auto-Synced Exploit Manager

🔗 点击访问项目地址
Back to Top