📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-13736
👤 项目作者: MinhHK68
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 18:01:40

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - MinhHK68/CVE-2026-13736
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: HIPR
👤 项目作者: Jboxbobby
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:06:46

📝 项目描述:
HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine built with FastAPI and HTTPX. Features phase-decoupled timeouts, exponential backoff with full jitter, connection pooling, and defense-in-depth SSRF/DNS-rebinding protection.

🔗 点击访问项目地址 GitHub - Jboxbobby/HIPR: HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: langchain-hardened
👤 项目作者: hedgerow-dev
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:51:05

📝 项目描述:
Secure-defaults drop-in shim for LangChain: SSRF-checked loaders, deserialization allowlisting, jinja2 SSTI gate, human-approval-gated tools. MIT. From Hedgerow.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: File-Upload-Vulnerability-Magic-Bytes-ValidatorFile-Upload-Vulnerability-Magic-Bytes-Validator
👤 项目作者: jenishs524
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:43:30

📝 项目描述:
An enterprise file upload security engine written in Python. Protects applications against Remote Code Execution (RCE), Unrestricted File Upload vulnerabilities, Polyglot web shells, and MIME-type spoofing through deep file inspection and magic byte validation.

🔗 点击访问项目地址 GitHub - jenishs524/File-Upload-Vulnerability-Magic-Bytes-ValidatorFile-Upload-Vulnerability-Magic-Bytes-Validator: An enterprise…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: api-ac-scanner
👤 项目作者: Fokkio
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:33:39

📝 项目描述:
API Access-Control vulnerability scanner: source scan (Semgrep) + domain auth-swap BOLA testing. Node/Express web UI + Python/FastAPI scanner.

🔗 点击访问项目地址 GitHub - Fokkio/api-ac-scanner: API Access-Control vulnerability scanner: source scan (Semgrep) + domain auth-swap BOLA testing.…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: dark-arts
👤 项目作者: kelvinweijun
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:53:47

📝 项目描述:
Repository for Command-and-Control (C2) framework for adversary simulation

🔗 点击访问项目地址 GitHub - kelvinweijun/dark-arts: Repository for Command-and-Control (C2) framework for adversary simulation
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #EXP

📦 项目名称: calculator-jenkins
👤 项目作者: kavyatelavane2005
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:59:19

📝 项目描述:
Devops Exp 3

🔗 点击访问项目地址 GitHub - kavyatelavane2005/calculator-jenkins: Devops Exp 3
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit #RCE

📦 项目名称: CVE-2026-9198
👤 项目作者: K3ysTr0K3R
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:05:56

📝 项目描述:
CVE-2026-9198 - IBM Langflow OSS Unauthenticated Remote Code Execution (RCE)

🔗 点击访问项目地址 GitHub - K3ysTr0K3R/CVE-2026-9198
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: onyx-db
👤 项目作者: Boreas37
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:44:26

📝 项目描述:
Onyx — local-first WordPress vulnerability scanner'ın veri mirror'ı (Wordfence Production Feed, günlük güncel, commercial-free)

🔗 点击访问项目地址 GitHub - Boreas37/onyx-db: Onyx — local-first WordPress vulnerability scanner'ın veri mirror'ı (Wordfence Production Feed, günlük…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: hole-in-bin
👤 项目作者: Ryuk0x01
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 16:00:39

📝 项目描述:
Hands-on binary exploitation and reverse engineering project focused on analyzing vulnerabilities, memory corruption, buffer overflows, and low-level system mechanics using GDB, PEDA, Ghidra, and Radare2.

🔗 点击访问项目地址 GitHub - Ryuk0x01/hole-in-bin: Hands-on binary exploitation and reverse engineering project focused on analyzing vulnerabilities…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #信息收集 #侦察

📦 项目名称: jsscout
👤 项目作者: eonun
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:50:05

📝 项目描述:
JS 侦察工具 —— 一站式 JS 信息收集 / 敏感信息提取 / API 发现,单二进制免环境跨平台。

🔗 点击访问项目地址 eonun/jsscout
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: M7MD-RAT-NG
👤 项目作者: almahasher016-lang
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:03:10

📝 项目描述:
Multi-component remote administration / C2 framework (authorized red teaming and research use)

🔗 点击访问项目地址 GitHub - almahasher016-lang/M7MD-RAT-NG: Multi-component remote administration / C2 framework (authorized red teaming and research…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: network-vulnerability-scanner
👤 项目作者: yazhiniM29
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 14:41:38

📝 项目描述:
Python-based network vulnerability scanner using Nmap, vulnerability rules, version checking, CVE matching, risk scoring, and HTML reporting.

🔗 点击访问项目地址 yazhiniM29/network-vulnerability-scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Repository-name-Vulnerability-Scanner
👤 项目作者: Prachii7
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 14:57:13

📝 项目描述:
A Python-based mini vulnerability scanner that detects open ports, basic web security misconfigurations, and generates vulnerability reports.

🔗 点击访问项目地址 GitHub - Prachii7/Repository-name-Vulnerability-Scanner: A Python-based mini vulnerability scanner that detects open ports, basic…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: A1
👤 项目作者: barisburakturgut
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 14:36:46

📝 项目描述:
Sliver C2 home lab & operator playbook — reproducible setup, architecture, and a full adversary-emulation walkthrough (Red Team / C2)

🔗 点击访问项目地址 GitHub - barisburakturgut/A1: Sliver C2 home lab & operator playbook — reproducible setup, architecture, and a full adversary-emulation…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: gursharan201205gill-lab
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 13:32:09

📝 项目描述:
Python-based vulnerability scanner using Nmap, rule-based security analysis, CVE intelligence and risk scoring.

🔗 点击访问项目地址 GitHub - gursharan201205gill-lab/vulnerability-scanner: Python-based vulnerability scanner using Nmap, rule-based security analysis…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #提权 #Service

📦 项目名称: samsung-softreboot-lagfix
👤 项目作者: rw1019
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 12:56:15

📝 项目描述:
专治三星设备软重启后进程堆叠与系统卡顿。全自动清除提权孤儿进程、拦截高危 inotify 监听器并安全回收内核缓存。

🔗 点击访问项目地址 GitHub - rw1019/samsung-softreboot-lagfix: 专治三星设备软重启后进程堆叠与系统卡顿。全自动清除提权孤儿进程、拦截高危 inotify 监听器并安全回收内核缓存。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #靶场

📦 项目名称: skills
👤 项目作者: wufufu770
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 13:40:22

📝 项目描述:
渗透测试方向的skill

🔗 点击访问项目地址 GitHub - wufufu770/skills: 渗透测试方向的skill
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: Gitlab-CVE-2026-19478
👤 项目作者: punitdarji
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 12:21:47

📝 项目描述:
Gitlab-CVE-2026-19478

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #漏洞

📦 项目名称: root-my-s24
👤 项目作者: NanoTurtle1145
🛠 开发语言: Kotlin
Star数量: 10 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-22 12:39:03

📝 项目描述:
Using CVE-2026-43499 to root your Galaxy S24 Series(SM-S92X0 ,(China / Hong Kong SAR / Taiwan))

🔗 点击访问项目地址
Back to Top