📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #渗透测试 #漏洞

📦 项目名称: AYLpEjmaUU
👤 项目作者: jx95jdolc8
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 21:03:36

📝 项目描述:
2022软件工程毕设一套 终稿 基于python的web安全漏洞渗透测试系统设计与实现(论文+前后端程序源代码)41.zip

🔗 点击访问项目地址 GitHub - jx95jdolc8/AYLpEjmaUU: 2022软件工程毕设一套 终稿 基于python的web安全漏洞渗透测试系统设计与实现(论文+前后端程序源代码)41.zip
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Plugin

📦 项目名称: Oxide-communityedition-v8.7.2
👤 项目作者: HyperSecurityLabs
🛠 开发语言: Unknown
Star数量: 13 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-22 20:41:22

📝 项目描述:
oxide 8.7.2 a Rust-powered security scanner that uses AI/ML anomaly detection, multi‑vector fuzzing, TLS/CORS misconfiguration auditing, Recon, and Zero‑day discovery into a single portable executable and burp suite.

🔗 点击访问项目地址 GitHub - HyperSecurityLabs/Oxide-communityedition-v8.7.2: oxidev8.6.9 a Rust-powered security scanner that uses AI/ML anomaly detection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: SSD_Lab_06_Protecting-against-XSS
👤 项目作者: PandukaWijesinghee
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 19:23:48

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - PandukaWijesinghee/SSD_Lab_06_Protecting-against-XSS
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit #RCE

📦 项目名称: CVE-2026-76904
👤 项目作者: YonLiud
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 20:13:01

📝 项目描述:
GeoServer Unauthenticated SQL injection to complete RCE

🔗 点击访问项目地址 GitHub - YonLiud/CVE-2026-76904: Unauthenticated SQL injection to complete RCE
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-75616
👤 项目作者: totekuh
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 20:54:00

📝 项目描述:
PoC for CVE-2026-75616, an authenticated OS command injection in TP-Link Archer C20 v6 firmware

🔗 点击访问项目地址 totekuh/CVE-2026-75616
🚨 GitHub 监控消息提醒

🚨 发现关键词: #BlueTeam #Detection

📦 项目名称: SecuSploitX
👤 项目作者: Largo-m
🛠 开发语言: HTML
Star数量: 38 | 🍴 Fork数量: 10
📅 更新时间: 2026-08-22 19:50:43

📝 项目描述:
Sploit -- All-in-one, AI-powered cybersecurity toolkit for web, network, and phishing tests. Modular, cross-platform, Docker-ready, with GUI & CLI. Open source by AUX-441 Team.

🔗 点击访问项目地址 GitHub - Largo-m/SecuSploitX: Sploit -- All-in-one, AI-powered cybersecurity toolkit for web, network, and phishing tests.   Modular…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Judger
👤 项目作者: larprober
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 19:09:56

📝 项目描述:
Template-driven web vulnerability scanner. Zero dependency Node.js. YAML "sigils", async engine, JSON/SARIF output. For authorized testing only.

🔗 点击访问项目地址 GitHub - larprober/Judger: Template-driven web vulnerability scanner. Zero dependency Node.js. YAML
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: Billynary
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 19:22:33

📝 项目描述:
My own little Vulnerability Scanner

🔗 点击访问项目地址 GitHub - Billynary/Vulnerability-Scanner: My own little Vulnerability Scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability__Scanner
👤 项目作者: krrish1211
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 19:01:46

📝 项目描述:
A simple Python-based vulnerability scanner that identifies open ports and provides basic security warnings.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: homebrew-onyx
👤 项目作者: Boreas37
🛠 开发语言: Ruby
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 19:06:29

📝 项目描述:
Homebrew tap for onyx — local-first WordPress vulnerability scanner

🔗 点击访问项目地址 GitHub - Boreas37/homebrew-onyx: Homebrew tap for onyx — local-first WordPress vulnerability scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Sliver #C2

📦 项目名称: sliver-c2-home-lab
👤 项目作者: barisburakturgut
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 18:42:00

📝 项目描述:
Hands-on Sliver C2 home lab & operator playbook — reproducible setup, architecture, and a full adversary-emulation walkthrough on an isolated localhost lab (Red Team / C2).

🔗 点击访问项目地址 GitHub - barisburakturgut/sliver-c2-home-lab: Hands-on Sliver C2 home lab & operator playbook — reproducible setup, architecture…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: Cerberus-React2Shell-Scanner-Exploit
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-22 18:26:21

📝 项目描述:
Elite exploitation toolkit for CVE-2025-55182 (React Server Components RCE). Async polymorphic payloads, advanced WAF/CDN bypass, proxy rotation, Shodan/Censys mass scan, auto-pwn + reverse shells, Nuclei templates, K8s lab & C2 dashboard. Authored by Sudeepa Wanigarathna – strictly for authorized red team and penetration testing.

🔗 点击访问项目地址 GitHub - CerberusMrXi/Cerberus-React2Shell-Scanner-Exploit: Elite exploitation toolkit for CVE-2025-55182 (React Server Components…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #蜜罐 #部署 #捕获

📦 项目名称: sshfakekeyhome
👤 项目作者: ra1nyxin
🛠 开发语言: Python
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:46:21

📝 项目描述:
多诱饵紧凑型无状态SSH蜜罐,包含假Claude、Codex、Cursor、云平台与运维凭据,支持任意账户密码、公钥及交互认证,模拟Linux文件系统、网络、防火墙和常用命令,实时记录来源、凭据、命令与行为,并提供Web审计控制台

🔗 点击访问项目地址 GitHub - ra1nyxin/sshfakekeyhome: 多诱饵紧凑型无状态SSH蜜罐,包含假Claude、Codex、Cursor、云平台与运维凭据,支持任意账户密码、公钥及交互认证,模拟Linux文件系统、网络、防火墙和常用命令,实时记录…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #C2 #Framework

📦 项目名称: Argus-C2
👤 项目作者: Oreki0504
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:50:33

📝 项目描述:
A modular C2 framework for studying agent communication, remote tasking, and endpoint security in controlled environments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected

📦 项目名称: Cybersecurity-internship-task-3
👤 项目作者: rutujalkhade2026
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:51:45

📝 项目描述:
Web application security testing project covering SQL Injection, Stored XSS, Reflected XSS and CSRF using DVWA.

🔗 点击访问项目地址 GitHub - rutujalkhade2026/Cybersecurity-internship-task-3: Web application security testing project covering SQL Injection, Stored…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: Cross-Site-Scripting-XSS-Payload-Sanitizer
👤 项目作者: jenishs524
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:59:06

📝 项目描述:
An advanced, context-aware input sanitizer and XSS detection engine written in Python. Performs structural tokenization, recursive obfuscation decoding (URL, Base64, HTML entities), and context-sensitive sanitization to neutralize stored, reflected, and DOM-based XSS attacks.

🔗 点击访问项目地址 GitHub - jenishs524/Cross-Site-Scripting-XSS-Payload-Sanitizer: An advanced, context-aware input sanitizer and XSS detection engine…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-VulnScan
👤 项目作者: Mayank045
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:55:32

📝 项目描述:
Modular web vulnerability scanner and security assessment framework. 🚧 Under Development

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader

📦 项目名称: SleepyLoader
👤 项目作者: lukehebe
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 17:34:50

📝 项目描述:
Shellcode Loader

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2026-13736
👤 项目作者: MinhHK68
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 18:01:40

📝 项目描述:
无描述

🔗 点击访问项目地址 MinhHK68/CVE-2026-13736
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: HIPR
👤 项目作者: Jboxbobby
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-22 15:06:46

📝 项目描述:
HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine built with FastAPI and HTTPX. Features phase-decoupled timeouts, exponential backoff with full jitter, connection pooling, and defense-in-depth SSRF/DNS-rebinding protection.

🔗 点击访问项目地址 GitHub - Jboxbobby/HIPR: HIPR (Hardened Isolated Proxy Runtime) — A fault-tolerant, async egress proxy and outbound guardrail engine…
Back to Top