📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: 4ynow
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 20:55:32

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - 4ynow/web-vulnerability-scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: ssrf
👤 项目作者: cplieger
🛠 开发语言: Go
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 20:12:53

📝 项目描述:
SSRF + DNS-rebinding protection for Go: validate outbound URLs and dial safely

🔗 点击访问项目地址 GitHub - cplieger/ssrf: SSRF + DNS-rebinding protection for Go: validate outbound URLs and dial safely
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC #metadata

📦 项目名称: Gamal
👤 项目作者: Fadavvi
🛠 开发语言: Python
Star数量: 14 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-23 21:00:48

📝 项目描述:
A tiny app to help red-teamers, purple teamers, and pentesters in delivery, data exfiltration, and some attacks (SSRF, XXE, XSS, Session Hijacking, Session Riding)

🔗 点击访问项目地址 GitHub - Fadavvi/Gamal: A tiny app to help red-teamers, purple teamers, and pentesters in delivery, data exfiltration, and some…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: muzaffarjutt470-star
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 19:28:25

📝 项目描述:
Web Vulnerability Scanner — A Python-based defensive security tool designed to assess authorized web applications for common security weaknesses, analyze HTTP responses and security-related configurations, and generate structured findings to support vulnerability assessment and secure development.

🔗 点击访问项目地址 GitHub - muzaffarjutt470-star/Web-Vulnerability-Scanner: Web Vulnerability Scanner — A Python-based defensive security tool designed…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: Mandravasarotra-AV
👤 项目作者: tantelyorion
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 18:32:36

📝 项目描述:
Mandravasarotra Antivirus — A fully local, open-source antivirus engine with zero cloud/AI dependency. Combines hash signatures, YARA rules, behavioral heuristics, real-time file/USB/process monitoring, and quarantine — all in Python. MIT licensed, tested with pytest + CI. Built with Malagasy 🇲🇬 identity, global cybersecurity ambition.

🔗 点击访问项目地址 GitHub - tantelyorion/Mandravasarotra-AV: Mandravasarotra Antivirus — A fully local, open-source antivirus engine with zero cloud/AI…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #NTLM Relay #SMB

📦 项目名称: pentesting-lab-ntlm-relay
👤 项目作者: rjrb8
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 18:38:18

📝 项目描述:
Advanced NTLM Relay exploitation lab with complete documentation

🔗 点击访问项目地址 rjrb8/pentesting-lab-ntlm-relay
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #RCE

📦 项目名称: bmgfl
👤 项目作者: bmgfl
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 17:30:57

📝 项目描述:
🛡️ akihi · 白帽攻防录 | 甲方网络安全工程师 · SRC 漏洞猎人 · 网络安全讲师

🔗 点击访问项目地址 GitHub - bmgfl/bmgfl: 🛡️ akihi · 白帽攻防录 | 甲方网络安全工程师 · SRC 漏洞猎人 · 网络安全讲师
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: SentinelX-Vuln-Scanner
👤 项目作者: Ahmedraza0725
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 18:30:08

📝 项目描述:
Portable Nmap/Nikto GUI vulnerability scanner for Kali Linux.

🔗 点击访问项目地址 GitHub - Ahmedraza0725/SentinelX-Vuln-Scanner: Portable Nmap/Nikto GUI vulnerability scanner for Kali Linux.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: flawfix_plus
👤 项目作者: ameenacloud
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 18:40:49

📝 项目描述:
An incremental LLVM-based vulnerability scanner using SCCA and Groq LLaMA-3

🔗 点击访问项目地址 GitHub - ameenacloud/flawfix_plus: An incremental LLVM-based vulnerability scanner using SCCA and Groq LLaMA-3
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: cve-2026-9198_exploit
👤 项目作者: chessalekin
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 18:32:11

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - chessalekin/cve-2026-9198_exploit
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: POC-Magento-Exploit
👤 项目作者: zncomsddsdela
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 17:54:34

📝 项目描述:
Owna varios gov e bom pra krlh

🔗 点击访问项目地址 GitHub - zncomsddsdela/POC-Magento-Exploit: Owna varios gov e bom pra krlh
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Evasion

📦 项目名称: poc-apc-injection-loader
👤 项目作者: uLl0a
🛠 开发语言: C++
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 17:57:02

📝 项目描述:
A Proof of Concept (PoC) C++ shellcode loader featuring sandbox evasion, host profiling, and APC thread injection into explorer.exe.

🔗 点击访问项目地址 GitHub - uLl0a/poc-apc-injection-loader: A Proof of Concept (PoC) C++ shellcode loader featuring sandbox evasion, host profiling…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rule #rules #malware

📦 项目名称: defentra
👤 项目作者: jacobtblalock3-cmd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 16:56:40

📝 项目描述:
Defentra AI antivirus: signatures + YARA + ML + realtime protection for Linux

🔗 点击访问项目地址 GitHub - jacobtblalock3-cmd/defentra: Defentra AI antivirus: signatures + YARA + ML + realtime protection for Linux
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #CVE #Stored

📦 项目名称: CVE-2026-66917
👤 项目作者: toanln-cov
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 15:22:17

📝 项目描述:
IDOR + Stored XSS via Broken Object-Level Authorization in JoomGallery

🔗 点击访问项目地址 toanln-cov/CVE-2026-66917
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-15718-who-put-ptrs-in-my-wasm
👤 项目作者: SneakyNachos
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 16:03:50

📝 项目描述:
PoC exploit chain for CVE-2026-15718: SpiderMonkey wasm baseline compiler array.fill missing-sync -> invalid pointer -> addrOf/fakeobj -> arbitrary R/W -> RCE

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vulnerability-scanner
👤 项目作者: dhanushm1114-hash
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 15:04:54

📝 项目描述:
A Python-based mini vulnerability scanner that detects open TCP ports, identifies services, performs basic security checks, and generates a vulnerability assessment report.

🔗 点击访问项目地址 GitHub - dhanushm1114-hash/vulnerability-scanner: A Python-based mini vulnerability scanner that detects open TCP ports, identifies…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: simple-dast
👤 项目作者: adisusantos
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 15:07:51

📝 项目描述:
Beginner-friendly web vulnerability scanner (DAST) for QA engineers. Detects SQLi, XSS, Command Injection, and misconfigurations with actionable reports.

🔗 点击访问项目地址 adisusantos/simple-dast
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: PwnRM
👤 项目作者: uziii2208
🛠 开发语言: Python
Star数量: 69 | 🍴 Fork数量: 7
📅 更新时间: 2026-08-23 14:59:27

📝 项目描述:
A rewritten and enhanced WinRM execution tool based on wmiexec and winrmexec, providing a comprehensive remote management shell with advanced capabilities for Windows target systems.

🔗 点击访问项目地址 GitHub - uziii2208/PwnRM: A rewritten and enhanced WinRM execution tool based on wmiexec and winrmexec, providing a comprehensive…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Web-Vulnerability-Scanner
👤 项目作者: hariomsingh045
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 14:01:39

📝 项目描述:
This project is a lightweight web application vulnerability scanner implemented in Python, aimed at detecting common security issues inspired by OWASP Top 10 guidelines.

🔗 点击访问项目地址 GitHub - hariomsingh045/Web-Vulnerability-Scanner: This project is a lightweight web application vulnerability scanner implemented…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: pythia
👤 项目作者: BB-24
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-23 14:05:16

📝 项目描述:
Delphi is a daemonless, Python-based container vulnerability scanner. It pulls images directly from registries, builds a unified SBOM, and matches dependencies against a fast, local OSV/NVD SQLite cache to generate actionable JSON and PDF reports.

🔗 点击访问项目地址
Back to Top