📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: vuln-radar
👤 项目作者: manuja-me
🛠 开发语言: Svelte
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 08:45:33

📝 项目描述:
Desktop Web Vulnerability & Security Scanner built with Rust, Tauri, and React

🔗 点击访问项目地址 GitHub - manuja-me/vuln-radar: Desktop Web Vulnerability & Security Scanner built with Rust, Tauri, and React
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: KMN-V-Scanner
👤 项目作者: KhitMinnyo
🛠 开发语言: Python
Star数量: 6 | 🍴 Fork数量: 2
📅 更新时间: 2026-08-24 09:04:02

📝 项目描述:
A comprehensive vulnerability scanning tool that combines port scanning, network discovery, and vulnerability detection capabilities.

🔗 点击访问项目地址 GitHub - KhitMinnyo/KMN-V-Scanner: A comprehensive vulnerability scanning tool that combines port scanning, network discovery,…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE #POC

📦 项目名称: CVE-2025-48595-Exploit
👤 项目作者: XiaoBaiLovesStirring
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 08:56:58

📝 项目描述:
CVE-2025-48595 Android Framework Integer Overflow PoC - 优化版

🔗 点击访问项目地址 GitHub - XiaoBaiLovesStirring/CVE-2025-48595-Exploit: CVE-2025-48595 Android Framework Integer Overflow PoC - 优化版
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Evasion

📦 项目名称: Winx86_64-Selfinjection-Agent
👤 项目作者: aghaasfandyarkhan
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 07:33:14

📝 项目描述:
A selfinjection agent or shellcode injection agent is a type of malware development technique in which the developer embeds the malicious shellcode inside it's own code logic and than compile it with commonly used compiler (like I used ``cargo``) to perform signature based evasion.

🔗 点击访问项目地址 GitHub - aghaasfandyarkhan/Winx86_64-Selfinjection-Agent: A selfinjection agent or shellcode injection agent is a type of malware…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2025-55182
👤 项目作者: Mr-Destroyer
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 07:34:29

📝 项目描述:
SIMPLE EXPOIT FOR CVE-2025-55182 FOR RCE , COMMAND INJECTIONS AND OTHER VULNERABILITIES

🔗 点击访问项目地址 Mr-Destroyer/CVE-2025-55182
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #DOM

📦 项目名称: ws1-ssp-dom-xss-poc
👤 项目作者: jackpas23
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 08:01:46

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - jackpas23/ws1-ssp-dom-xss-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Shellcode #Loader #Execute

📦 项目名称: Winx86_64-Shellcode-Loader
👤 项目作者: aghaasfandyarkhan
🛠 开发语言: Rust
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 07:05:37

📝 项目描述:
A shellcode loader written in rust which downloads you shellcode.bin file from remote server, download it on target machine, saves it in specific path and than execute it.

🔗 点击访问项目地址 GitHub - aghaasfandyarkhan/Winx86_64-Shellcode-Loader: A shellcode loader written in rust which downloads you shellcode.bin file…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #应急响应 #取证 #Webshell #入侵

📦 项目名称: ertool
👤 项目作者: yuuki-gy
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 04:01:11

📝 项目描述:
ERTool - Linux 应急响应排查工具 (20+ 检测域, 多架构)

🔗 点击访问项目地址 GitHub - yuuki-gy/ertool: ERTool - Linux 应急响应排查工具 (20+ 检测域, 多架构)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: burp-payload-workbench
👤 项目作者: kim-kimani
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 06:00:29

📝 项目描述:
Observe → Extract → Remember → Categorize → Modify → Generate → Replay → Analyze, all in one Burp Suite tab. Passive learning, JSON-aware request rebuilding, and DeepSeek-powered payload suggestions.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: PoC_XSS
👤 项目作者: lilzdotgovph
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 06:42:18

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - lilzdotgovph/PoC_XSS
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: OWASP-Juice-Shop-Security-Assessment
👤 项目作者: y4shsec
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 05:55:44

📝 项目描述:
Manual web application security assessment of OWASP Juice Shop covering SQL Injection, IDOR/Broken Access Control, DOM XSS, sensitive data exposure, and business logic vulnerabilities with technical evidence and remediation recommendations.

🔗 点击访问项目地址 GitHub - y4shsec/OWASP-Juice-Shop-Security-Assessment: Manual web application security assessment of OWASP Juice Shop covering…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: XSS-POC
👤 项目作者: gussamkodin
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 05:58:39

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - gussamkodin/XSS-POC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: hf-supply-scanner
👤 项目作者: vinzabe
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 06:02:34

📝 项目描述:
Static ML model supply-chain scanner: detects pickle RCE, dangerous imports, and risky formats in model artifacts WITHOUT executing them. Reads opcodes via pickletools.

🔗 点击访问项目地址 GitHub - vinzabe/hf-supply-scanner: Static ML model supply-chain scanner: detects pickle RCE, dangerous imports, and risky formats…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #反序列化 #RCE #CVE

📦 项目名称: Taco
👤 项目作者: Zomnap
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 04:54:07

📝 项目描述:
一个能自动生成pickle反序列化的工具

🔗 点击访问项目地址 GitHub - Zomnap/Taco: 一个能自动生成pickle反序列化的工具
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: Vulnerability-Scanner
👤 项目作者: ananyagowda-24
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 04:55:02

📝 项目描述:
A Python-based vulnerability scanner that detects open ports, weak web security configurations, potentially outdated software, and generates a simple risk report.

🔗 点击访问项目地址 ananyagowda-24/Vulnerability-Scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #扫描

📦 项目名称: dvwa-vuln-scan-agent
👤 项目作者: Yuansong0717
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 04:13:47

📝 项目描述:
DVWA 漏洞扫描与复核 Agent(agent-compose + OctoBus + X-ray),含源码/配置/知识库/部署脚本

🔗 点击访问项目地址 GitHub - Yuansong0717/dvwa-vuln-scan-agent: DVWA 漏洞扫描与复核 Agent(agent-compose + OctoBus + X-ray),含源码/配置/知识库/部署脚本
TG必备的搜索引擎,快搜kuai帮你发现有趣群组、频道、视频、音乐、电影、新闻 | Find cool stuff all in one bot!

机器人:@kuai @kuaia @kuaiaa

👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #CVE #JNDI

📦 项目名称: patch-CVE-2025-19000
👤 项目作者: gduma-phData
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 03:05:08

📝 项目描述:
Patch: JNDI injection variant (Apache Log4j)

🔗 点击访问项目地址 GitHub - gduma-phData/patch-CVE-2025-19000: Patch: JNDI injection variant (Apache Log4j)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: patch-CVE-2026-15502
👤 项目作者: gduma-phData
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 03:03:12

📝 项目描述:
Patch: SSRF leading to RCE (Microsoft Exchange Server)

🔗 点击访问项目地址 GitHub - gduma-phData/patch-CVE-2026-15502: Patch: SSRF leading to RCE (Microsoft Exchange Server)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #CVE

📦 项目名称: patch-CVE-2025-36001
👤 项目作者: gduma-phData
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-24 03:04:25

📝 项目描述:
Patch: SSRF via import (GitLab CE/EE)

🔗 点击访问项目地址
Back to Top