📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp-Extension
👤 项目作者: tjat94
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 13:41:19

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - tjat94/Burp-Extension
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #插件 #漏洞

📦 项目名称: API-Sentinel
👤 项目作者: Flechzao
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 14:06:53

📝 项目描述:
AI 驱动的 Burp Suite API 安全自动化分析插件 —— 流量捕获、漏洞验证、证据驱动的全流程,无需手动把流量复制粘贴给 ChatGPT 网页。

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected

📦 项目名称: web-vuln-scanner
👤 项目作者: Vadivel-dotcom
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 13:44:34

📝 项目描述:
Modular Python web vulnerability scanner — SQLi, reflected XSS, port scan, SSL/TLS & security-header checks with console + HTML reporting.

🔗 点击访问项目地址 GitHub - Vadivel-dotcom/web-vuln-scanner: Modular Python web vulnerability scanner — SQLi, reflected XSS, port scan, SSL/TLS &…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: MalyxScanner
👤 项目作者: maelmeriguet4-glitch
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 13:18:05

📝 项目描述:
Offline static malware analysis engine, PE inspector & incident triage desktop utility.

🔗 点击访问项目地址 GitHub - maelmeriguet4-glitch/MalyxScanner: MalyxScanner est un scanner d'analyse statique locale sous Windows permettant de bien…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: owasp-observatory
👤 项目作者: nizarmochamad
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 12:56:36

📝 项目描述:
Vulnerability scanner tools based on OWAPS TOP 10

🔗 点击访问项目地址 GitHub - nizarmochamad/owasp-observatory: Vulnerability scanner tools based on OWAPS TOP 10
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: Burp-MCP-Client
👤 项目作者: TiggySkibbles
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 12:57:23

📝 项目描述:
A simple burp extension to simplify MCP testing.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC #Remote Code Execution

📦 项目名称: QVD-2026-57410
👤 项目作者: HackSpeak
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 12:40:16

📝 项目描述:
QVD-2026-57410 (DeepSeek Harness Host Header Bypass → RCE) PoC toolkit - HTTP Host header trust flaw leading to unauthenticated remote code execution; for authorized security testing

🔗 点击访问项目地址 GitHub - HackSpeak/QVD-2026-57410: QVD-2026-57410 (DeepSeek Harness Host Header Bypass → RCE) PoC toolkit - HTTP Host header trust…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #Remote Code Execution

📦 项目名称: Acelle-Mail-4.2.0-p97-Unauthenticated-SSTI-to-RCE-Chain
👤 项目作者: Yucaerin
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 11:46:07

📝 项目描述:
The email marketing platform Acelle Mail version 4.2.0-p97 is vulnerable to a full unauthenticated Remote Code Execution through a multi-step exploitation chain

🔗 点击访问项目地址 Yucaerin/Acelle-Mail-4.2.0-p97-Unauthenticated-SSTI-to-RCE-Chain
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Burp #Extension

📦 项目名称: WorkflowGuard
👤 项目作者: aleff-github
🛠 开发语言: Java
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 11:56:00

📝 项目描述:
State-aware Burp Suite extension for mutating multi-step workflows and detecting business-logic flaws with probes, invariants, isolated actors, and cleanup.

🔗 点击访问项目地址 GitHub - aleff-github/WorkflowGuard: State-aware Burp Suite extension for mutating multi-step workflows and detecting business…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: VulnerabilityManager
👤 项目作者: jordobe
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 11:52:38

📝 项目描述:
Docker based vulnerability scanner project based on the Greenbone Community Edition/OpenVAS

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-73570
👤 项目作者: jishino567
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 11:16:33

📝 项目描述:
PoC for CVE-2026-73570 (Zimbra SMTP Command Injection)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #POC

📦 项目名称: aegis-bounty
👤 项目作者: k-beee
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 11:04:47

📝 项目描述:
Decentralized Bug Bounty & Exploit Adjudication Protocol with Multi-Validator Live PoC Consensus on GenLayer

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: api-scanner
👤 项目作者: Con2rol
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 10:55:17

📝 项目描述:
A lightweight, high-performance API security vulnerability scanner and dashboard built with FastAPI, Tailwind CSS, and Python. Performs comprehensive assessments across the OWASP API Security Top 10 framework, inspecting security headers, transport configurations, and endpoint response patterns.

🔗 点击访问项目地址 GitHub - Con2rol/api-scanner: A lightweight, high-performance API security vulnerability scanner and dashboard built with FastAPI…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: USB-Malware-Detection-Tool
👤 项目作者: muzaffarjutt470-star
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 10:50:20

📝 项目描述:
Defensive USB malware detection and threat-triage framework using SHA-256, entropy analysis, PE analysis, YARA, ClamAV, and risk scoring.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: guardian-zap
👤 项目作者: YOGESH-PANDIYAN
🛠 开发语言: HTML
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 09:28:07

📝 项目描述:
Automated Web Vulnerability Scanner powered by OWASP ZAP

🔗 点击访问项目地址 GitHub - YOGESH-PANDIYAN/guardian-zap: Automated Web Vulnerability Scanner powered by OWASP ZAP
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: YARA-Malware-detection
👤 项目作者: Drax003
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 09:42:32

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #rules

📦 项目名称: cisa-yara-rules
👤 项目作者: Turku9
🛠 开发语言: YARA
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 10:00:29

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - Turku9/cisa-yara-rules
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored #Reflected #DOM

📦 项目名称: ethical-hacking-DVWA-lab
👤 项目作者: seifahmeedd
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 07:47:26

📝 项目描述:
Cybersecurity project conducted on DVWA (Damn Vulnerable Web Application) using Kali Linux and VMware. Demonstrates practical exploitation of web application vulnerabilities including XSS, SQL Injection, CSRF, File Upload, File Inclusion, Command Injection, CAPTCHA Bypass, and Session Management weaknesses.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: nuclei
👤 项目作者: x-cmd-install
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 08:39:25

📝 项目描述:
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your a

🔗 点击访问项目地址 GitHub - x-cmd-install/nuclei: Nuclei is a fast, customizable vulnerability scanner powered by the global security community and…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-2022-28906-POC
👤 项目作者: finnvle
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-25 07:48:18

📝 项目描述:
CVE-2022-28906 Proof of concept in Python3

🔗 点击访问项目地址 GitHub - finnvle/CVE-2022-28906-POC: CVE-2022-28906 Proof of concept in Python3
Back to Top