📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
机器人:@kuai @kuaia @kuaiaa
👉 https://t.me/kuai?start=a_3URZVD0
🚨 GitHub 监控消息提醒
🚨 发现关键词: #C2 #Framework
📦 项目名称: stratum-c2
👤 项目作者: LAME-Projects
🛠 开发语言: Rust
⭐ Star数量: 9 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 10:03:16
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #C2 #Framework
📦 项目名称: stratum-c2
👤 项目作者: LAME-Projects
🛠 开发语言: Rust
⭐ Star数量: 9 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 10:03:16
📝 项目描述:
Cloud-native C2 framework using cloud storage as dead-drop communication channel🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Endpoint-Detection-and-Response-Lab
👤 项目作者: gowtham526
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 04:23:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Endpoint-Detection-and-Response-Lab
👤 项目作者: gowtham526
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 04:23:00
📝 项目描述:
Custom Sysmon configuration built to detect a simulated 6-stage attack chain — credential dumping, ransomware file drops, persistence, and C2 activity.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #RCE #POC
📦 项目名称: log4j-4255
👤 项目作者: dinosn
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:33:30
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #RCE #POC
📦 项目名称: log4j-4255
👤 项目作者: dinosn
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:33:30
📝 项目描述:
End-to-end Docker lab reproducing Apache log4j2 #4255 — FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject (unfiltered deserialization → RCE) on Log4j 2.26.1 / JDK 17.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Xray #POC
📦 项目名称: cos-agentops-xray-poc
👤 项目作者: yifatur-pixel
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 10:02:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Xray #POC
📦 项目名称: cos-agentops-xray-poc
👤 项目作者: yifatur-pixel
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 10:02:14
📝 项目描述:
COS AgentOps X-Ray + Promotion Gate POC🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpHuntX
👤 项目作者: 0xsh4n
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:52:42
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpHuntX
👤 项目作者: 0xsh4n
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:52:42
📝 项目描述:
An open-source Burp Suite extension that turns already captured, in-scope Site Map traffic into a privacy-conscious research package for a local Codex agent. It helps an authorized researcher map the attack surface, correlate request/response behaviour, and generate falsifiable hypotheses. 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Exploit #CVE
📦 项目名称: multi_exploit_wp
👤 项目作者: HackfutSecRoot
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:55:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Exploit #CVE
📦 项目名称: multi_exploit_wp
👤 项目作者: HackfutSecRoot
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:55:00
📝 项目描述:
multi exploit Takeover Wordpress Vuln🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-19632
👤 项目作者: YonLiud
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:42:30
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-19632
👤 项目作者: YonLiud
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:42:30
📝 项目描述:
CVE-2026-19632 - One-Day PoC🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-53613-poc
👤 项目作者: mohamedjawady
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:53:41
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #CVE-2026 #POC
📦 项目名称: CVE-2026-53613-poc
👤 项目作者: mohamedjawady
🛠 开发语言: Shell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 09:53:41
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #漏洞 #POC #CVE
📦 项目名称: CVE-2014-085
👤 项目作者: ehaoxiongdiycw
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 08:45:18
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #漏洞 #POC #CVE
📦 项目名称: CVE-2014-085
👤 项目作者: ehaoxiongdiycw
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 08:45:18
📝 项目描述:
ZooKeeper 未授权访问漏洞(CVE-2014-085)PoC 及靶场🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #POC
📦 项目名称: c3-ssrf-poc
👤 项目作者: sashabal
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 08:50:38
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #POC
📦 项目名称: c3-ssrf-poc
👤 项目作者: sashabal
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 08:50:38
📝 项目描述:
compose upstream SSRF test🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCodX
👤 项目作者: 0xsh4n
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 07:06:32
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Burp #Extension
📦 项目名称: BurpCodX
👤 项目作者: 0xsh4n
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 07:06:32
📝 项目描述:
An open-source Burp Suite extension that turns already captured, in-scope Site Map traffic into a privacy-conscious research package for a local Codex agent. It helps an authorized researcher map the attack surface, correlate request/response behaviour, and generate falsifiable hypotheses. 🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Xss-param-Finder-
👤 项目作者: toradesourav
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:09:26
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XSS #Reflected
📦 项目名称: Xss-param-Finder-
👤 项目作者: toradesourav
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:09:26
📝 项目描述:
XSS Param Finder — injects marker payloads into URL params, flags unescaped reflections as reflected-XSS candidates (manual browser verification required).🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: ai-web-security-scanner
👤 项目作者: Abdullah-sajid-003
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:35:52
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: ai-web-security-scanner
👤 项目作者: Abdullah-sajid-003
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:35:52
📝 项目描述:
Asynchronous web vulnerability scanner integrating Nmap reconnaissance with Google Gemini AI for automated threat remediation, Redis background task workers, JWT auth, and Streamlit UI.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: web-vulnerability-scanner
👤 项目作者: payal493
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:37:53
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Vulnerability Scanner
📦 项目名称: web-vulnerability-scanner
👤 项目作者: payal493
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:37:53
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #漏洞 #扫描
📦 项目名称: auto-find-url
👤 项目作者: xiaoyao37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:33:46
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #漏洞 #扫描
📦 项目名称: auto-find-url
👤 项目作者: xiaoyao37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:33:46
📝 项目描述:
自动化 URL 收集工具,集成 OneForAll/Subfinder/URLFinder,用于逻辑漏洞测试前期资产发现🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #SSRF #metadata
📦 项目名称: rokh-oghab
👤 项目作者: dwin-gharibi
🛠 开发语言: Lua
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:49:14
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #SSRF #metadata
📦 项目名称: rokh-oghab
👤 项目作者: dwin-gharibi
🛠 开发语言: Lua
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 06:49:14
📝 项目描述:
Rokh Oghab is a default-deny egress gateway for untrusted sandbox workloads. It enforces network access at the node and gateway, blocks SSRF and metadata access, verifies destination and identity, and applies versioned policies atomically. Built for Kubernetes, CI, AI agents, and hostile code. Fail-closed by design. Auditable, testable, and secure.🔗 点击访问项目地址