📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Reflected #DOM

📦 项目名称: SQLi_XSS_tester
👤 项目作者: Spellskite-coding
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:51:07

📝 项目描述:
A Python script to automate the SQLi and XSS vulnerability reconnaissance phase for your pentests!

🔗 点击访问项目地址 GitHub - Spellskite-coding/SQLi_XSS_tester: A Python script to automate the SQLi and XSS vulnerability reconnaissance phase for…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: stored-xss
👤 项目作者: rood8008
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 20:06:11

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #metadata

📦 项目名称: reflections-ai-journal
👤 项目作者: Harshil-2711
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:43:54

📝 项目描述:
Production AI-guided cognitive reflection journal powered by Google Gemini, Firebase Auth, and Cloud Firestore. Features Location-Aware Grounding (Google Maps), Admin RBAC & Telemetry, SSRF-Protected Webhooks (Slack/Discord), Multi-Perspective Shifting (Stoic/CBT), Emotional Valence Gauges, and 4-tier model fallback resilience.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #YARA #malware

📦 项目名称: win_malware_analyzer
👤 项目作者: Spellskite-coding
🛠 开发语言: Python
Star数量: 8 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:56:20

📝 项目描述:
A Python script that automates static analysis, yara analysis and reverse-engineering on Windows (exe, sys, dll) binaries!

🔗 点击访问项目地址 GitHub - Spellskite-coding/win_malware_analyzer: A Python script that automates static analysis, yara analysis and reverse-engineering…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored #Reflected

📦 项目名称: Web-Application-Vulnerability-Assessment-OWASP-Top-10-
👤 项目作者: yogeshjadhao0345-cmd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 19:04:04

📝 项目描述:
Web Application Vulnerability Assessment toolkit targeting OWASP Juice Shop & DVWA. Includes Docker setup, Python PoC scripts for SQL Injection (auth bypass, UNION extraction), Reflected/Stored XSS, and BOLA/IDOR testing, secure remediation code (Node.js, PHP), a testing methodology guide, and a full PDF vulnerability report template.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Bypass #Sandbox

📦 项目名称: SecureAssess
👤 项目作者: shaheerali838
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:54:45

📝 项目描述:
SecureAssess is a hybrid threat-detection platform securing remote assessments against OS-level AI cheating tools. It combines low-friction browser telemetry (typing cadence, gaze tracking) with a native Tauri/Rust desktop client to bypass browser sandbox limits, detecting stealth AI copilots, VMs, and unauthorized background processes.

🔗 点击访问项目地址 shaheerali838/SecureAssess
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Vulnerability Scanner

📦 项目名称: DrLinter
👤 项目作者: Nikchan5
🛠 开发语言: Makefile
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:58:27

📝 项目描述:
Cross-platform CLI/TUI Static Application Security Testing (SAST) engine written in pure C99. Fast, lightweight, and zero-dependency code vulnerability scanner for C/C++, GDScript, and Python.

🔗 点击访问项目地址 GitHub - Nikchan5/DrLinter: Cross-platform CLI/TUI Static Application Security Testing (SAST) engine written in pure C99. Fast…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-72898-metabase-sqli
👤 项目作者: d-maggipinto
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:37:53

📝 项目描述:
Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)

🔗 点击访问项目地址 GitHub - d-maggipinto/CVE-2026-72898-metabase-sqli: Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: YellowKey-BitLocker-CVE-2026-45585
👤 项目作者: yellowkeycve2026
🛠 开发语言: C++
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 18:59:07

📝 项目描述:
YellowKey BitLocker recovery - bitlocker yellowkey, yellowkey bitlocker, CVE-2026-45585, yellowkey github, yellowkey vulnerability, yellowkey CVE, TPM, BitLocker recovery key backup, Windows 10/11, CLI GUI, portable audit tool. Download:🡇

🔗 点击访问项目地址 GitHub - yellowkeycve2026/YellowKey-BitLocker-CVE-2026-45585: YellowKey BitLocker recovery - bitlocker yellowkey, yellowkey bitlocker…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Stored

📦 项目名称: notebooklm-estudo-seguranca-web
👤 项目作者: rotinoM0
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:39:56

📝 项目描述:
Notebooklm criado para fins de estudo como parte do curso de cybersegurança dio.me com foco na segurança de sistemas web e estudo de ataques XSS e SQLInjection

🔗 点击访问项目地址 GitHub - rotinoM0/notebooklm-estudo-seguranca-web: Notebooklm criado para fins de estudo como parte do curso de cybersegurança…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #DOM

📦 项目名称: Cerberus-XSS-
👤 项目作者: CerberusMrXi
🛠 开发语言: Python
Star数量: 2 | 🍴 Fork数量: 1
📅 更新时间: 2026-08-26 18:07:12

📝 项目描述:
Cerberus XSS by Sudeepa Wanigarathne is an advanced XSS testing tool for pentesters and bug bounty hunters. It features web crawling, WAF bypass, DOM-based XSS detection, and blind XSS logging. With a rich terminal UI, it offers interactive menus, progress bars, and detailed reports. Ethically test with permission only.

🔗 点击访问项目地址 GitHub - CerberusMrXi/Cerberus-XSS-: Cerberus XSS by Sudeepa Wanigarathne is an advanced XSS testing tool for pentesters and bug…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: By-Poloss..-..CVE-2026-18080
👤 项目作者: Polosss
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:05:45

📝 项目描述:
Poc CVE-2026-18080

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: PNGboomer-CVE-2026-77622
👤 项目作者: Squ1shification
🛠 开发语言: Go
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:51:44

📝 项目描述:
Sliver HTTP(S) C2 PNG bomb DoS exploit — GHSA-663m-7x7m-g4fw (CVE-2026-77622)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: mcp-imagemagick-rce
👤 项目作者: s1ko
🛠 开发语言: JavaScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:03:40

📝 项目描述:
OS command injection (CWE-78) in Yoshino-Yukitaro/imagemagick_mcp_server — advisory, detection and PoC. Repository archived upstream; no fix possible.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Xray #POC

📦 项目名称: marcelo-ultimate-poc
👤 项目作者: marcelonyc
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:58:57

📝 项目描述:
JFrog Ultimate Bundle POC — Curation, Xray, AppTrust, and Evidence end-to-end demo

🔗 点击访问项目地址 GitHub - marcelonyc/marcelo-ultimate-poc: JFrog Ultimate Bundle POC — Curation, Xray, AppTrust, and Evidence end-to-end demo
🫤😐🫥😶🤥🫠🤫🫡🫢
😑 N9 国际认证 | 信誉平台
支持5倍验资 【验资:
@N9KF
担保域名:N9.TOP 点击查看
⚡️⚡️⚡️⚡️
💝
新会员好礼
注册就送28.8U
新人首存/二存/三存最高赠送
8️⃣8️⃣8️⃣8️⃣U
💝
老会员好礼
电子狂欢每日存款赠送10%
充值笔笔送3%无上限
夜间充值最高可优惠8888U

⚡️⚡️⚡️⚡️⚡️⚡️
⚡️⚡️⚡️⚡️⚡️⚡️⚡️
香港六合彩
4️⃣8️⃣.8️⃣
加拿大28全网返水最高

⚡️注册网址:N9.PRO

😇🧐🧐😗🧐😙😄
⚡️ 官方客服: @N9KF
⚡️ 官方飞投: @N9N9
⚡️ 彩票客服: @N9CP
⚡️ 彩票飞投: @N9N9N9
⚡️ 福利频道: @N9pd888
⚡️ 注册网址: N9.COM【USDT】
⚡️ 注册网址: N9.COM【人民币】

🔥欢迎各位老板加入N9国际娱乐城!
🔥关注N9官方频道参与更多优惠活动
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #RCE #POC

📦 项目名称: log4j2-4255-exploit
👤 项目作者: joanbono
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 3
📅 更新时间: 2026-08-26 16:22:20

📝 项目描述:
exploit for Log4j2 (issue 4255)

🔗 点击访问项目地址 GitHub - joanbono/log4j2-4255-exploit: exploit for Log4j2 (issue 4255)
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Log4j #RCE

📦 项目名称: log4j2-rce
👤 项目作者: hypnguyen1209
🛠 开发语言: Java
Star数量: 6 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 17:00:08

📝 项目描述:
Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2

🔗 点击访问项目地址 GitHub - hypnguyen1209/log4j2-rce: Pre-auth RCE via FilteredObjectInputStream MarshalledObject bypass in Apache Log4j 2
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: chrome-vuln-scanner
👤 项目作者: virologi-info
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 15:41:49

📝 项目描述:
Check for CVE-2026-79266. A use-after-free in the DevTools component allows arbitrary code execution inside the sandbox via a malicious Chrome extension leveraging social engineering.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-63520
👤 项目作者: hypnguyen1209
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-26 16:55:21

📝 项目描述:
POC pre-auth RCE on Sharepoint chain

🔗 点击访问项目地址 GitHub - hypnguyen1209/CVE-2026-63520: POC pre-auth RCE on Sharepoint chain
Back to Top