​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Exploit #CVE

📦 项目名称: ShallowEnd-Plugins
👤 项目作者: BKLockly
🛠 开发语言: Zig
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 04:02:10

📝 项目描述:
Official plugin monorepo for ShallowEnd — Zig + Tokota Node.js native addons for post-exploitation (BOF, recon, file ops, sensitive data discovery)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-34990-CUPS-LPE-PoC
👤 项目作者: Noorkhalel
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 03:41:50

📝 项目描述:
Generic PoC for CVE-2026-34990 - CUPS 2.4.16 Local Privilege Escalation via Local token disclosure and arbitrary root file overwrite.

🔗 点击访问项目地址 GitHub - Noorkhalel/CVE-2026-34990-CUPS-LPE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: bara-almustafa
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 02:45:50

📝 项目描述:
CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation

🔗 点击访问项目地址 GitHub - bara-almustafa/CVE-2026-34990-poc: CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #Exploit #CVE

📦 项目名称: vuln-search-skill
👤 项目作者: ming-14
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 01:38:11

📝 项目描述:
多源漏洞搜索 Skill | A AI Agent skill for CVE vulnerability searching, exploit discovery, and privilege escalation research. Integrates NVD, Exploit-DB, CISA-KEV, and Vulners databases.

🔗 点击访问项目地址 GitHub - ming-14/vuln-search-skill: 多源漏洞搜索 Skill | A AI Agent skill for CVE vulnerability searching, exploit discovery, and privilege…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-PoC
👤 项目作者: vvsy46
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 00:59:18

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - vvsy46/CVE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-78006-CVE-2026-78159
👤 项目作者: antid00t
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 00:53:48

📝 项目描述:
CVE-2026-78006 + CVE-2026-78159 Mass Exploit

🔗 点击访问项目地址 GitHub - antid00t/CVE-2026-78006-CVE-2026-78159: The Events Calendar Wordpress Plugin Mass Exploit CVE-2026-78006 & CVE-2026-78159
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44011-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:11:07

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-44011-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE

📦 项目名称: ply-cve-2025-56005-lab
👤 项目作者: gdfurr98
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:50:14

📝 项目描述:
Lab demonstrating that CVE-2025-56005 is real and does allow arbitrary code execution at a minimum (the debate about RCE notwithstanding here), and shows that ply-safepickle does block the exploit path.

🔗 点击访问项目地址 GitHub - gdfurr98/ply-cve-2025-56005-lab: Lab demonstrating that CVE-2025-56005 is real and does allow arbitrary code execution…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-71963-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:32:00

📝 项目描述:
CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (core.fsmonitor). Stdlib-only Python, verified on real 0.21.0 with a clean negative control on the fixed build.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-71963-PoC: CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-88008-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:58:43

📝 项目描述:
CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels past routers and middleware (BasicAuth/ForwardAuth/IPAllowList), unauthorised access + no access logging. Stdlib-only Python PoC + real Jetty h2c lab, verified on v3.7.12 vs v3.7.13.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-88008-PoC: CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:39:50

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-34990-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-88772
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:06:31

📝 项目描述:
CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints Gateway, build vs 14.1-73.37 / 13.1-64.23, UDP/443 DTLS probe. CTX697096; active exploitation reported. https://pocbit.org/pocs/cve-2026-88772

🔗 点击访问项目地址 GitHub - murrez/CVE-2026-88772: CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-44011-craft-rce-poc
👤 项目作者: Cyberuser-hash
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 20:41:26

📝 项目描述:
CVE-2026-44011-craft-rce-poc

🔗 点击访问项目地址 GitHub - Cyberuser-hash/CVE-2026-44011-craft-rce-poc: CVE-2026-44011-craft-rce-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #Exploit

📦 项目名称: CVE-2026-87902-exploit
👤 项目作者: Maalfer
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 20:52:51

📝 项目描述:
Exploit para explotar la vulnerabilidad CVE-2026-87902 que se acontece en el core de WordPress

🔗 点击访问项目地址 GitHub - Maalfer/CVE-2026-87902-exploit: Exploit para explotar la vulnerabilidad CVE-2026-87902 que se acontece en el core de WordPress
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990
👤 项目作者: predyy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:49:19

📝 项目描述:
CVE-2026-34990 minimal PoC. CUPS <= 2.4.16 local privesc.

🔗 点击访问项目地址 predyy/CVE-2026-34990
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-44011-poc
👤 项目作者: DENNISDGR
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:02:19

📝 项目描述:
Authenticated Craft CMS RCE PoC for CVE-2026-44011

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-28695
👤 项目作者: predyy
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 18:29:02

📝 项目描述:
CVE-2026-28695 PoC - Authenticated blind remote code execution in Craft CMS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: DENNISDGR
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 18:59:46

📝 项目描述:
LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability.

🔗 点击访问项目地址 GitHub - DENNISDGR/CVE-2026-34990-poc: Local privilege escalation PoC for CVE-2026-34990 using a CUPS root file write vulnerability.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Jenkins #CVE

📦 项目名称: jenkins-cve-2024-23897-lab
👤 项目作者: Alexandertanay
🛠 开发语言: PowerShell
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 14:59:31

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - Alexandertanay/jenkins-cve-2024-23897-lab
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Spring #CVE

📦 项目名称: springboot-config-server-external-properties-demo
👤 项目作者: kirankumarhm
🛠 开发语言: Java
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 15:01:28

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - kirankumarhm/springboot-config-server-external-properties-demo
 
 
Back to Top