​📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
​⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #Exploit

📦 项目名称: CVE-2026-34990-CUPS-LPE-PoC
👤 项目作者: Noorkhalel
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 03:41:50

📝 项目描述:
Generic PoC for CVE-2026-34990 - CUPS 2.4.16 Local Privilege Escalation via Local token disclosure and arbitrary root file overwrite.

🔗 点击访问项目地址 GitHub - Noorkhalel/CVE-2026-34990-CUPS-LPE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: bara-almustafa
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 02:45:50

📝 项目描述:
CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation

🔗 点击访问项目地址 GitHub - bara-almustafa/CVE-2026-34990-poc: CVE-2026-34990 — CUPS <= 2.4.16 Local Privilege Escalation
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC

📦 项目名称: swagger-ui-xss-poc
👤 项目作者: ekkkamaru
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 01:42:07

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #POC #CVE

📦 项目名称: CVE-PoC
👤 项目作者: vvsy46
🛠 开发语言: C
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-28 00:59:18

📝 项目描述:
无描述

🔗 点击访问项目地址 GitHub - vvsy46/CVE-PoC
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-44011-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:11:07

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-44011-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-71963-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:32:00

📝 项目描述:
CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (core.fsmonitor). Stdlib-only Python, verified on real 0.21.0 with a clean negative control on the fixed build.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-71963-PoC: CVE-2026-71963 - Hermes Agent 0.18.2-0.21.0 RCE via a repository-delivered .git/config (…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-88008-PoC
👤 项目作者: Boreas37
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 22:58:43

📝 项目描述:
CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels past routers and middleware (BasicAuth/ForwardAuth/IPAllowList), unauthorised access + no access logging. Stdlib-only Python PoC + real Jetty h2c lab, verified on v3.7.12 vs v3.7.13.

🔗 点击访问项目地址 GitHub - Boreas37/CVE-2026-88008-PoC: CVE-2026-88008 - Traefik (<=2.11.56 / <=3.7.12): a client-controlled h2c upgrade tunnels…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: khush-613
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:39:50

📝 项目描述:
无描述

🔗 点击访问项目地址 khush-613/CVE-2026-34990-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-88772
👤 项目作者: murrez
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 21:06:31

📝 项目描述:
CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints Gateway, build vs 14.1-73.37 / 13.1-64.23, UDP/443 DTLS probe. CTX697096; active exploitation reported. https://pocbit.org/pocs/cve-2026-88772

🔗 点击访问项目地址 GitHub - murrez/CVE-2026-88772: CVE-2026-88772 PoC: Citrix NetScaler ADC/Gateway DTLS memory overflow (RCE/DoS, CVSS 9.5). Fingerprints…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC #RCE

📦 项目名称: CVE-2026-44011-craft-rce-poc
👤 项目作者: Cyberuser-hash
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 20:41:26

📝 项目描述:
CVE-2026-44011-craft-rce-poc

🔗 点击访问项目地址 GitHub - Cyberuser-hash/CVE-2026-44011-craft-rce-poc: CVE-2026-44011-craft-rce-poc
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: helpdeskz-file-upload-poc
👤 项目作者: Hussien-Alzaghateet
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:36:36

📝 项目描述:
Unauthenticated file upload to RCE in HelpDeskZ <= 1.0.2

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990
👤 项目作者: predyy
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:49:19

📝 项目描述:
CVE-2026-34990 minimal PoC. CUPS <= 2.4.16 local privesc.

🔗 点击访问项目地址 predyy/CVE-2026-34990
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #CVE #POC

📦 项目名称: CVE-2026-44011-poc
👤 项目作者: DENNISDGR
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 19:02:19

📝 项目描述:
Authenticated Craft CMS RCE PoC for CVE-2026-44011

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-28695
👤 项目作者: predyy
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 18:29:02

📝 项目描述:
CVE-2026-28695 PoC - Authenticated blind remote code execution in Craft CMS.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-34990-poc
👤 项目作者: DENNISDGR
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 18:59:46

📝 项目描述:
LPE PoC for CVE-2026-34990 using a CUPS root file write vulnerability.

🔗 点击访问项目地址 GitHub - DENNISDGR/CVE-2026-34990-poc: Local privilege escalation PoC for CVE-2026-34990 using a CUPS root file write vulnerability.
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #POC #Stored #Reflected

📦 项目名称: owasp-web-application-vulnerability-assessment
👤 项目作者: DarshanSuresh
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 17:40:15

📝 项目描述:
Conducted an authorized OWASP web application vulnerability assessment against an intentionally vulnerable sandbox application. Tested SQL Injection, Reflected and Stored XSS, and BOLA/IDOR vulnerabilities, documented PoC evidence, analyzed security impact and root causes, and provided defensive remediation code and retesting recommendations.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #SSRF #POC

📦 项目名称: openwiki-ssrf-poc
👤 项目作者: tphilll
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 16:25:33

📝 项目描述:
Demo project wiki source

🔗 点击访问项目地址 GitHub - tphilll/openwiki-ssrf-poc: Demo project wiki source
🚨 GitHub 监控消息提醒

🚨 发现关键词: #RCE #POC

📦 项目名称: chainlink-ci-poc
👤 项目作者: Salty43
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-09-27 14:43:12

📝 项目描述:
Proof of concept for a GitHub Actions script-injection RCE in smartcontractkit/chainlink's CI (golangci-lint composite action)

🔗 点击访问项目地址 GitHub - Salty43/chainlink-ci-poc: Proof of concept for a GitHub Actions script-injection RCE in smartcontractkit/chainlink's CI…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #CVE-2026 #POC

📦 项目名称: CVE-2026-43805-PoC
👤 项目作者: tls456
🛠 开发语言: C++
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 14:48:00

📝 项目描述:
CVE-2026-43805 IOKit IODMACommand race analysis and proof of concept

🔗 点击访问项目地址 GitHub - tls456/CVE-2026-43805-PoC: CVE-2026-43805 IOKit IODMACommand race analysis and proof of concept
🚨 GitHub 监控消息提醒

🚨 发现关键词: #漏洞 #POC #复现

📦 项目名称: osint-monitoring-platform
👤 项目作者: drusillawilson4341-beep
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-09-27 13:35:59

📝 项目描述:
OSINT 监控平台:多源公告推送 / Telegram 对话桥接 / 工具供应与 MCP / MITM 漏洞日报

🔗 点击访问项目地址 GitHub - drusillawilson4341-beep/osint-monitoring-platform: OSINT 监控平台:多源公告推送 / Telegram 对话桥接 / 工具供应与 MCP / MITM 漏洞日报
 
 
Back to Top