📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Scanner

📦 项目名称: web-vulnerability-scanner
👤 项目作者: sharanya2676
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-31 16:01:45

📝 项目描述:
A full-stack web vulnerability scanner built with Python that detects SQL Injection, XSS, and open ports with a detailed dashboard.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Scanner #漏洞

📦 项目名称: web_scanner
👤 项目作者: zzzjiushi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-31 10:55:10

📝 项目描述:
一个轻量级模块化 Web 漏洞扫描器(DAST),实现了 SQL 注入,XSS,命令注入等诸多漏洞的 自动化检测,具备可扩展的插件化架构。

🔗 点击访问项目地址 zzzjiushi/web_scanner
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Attack

📦 项目名称: web-pentesting-portfolio1
👤 项目作者: manasa-6108
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 17:58:26

📝 项目描述:
Hands-on web application security testing portfolio demonstrating XSS and SQL injection exploitation using Burp Suite and real lab environments.

🔗 点击访问项目地址 GitHub - manasa-6108/web-pentesting-portfolio1: Hands-on web application security testing portfolio demonstrating XSS and SQL injection…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Attack

📦 项目名称: AuditGuard
👤 项目作者: chiragjaiswar0814
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 11:47:10

📝 项目描述:
A lightweight, pure-Python CLI tool for detecting web application attacks (SQLi, XSS, Path Traversal) by analyzing Nginx/Apache access logs.

🔗 点击访问项目地址 GitHub - chiragjaiswar0814/AuditGuard: A lightweight, pure-Python CLI tool for detecting web application attacks (SQLi, XSS, Path…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #漏洞

📦 项目名称: vuln-demo-xss
👤 项目作者: wangyu2378
🛠 开发语言: PHP
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 09:49:35

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Scanner

📦 项目名称: xss-char-probe
👤 项目作者: himanshu0017
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 07:47:54

📝 项目描述:
Burp Suite XSS special char probe extension

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Attack

📦 项目名称: -Group0-Ethical-Hacking-Labs
👤 项目作者: TechOunik
🛠 开发语言: C
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 06:41:05

📝 项目描述:
Comprehensive archive of offensive security lab exercises by Group 0. Features documented execution of network footprinting, vulnerability enumeration, Metasploit exploitation (vsftpd), web application hacking (SQLi/XSS), mobile APK reverse engineering, and network evasion simulations within an air-gapped QEMU/KVM environment.

🔗 点击访问项目地址 GitHub - TechOunik/-Group0-Ethical-Hacking-Labs: Comprehensive archive of offensive security lab exercises by Group 0. Features…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Scanner

📦 项目名称: reflekt
👤 项目作者: buggedout-1
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 05:31:56

📝 项目描述:
Reflekt is an intelligent reflected XSS vulnerability scanner that uses context-aware detection to minimize false positives. Unlike traditional scanners that blindly inject payloads, Reflekt first understands where your input lands in the response and then crafts minimal probes to verify actual exploitability.

🔗 点击访问项目地址 GitHub - buggedout-1/reflekt: Reflekt is an intelligent reflected XSS vulnerability scanner that uses context-aware detection to…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Scanner

📦 项目名称: advanced-xss-scanner
👤 项目作者: sapariya333-sys
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-30 04:59:07

📝 项目描述:
Python based XSS scanner for bug bounty testing

🔗 点击访问项目地址 GitHub - sapariya333-sys/advanced-xss-scanner: Python based XSS scanner for bug bounty testing
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload

📦 项目名称: XSS-Payloads
👤 项目作者: 1yz02
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-29 22:44:06

📝 项目描述:
无描述

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Scanner

📦 项目名称: Automated-Web-Application-Vulnerability-Scanner
👤 项目作者: Kitsonmorag
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-29 10:59:43

📝 项目描述:
Automated Web Application Vulnerability Scanner to detect common security issues like SQLi, XSS, and misconfigurations. It crawls targets, injects payloads, and analyzes responses to generate reports. Ideal for bug bounty hunters, developers, and penetration testers for fast, automated security testing.

🔗 点击访问项目地址 GitHub - Kitsonmorag/Automated-Web-Application-Vulnerability-Scanner: Automated Web Application Vulnerability Scanner to detect…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Attack

📦 项目名称: Aegis-WAF
👤 项目作者: maharshijd
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 1
📅 更新时间: 2026-03-29 09:56:40

📝 项目描述:
Aegis-WAF – A modular Web Application Firewall built with Python and Docker that detects and blocks common web attacks such as SQL Injection, XSS, and malicious payloads using rule-based filtering and real-time request analysis, designed for secure, scalable deployment in modern web environments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Attack

📦 项目名称: Web-Application-Security-Assessment-using-DVWA
👤 项目作者: 23h51a6262
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-29 08:02:23

📝 项目描述:
Performed vulnerability assessment on DVWA using Kali Linux and Metasploitable .Exploited SQL Injection, XSS, and Command Injection vulnerabilities. Conducted network scanning using Nmap and web scanning using Nikto. Demonstrated privilege escalation and data extraction techniques .

🔗 点击访问项目地址 GitHub - 23h51a6262/Web-Application-Security-Assessment-using-DVWA: Performed vulnerability assessment on DVWA using Kali Linux…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Scanner #Attack

📦 项目名称: wshawk
👤 项目作者: regaan
🛠 开发语言: Python
Star数量: 5 | 🍴 Fork数量: 1
📅 更新时间: 2026-03-28 17:53:59

📝 项目描述:
Open source toolkit for WebSocket security testing, web application penetration testing, and stateful attack validation. It combines a CLI scanner, web dashboard, Electron desktop app, browser companion, and project-backed workflows for authorized security assessments.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload

📦 项目名称: CrudePayloadGuard
👤 项目作者: Gorstak-Zadar
🛠 开发语言: PowerShell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-28 14:58:41

📝 项目描述:
Infinite loop: reverse-DNS on established TCP; if hostname contains "xss" toggles all NICs and blocks IP-heuristic, disruptive.

🔗 点击访问项目地址 GitHub - Gorstak-Zadar/CrudePayloadGuard: Infinite loop: reverse-DNS on established TCP; if hostname contains
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Attack

📦 项目名称: cybersim6
👤 项目作者: omarbabba779xx
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-27 23:55:36

📝 项目描述:
🛡️ Academic Cybersecurity Simulation Platform — 6 attack modules (DDoS, SQLi, BruteForce, XSS, Phishing, Ransomware) with real-time dashboard, MITRE ATT&CK mapping & 7-layer safety framework | EMSI Tanger 4IIR

🔗 点击访问项目地址 GitHub - omarbabba779xx/cybersim6: 🛡️ Academic Cybersecurity Simulation Platform — 6 attack modules (DDoS, SQLi, BruteForce, XSS…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Attack

📦 项目名称: bug-bounty-writeups
👤 项目作者: fatim-ezzahra12
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-27 10:02:29

📝 项目描述:
Bug bounty writeups and web security research (XSS, IDOR, Recon)

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload

📦 项目名称: pentest-labs-kali-metasploitable-dvwa
👤 项目作者: lehidavet
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 22:01:10

📝 项目描述:
Labs práticos de pentest com Kali Linux, Metasploitable 2 e DVWA — cobrindo Nmap, SQL Injection e XSS em ambiente controlado.

🔗 点击访问项目地址 GitHub - lehidavet/pentest-labs-kali-metasploitable-dvwa
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Payload #Scanner

📦 项目名称: kovar
👤 项目作者: Orla-Labs
🛠 开发语言: TypeScript
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:59:09

📝 项目描述:
Security assertions + AI test recording for Playwright

🔗 点击访问项目地址 GitHub - Orla-Labs/kovar: Security assertions + AI test   recording for Playwright
🚨 GitHub 监控消息提醒

🚨 发现关键词: #XSS #Attack

📦 项目名称: jaga
👤 项目作者: dgknbtl
🛠 开发语言: TypeScript
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-03-26 17:00:27

📝 项目描述:
The ultimate ultra-lightweight, context-aware security engine for HTML templates. Zero-dependency XSS protection for modern web apps.

🔗 点击访问项目地址 GitHub - dgknbtl/jaga: The ultimate ultra-lightweight, context-aware security engine for HTML templates. Zero-dependency XSS protection…
 
 
Back to Top