📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: secMONSTER
👤 项目作者: sylhetyhackvenger
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:33:16
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: secMONSTER
👤 项目作者: sylhetyhackvenger
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-06 16:33:16
📝 项目描述:
secMONSTER performs 150+ security tests including XSS, SQLi, RCE, SSRF, LFI, SSTI, XXE, NoSQL, CMDi, CRLF, open redirect, JWT attacks, OAuth/SAML bypass, cloud metadata (AWS/GCP/Azure), container escape, Kubernetes, WebSocket, HTTP/2, DNS rebinding, QUIC, API/GraphQL, AI prompt injection, Web3/DeFi, and comprehensive vulnerability exploitation🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: CVE-2026-11112-XXE-via-SVG-Image-Upload
👤 项目作者: George0Papasotiriou
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 00:17:08
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: CVE-2026-11112-XXE-via-SVG-Image-Upload
👤 项目作者: George0Papasotiriou
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-04 00:17:08
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-security
👤 项目作者: 2007-ygp
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-17 07:48:39
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-security
👤 项目作者: 2007-ygp
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-17 07:48:39
📝 项目描述:
XXE漏洞安全专项 - XML外部实体注入检测与修复🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: apache-ant-1-10-9-NV-000457
👤 项目作者: akashgit
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-10 18:12:00
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: apache-ant-1-10-9-NV-000457
👤 项目作者: akashgit
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-10 18:12:00
📝 项目描述:
CVE patch: CWE-611 XXE in com.github.hazendaz.ant:apache-ant:1.10.9 (NV-000457)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: apache-ant-1-10-9-NV-000457-v2
👤 项目作者: akashgit
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-10 18:12:21
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: apache-ant-1-10-9-NV-000457-v2
👤 项目作者: akashgit
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-10 18:12:21
📝 项目描述:
CVE patch: CWE-611 XXE in apache-ant:1.10.9 (NV-000457)🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: CVE-2025-49493
👤 项目作者: SystemVll
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-23 21:20:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: CVE-2025-49493
👤 项目作者: SystemVll
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-23 21:20:40
📝 项目描述:
This is a Python-based exploit for CVE-2025-49493, which affects Akamai CloudTest versions before 60 2025.06.02 (12988). The vulnerability allows for XML External Entity (XXE) injection through the SOAP service endpoint.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #POC
📦 项目名称: copybara-xxe-poc
👤 项目作者: oduoke567
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-22 22:54:22
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #POC
📦 项目名称: copybara-xxe-poc
👤 项目作者: oduoke567
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-22 22:54:22
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #POC
📦 项目名称: owasp-juice-shop-pentest
👤 项目作者: amenifayech2
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-18 18:50:11
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #POC
📦 项目名称: owasp-juice-shop-pentest
👤 项目作者: amenifayech2
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-18 18:50:11
📝 项目描述:
Web application penetration test on OWASP Juice Shop — 20 vulnerabilities found (5 Critical) including SQLi, XSS, IDOR, XXE & more. Full professional report with PoC exploits.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #EXP #CVE
📦 项目名称: Web-Application-Enumeration-Script
👤 项目作者: Mr-Whiskerss
🛠 开发语言: Python
⭐ Star数量: 6 | 🍴 Fork数量: 2
📅 更新时间: 2026-06-11 09:30:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #EXP #CVE
📦 项目名称: Web-Application-Enumeration-Script
👤 项目作者: Mr-Whiskerss
🛠 开发语言: Python
⭐ Star数量: 6 | 🍴 Fork数量: 2
📅 更新时间: 2026-06-11 09:30:40
📝 项目描述:
Comprehensive web application recon & vulnerability enumeration framework. Glues together nuclei/katana/ffuf/nmap and adds first-party checks (SQLi, XSS, request smuggling, JWT, SSRF/SSTI/XXE, CSP, API-schema mining, and more). Resumable, scope-aware, auth-aware.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-vul-lab
👤 项目作者: olist213
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-07 12:06:26
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-vul-lab
👤 项目作者: olist213
🛠 开发语言: HTML
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-07 12:06:26
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #CVE
📦 项目名称: cosmicsting-cve-2024-34102-exploit
👤 项目作者: russellwork2021-lgtm
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-25 17:23:07
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #CVE
📦 项目名称: cosmicsting-cve-2024-34102-exploit
👤 项目作者: russellwork2021-lgtm
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-25 17:23:07
📝 项目描述:
Complete CosmicSting (CVE-2024-34102) exploit suite for Magento/Adobe Commerce XXE vulnerability🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-scanner
👤 项目作者: kobe2778-2778
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-21 01:31:03
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE #漏洞
📦 项目名称: xxe-scanner
👤 项目作者: kobe2778-2778
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-21 01:31:03
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE
📦 项目名称: xxero
👤 项目作者: xero-search
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-20 01:17:48
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE
📦 项目名称: xxero
👤 项目作者: xero-search
🛠 开发语言: JavaScript
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-20 01:17:48
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE
📦 项目名称: xxewe
👤 项目作者: ivanmhaunke
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-19 12:58:29
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE
📦 项目名称: xxewe
👤 项目作者: ivanmhaunke
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-19 12:58:29
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE
📦 项目名称: XML-XXE-DDosAttackWithStateMachine
👤 项目作者: Suxfian
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-18 14:54:45
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE
📦 项目名称: XML-XXE-DDosAttackWithStateMachine
👤 项目作者: Suxfian
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-18 14:54:45
📝 项目描述:
A state-machine-driven simulation environment for distributed XML Bomb and XXE attacks.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE
📦 项目名称: Kolay-Seviye-xxe-Lab
👤 项目作者: Patronibo
🛠 开发语言: CSS
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-15 16:31:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE
📦 项目名称: Kolay-Seviye-xxe-Lab
👤 项目作者: Patronibo
🛠 开发语言: CSS
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-15 16:31:27
📝 项目描述:
无描述🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #XXE
📦 项目名称: CVE-2026-20224---XXE-Injection-en-Cisco-Catalyst-SD-WAN-Manager
👤 项目作者: fevar54
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-15 16:01:02
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #XXE
📦 项目名称: CVE-2026-20224---XXE-Injection-en-Cisco-Catalyst-SD-WAN-Manager
👤 项目作者: fevar54
🛠 开发语言: None
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-15 16:01:02
📝 项目描述:
permite a un atacante remoto no autenticado leer archivos arbitrarios del sistema afectado mediante una inyección de XML External Entity (XXE) 🔗 点击访问项目地址