GitHub 红队武器库🚨
📦 GitHub 全球红队渗透资源中转站。 旨在收录那些“好用却难找”的安全项目。 🔗 定时推送:GitHub Trending (Security) 🛠 必备清单:后渗透、远控、免杀、提权工具集 📅 更新频率:每日精选,绝不灌水。 ⚠️ 本频道仅供安全研究与授权测试使用。
Show more📈 Analytical overview of Telegram channel GitHub 红队武器库🚨
Channel GitHub 红队武器库🚨 (@githubredteam) in the Chinese language segment is an active participant. Currently, the community unites 13 014 subscribers, ranking 9 775 in the Technologies & Applications category and 16 424 in the China region.
📊 Audience metrics and dynamics
Since its creation on невідомо, the project has demonstrated rapid growth, gathering an audience of 13 014 subscribers.
According to the latest data from 24 June, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 285 over the last 30 days and by 18 over the last 24 hours, overall reach remains high.
- Verification status: Not verified
- Engagement rate (ER): The average audience engagement rate is 0.26%. Within the first 24 hours after publication, content typically collects 0.24% reactions from the total number of subscribers.
- Post reach: On average, each post receives 34 views. Within the first day, a publication typically gains 31 views.
- Reactions and interaction: The audience actively supports content: the average number of reactions per post is 1.
- Thematic interests: Content is focused on key topics such as github, fork, 异性spa, cve-2026, vme.
📝 Description and content policy
The author describes the resource as a platform for expressing subjective opinions:
“📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。”
Thanks to the high frequency of updates (latest data received on 25 June, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.
This security task evaluated client-side flaws in DVWA (v1.0.7) across Low, Medium, and High levels. It systematically proved vulnerabilities like Reflected/Stored XSS, cookie theft, keylogging, and CSRF password changes. It maps out critical hardening via encoding, secure cookie flags, CSP, and anti-CSRF tokens
🔗 点击访问项目地址A curated list of awesome YARA rules, tools, and people.
🔗 点击访问项目地址End‑to‑end Metasploitable2 vulnerability assessment covering reconnaissance, exploitation (vsftpd backdoor, distcc RCE, Samba CVE‑2007‑2447), reverse‑shell handling, and Wireshark traffic analysis. Includes SOC‑style documentation, evidence, and mitigation recommendations.
🔗 点击访问项目地址OS command injection in COMFAST CF-WR631AX V3 router (firmware V2.7.0.8) via the `destination` parameter of the ping_config API endpoint in /usr/bin/webmgnt, leading to remote code execution as root.
🔗 点击访问项目地址无描述
🔗 点击访问项目地址Vengeance Bot is a next-generation, modular command-and-control (C2) framework designed for authorized penetration testing, controlled social engineering exercises, and adversarial simulation across modern communication ecosystems. Built for ethical hackers, red team operators, cybersecurity students, and certified defenders, Vengeance Bot bridges
🔗 点击访问项目地址IOC checker for the TanStack/Mini Shai-Hulud npm supply chain attack (CVE-2026-45321)
🔗 点击访问项目地址DbGate Unauthenticated Remote Code Execution
🔗 点击访问项目地址🎯 XSS漏洞演示靶场 - 交互式XSS攻击演示平台,包含钓鱼攻击、Cookie窃取演示,适合安全教育教学
🔗 点击访问项目地址Automatic generation of YARA rules from sample files.
🔗 点击访问项目地址
Available now! Telegram Research 2025 — the year's key insights 
