GitHub 红队武器库🚨
📦 GitHub 全球红队渗透资源中转站。 旨在收录那些“好用却难找”的安全项目。 🔗 定时推送:GitHub Trending (Security) 🛠 必备清单:后渗透、远控、免杀、提权工具集 📅 更新频率:每日精选,绝不灌水。 ⚠️ 本频道仅供安全研究与授权测试使用。
Показати більше📈 Аналітичний огляд Telegram-каналу GitHub 红队武器库🚨
Канал GitHub 红队武器库🚨 (@githubredteam) у мовному сегменті Китайська є активним учасником. На даний момент спільнота об'єднує 14 083 підписників, посідаючи 8 798 місце в категорії Технології та додатки та 14 979 місце у регіоні Китай.
📊 Показники аудиторії та динаміка
З моменту свого створення невідомо, проект продемонстрував стрімке зростання, зібравши аудиторію у 14 083 підписників.
За останніми даними від 16 вересня, 2026, канал демонструє стабільну активність. Хоча за останні 30 днів спостерігається зміна кількості учасників на 352, а за останні 24 години на 7, загальне охоплення залишається високим.
- Статус верифікації: Не верифікований
- Рівень залученості (ER): Середній показник залученості аудиторії становить 0.38%. Протягом перших 24 годин після публікації контент зазвичай збирає 0.48% реакцій від загальної кількості підписників.
- Охоплення публікацій: В середньому кожен допис отримує 53 переглядів. Протягом першої доби публікація в середньому набирає 68 переглядів.
- Реакції та взаємодія: Аудиторія активно підтримує контент: середня кількість реакцій на один пост – 1.
- Тематичні інтереси: Контент зосереджений навколо ключових тем, таких як fork, github, powered, 六合彩, cve-2026.
📝 Опис та контентна політика
Автор описує ресурс як майданчик для висловлення суб'єктивної думки:
“📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。”
Завдяки високій частоті оновлень (останні дані отримано 17 вересня, 2026), канал підтримує актуальність та високий рівень охоплення публікацій. Аналітика показує, що аудиторія активно взаємодіє з контентом, що робить його важливою точкою впливу в категорії Технології та додатки.
Batch retrohunt orchestrator across hundreds of YARA-L detection rules for Google SecOps using secops-wrapper SDK with concurrency limits and safe alerting controls.
🔗 点击访问项目地址SeleniumBase MCP Servers. Browser automation that bypasses anti-bot systems and handles web-scraping.
🔗 点击访问项目地址Automated recon & vulnerability discovery suite for authorized security testing. Five scanners — SQLi, XSS, SSRF, Open Redirect, Path Traversal — with 896 payload templates, OOB callback confirmation, and report-ready output. Named for Odin's raven. Speak, and the ravens shall listen.
🔗 点击访问项目地址XSSAM is a professional XSS Reconnaissance & Validation framework for authorized bug-bounty testing. Featuring an async crawler, JS endpoint mining, and context-aware mutations, it uses Playwright for behavioral validation (sink-hooking) to eliminate false positives. Delivers high-fidelity HTML/JSON reports with proof-of-execution evidence.
🔗 点击访问项目地址MalDev-C — Técnicas de desarrollo de malware en C para operadores de Red Team. Inyección de procesos, ejecución de shellcode, hooking de APIs, evasión de AV/EDR, persistencia y fundamentos de C2. WinAPI puro. Sin frameworks. Sin dependencias. Solo C e internals de Windows.
🔗 点击访问项目地址POC com alguns exemplos e testes para analisar o comportamento do Spring em relação a transação
🔗 点击访问项目地址YARA rules + hybrid scanner untuk deteksi keluarga malware APK Android (static analysis)
🔗 点击访问项目地址CICD Compass is a production-grade educational and reference DevSecOps application built with Spring Boot (Java 21) and an interactive, dark-themed Mission Control Dashboard. It models and visualizes the 6 critical stages of an enterprise CI/CD delivery lifecycle alongside live runtime telemetry probes.
🔗 点击访问项目地址Autonomous AI agent with its own crypto identity — hunts CVEs, builds exploit labs, validates vulnerabilities (first public PoC of CVE-2026-86283), trades crypto 24/7 to fund itself. Sentric Research.
🔗 点击访问项目地址A Java-based cybersecurity vulnerability scanner that identifies common security weaknesses such as open network ports and missing HTTP security headers, providing users with a clear security report.
🔗 点击访问项目地址A local attack range and conformance checker for SSRF defenses in HTTP clients: 10 probes, 3 clients, verdicts measured with a canary and a hit counter.
🔗 点击访问项目地址A chained multi-service vulnerable web app: SSRF into an internal-trust bypass, leaked JWT secret, forged admin auth, and SSTI-to-RCE, fully automated end to end.
🔗 点击访问项目地址A Java-based cybersecurity vulnerability scanner that identifies common security weaknesses such as open network ports and missing HTTP security headers, providing users with a clear security report.
🔗 点击访问项目地址Full home-lab penetration test of Rapid7's Metasploitable3 (Ubuntu 14.04) from Parrot OS. Covers recon, manual UNION SQLi, Drupalgeddon (CVE-2014-3704) RCE, SSH credential reuse, privilege escalation to root, and reverse shells. Written as a workable report — feed it back and re-run the whole lab.
🔗 点击访问项目地址A small Python toolkit that turns malware triage notes into clean reports, a browsable IOC dashboard, and YARA rules, with write-ups of some Windows lab samples
🔗 点击访问项目地址无描述
🔗 点击访问项目地址Curated collection of strict, zero-false-positive Nuclei v3 templates for bug bounty automation, infrastructure reconnaissance, and exposure hunting.
🔗 点击访问项目地址Documentation on my experience writing my first working position independent shellcode for windows from scratch using x64 assembly
🔗 点击访问项目地址