Repositories · organized/repo_cards

仓库/Skill 库

23 个 · 安全与风险 · 快速增长

排序 Stars 周增
Hack-with-Github/Awesome-Hacking
未知语言 · 2026-07-26 安全与风险 收藏榜 生产可用 Stars 117958 周增 +238

面向黑客、渗透测试工程师和安全研究人员的各类精选清单合集A collection of various awesome lists for hackers, pentesters and security researchers

risk
openai/codex-security
TypeScript · 2026-08-11 安全与风险 工具 生产可用 Stars 9534 周增 +273

OpenAI 的 Codex Security CLI 与 TypeScript SDK,用于发现、验证和修复安全漏洞。npm: https://www.npmjs.com/package/@openai/codex-securityOpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm: https://www.npmjs.com/package/@openai/codex-security

risk
zhaoxuya520/reverse-skill
PowerShell · 2026-07-10 安全与风险 生产可用 Stars 7992 周增 +952

Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端

risk
unicity-astrid/book
Perl · 2026-07-09 安全与风险 模型 生产可用 Stars 7528 周增 +0

Astrid OS 的权威参考:内核、capsules、host ABI、总线与安全模型。The canonical reference for Astrid OS: kernel, capsules, host ABI, the bus, and the security model. Part of Unicity Astrid OS.

risk
zhishile/codex-auth-helper
CSS · 2026-06-07 安全与风险 应用 研究原型 Stars 5314 周增 +686

Codex登陆助手:安全地在本地导出您的已登录 ChatGPT 会话配置,生成符合 Codex 规范的 auth.json 本地备份文件。

MDX-Tom/gpt-5.6-instruct
Python · 2026-08-06 安全与风险 工具 研究原型 Stars 5251 周增 +273

A Codex jailbreak prompt and test pack for gpt-5.6-sol. 针对 gpt-5.6 系列的 Codex 破甲提示词与测试包。

risk
perplexityai/bumblebee
Go · 2026-07-16 安全与风险 工具 研究原型 Stars 4810 周增 +28

用于检查磁盘上 package、extension 与开发者工具元数据暴露面的只读开发者端点扫描器,旨在排查已知的软件供应链攻击。Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software supply-chain compromises.

risk
bikini/exploitarium
Python · 2026-07-15 安全与风险 收藏榜 研究原型 Stars 4196 周增 +35

收录公开漏洞利用 PoC 与漏洞研究技术报告的单一归档库。本人在发布时这些内容尚未被披露,欢迎自行上报并领取 CVE 编号(若获分配,权当一乐)。请勿滥用。我做这件事是为了吸引更多人进入这一领域,并且一直认为这是最高效的方式。A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if handed out lulz. Please do not abuse these. I do this so to allure people into the field, and I've always found this is the most efficient way.

V0id-v2/Void-Tools-v2.0
Python · 2026-06-20 安全与风险 工具 研究原型 Stars 4162 周增 +147

Python 终端多功能工具——OSINT、Discord、Web 与网络工具集。Rich TUI,13 种主题,支持远程更新。仅供学习使用。Python terminal multitool — OSINT, Discord, web & network utilities. Rich TUI, 13 themes, remote updates. Educational use only.

mekos2772/ios-location-spoofer
JavaScript · 2026-07-20 安全与风险 应用 研究原型 Stars 2995 周增 +294

独立 iOS 应用,可在无需越狱的情况下模拟 GPS 定位。包含 Shadowrocket/Surge/Loon/QX/Stash 模块。Standalone iOS app to spoof GPS location without jailbreak. Includes Shadowrocket/Surge/Loon/QX/Stash module.

risk
guillaumemeyer/watermarks-remover
Python · 2026-08-12 安全与风险 工具 实验 Stars 1376 周增 +0

剥离多厂商 AI 来源标记:Unicode 文本卫生、统计改写钩子,以及 PNG/JPEG/SVG/PDF/DOCX/HTML/MD 中的 C2PA 与元数据。Strip multi-vendor AI provenance marks: Unicode text hygiene, statistical rewrite hooks, and C2PA/metadata from PNG/JPEG/SVG/PDF/DOCX/HTML/MD

agent
anasu1/text-humanizer
Python · 2026-07-30 安全与风险 工具 实验 Stars 792 周增 +0

text-humanizer 是一个开源项目,旨在将 AI 生成的文本转换为"humanized"版本。可绕过大多数 AI 检测器,如 Turnitin 或 GPTZero。text-humanizer is an open-source project designed to convert text generated by AI to its "humanized" version. Bypasses the most of AI detectors such as Turnitin or GPTZero

0xwilliamortiz/claude-red
JavaScript · 2026-08-09 安全与风险 研究原型 Stars 712 周增 +161

claude-red 是一个面向 Claude skills 系统策划的攻击性安全 skills 库。每个 skill 是一个结构化的 SKILL.md 文件,为 Claude 提供针对特定攻击面的专家级方法论,涵盖从 SQLi 到 shellcode、EDR 规避到漏洞利用开发。claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md file that primes Claude with expert-level methodology for a specific attack surface — from SQLi to shellcode, EDR evasion to exploit development.

databaserisk
zyrexdz/cyberleek-leak-research
未知语言 · 2026-08-20 安全与风险 工具 实验 Stars 318 周增 +0

全面解析 2026 年 8 月 GTA 6 玩法泄露事件:技术核查、暗网溯源、地图细节与诈骗警示Full breakdown of the August 2026 GTA 6 gameplay leaks, technical checks, dark web trail, map details, and scam warning.

multimodal
soloists25wipe/Roblox-Pack-Executor-2026
未知语言 · 2026-08-17 安全与风险 工具 实验 Stars 299 周增 +0

XCutors——面向 Windows 桌面的综合性 Roblox 执行器与脚本加载器合集XCutors – A comprehensive Roblox executor and script loader collection for Windows desktops.

CharlesHoskinson/anthropies
TypeScript · 2026-08-22 安全与风险 工具 实验 Stars 170 周增 +0

还原你已拥有工作中被改写的原始标题。剥离 Anthropic 分配给你的 Outputs 中附加的供应商标识。Restore clean title in work you already own. Strip vendor marks from Outputs Anthropic assigned to you.

bezumiya/GoLiveBypass
TypeScript · 2026-08-22 安全与风险 工具 实验 Stars 130 周增 +133

GoLiveBypass — Equicord/Vencord 插件,通过在非巴西代理(Tor 或经过测试的免费代理)后启动会话来恢复巴西 Discord 用户的 Go Live 与摄像头功能。隐私与反审查工具。GoLiveBypass — Equicord/Vencord plugin that restores Go Live & camera for Brazilian Discord users by booting the session behind a non-BR proxy (Tor or tested free proxy). Privacy and anti-censorship tool.

patterniha/Free-Configs
Python · 2026-08-23 安全与风险 数据集 实验 Stars 82 周增 +0
nick-kumar-ops1992p6/Warhounds-Trainer-2026
未知语言 · 2026-08-18 安全与风险 工具 实验 Stars 70 周增 +0

免费 Warhounds Trainer,支持大量 cfg 文件。自动更新,无需密钥系统。2026 年可用。Free Warhounds Trainer with support for many cfg files. Auto-updates, no key system. Works in 2026.

parching780883macadam/Roblox-Script-Executor-2026
未知语言 · 2026-08-21 安全与风险 工具 实验 Stars 68 周增 -5

XCutors – 一套完整的 Windows 桌面工具集合,配合我们的通用加载器运行自定义 Roblox 脚本。XCutors – A complete Windows desktop collection for running custom Roblox scripts with our universal loader.

savagemint7/Tonkeeper-Fake-Balance
Python · 2026-08-19 安全与风险 工具 实验 Stars 64 周增 +0

Tonkeeper Fake Balance —— TON 钱包余额伪造工具,支持 Tonkeeper 移动端与桌面端的实时浮层覆盖、自定义 TON 与 Jetton 余额注入、交易记录伪造以及截图安全的持久化显示。Tonkeeper Fake Balance — TON wallet balance spoofing tool with real-time overlay for Tonkeeper mobile & desktop, custom TON & Jetton balance injection, transaction history forging, and screenshot-safe persistent display

unclecode/modelprint
JavaScript · 2026-08-23 安全与风险 工具 实验 Stars 57 周增 +0

那条 API 背后究竟是谁?在浏览器中对任何 OpenAI 兼容端点进行指纹识别:9 项基础设施探针、并列对比、社区可扩展。Who is really behind that API? Fingerprint any OpenAI-compatible endpoint in the browser: 9 infrastructure probes, side-by-side comparison, community-extensible.

llm-infra
ruggedraccoon/Electrum-Fake-Balance
Python · 2026-08-13 安全与风险 工具 实验 Stars 53 周增 +0

Electrum Fake —— 针对 Electrum 桌面客户端的比特币钱包余额伪造工具,具备实时叠加层、自定义 BTC 余额注入、交易历史伪造以及截图安全的持久化显示渲染。Electrum Fake — Bitcoin wallet balance spoofing tool with real-time overlay for Electrum desktop client, custom BTC balance injection, transaction history forging, and screenshot-safe persistent display rendering