momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 4736 条情报 漏洞监控 2956 / 网安开源项目 1546 / 威胁情报 234

漏洞监控

来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。

2956总量

网安开源项目

优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。

1546总量

威胁情报

来自 360、奇安信、斗象等官方站点的公开情报聚合。

234总量
kaleth4/CVE-2026-20180
SKY-lv/security-testing-agent
安全测试Agent - 漏洞扫描/渗透测试/代码审计 | stars: 0 | forks: 0 | updated 2026-04-08T00:08:09Z | pushed 2026-04-08T00:08:04Z
TeamPCP Supply Chain Campaign: Update 002 - Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, (Fri, Mar 27th)
This is the second update to the TeamPCP supply chain campaign threat intelligence report, "When the Security Scanner Became the Weapon" (v3.0, March 25, 2026). Update 001 covered developments through March 26. This upda...
0xBlackash/CVE-2026-25049
CVE-2026-25049
nraintd/kali-mcp
Kali-MCP 是一个基于 Go 的 Kali MCP 服务器,可让 AI 客户端通过 STDIO、SSE 或 Streamable HTTP 调用常见渗透测试工具或在 kali 上执行命令。 | language: Go | stars: 1 | forks: 0 | updated 2026-04-06T11:18:24Z | pushed 2026-04-06T11:18:21Z
每周高级威胁情报解读(2026.03.20~03.26)
MuddyWater 针对美以加战略目标的网络间谍活动;StoatWaffle:朝鲜WaterPlum组织使用的模块化Node.js恶意软件;APT-C-13(沙虫)RDP后门攻击活动;Coruna:三角测量行动中使用的框架
ASP.NET Core Elevation of Privilege Vulnerability
JXJZJWHCM/WuRen-CTF
玄坤信安科技有限公司开发的雾刃-AI自动化渗透测试平台(CTF特别版)(商业正式版) | stars: 1 | forks: 0 | updated 2026-04-06T09:28:47Z | pushed 2026-04-06T09:11:01Z
ISC Stormcast For Friday, March 27th, 2026 https://isc.sans.edu/podcastdetail/9868, (Fri, Mar 27th)
wa6n3r/CVE-2026-35616
language: Python
fishke22/Stealth-Core
Chimera 滲透測試框架 - 基於 gRPC 的模組化安全工具協調平台 | language: Go | stars: 0 | forks: 0 | updated 2026-04-08T14:55:00Z | pushed 2026-04-08T14:54:54Z
OpenClaw 近期安全漏洞修复汇总报告
近日,腾讯安全科恩实验室针对热门开源 AI 智能体框架 OpenClaw 的安全性进行了专项分析。
FOLKS-iwd/CVE-2026-2600-POC
CVE-2026-2600 PoC - ElementsKit Elementor Addons <= 3.7.9 Stored XSS (Contributor+) | language: Python
bbyybb/vulnscan
一款整合型漏洞扫描工具,将 Web DAST、代码 SAST 和 SCA 能力集成于统一界面中。An integrated vulnerability scanning tool that combines Web DAST, Code SAST, and SCA capabilities into a single unified interface. | language: Python | stars: 5 | forks: 0 ...
又一个开发工具沦陷,Apifox遭供应链投毒攻击
近期,Apifox遭遇供应链投毒攻击,攻击者篡改了Apifox官方CDN上的动态JS文件,在大量开发者电脑上植入隐蔽后门,最终可实现凭证窃取和远程命令执行等恶意功能。此次攻击影响公网SaaS版桌面客户端(Electron 框架),Web版和私有化部署版不受影响。
PegasusMetaSec/PEGASUS-CVE-2026-4484
3682699784/tPmecIBzCO
【Python计算机毕业设计分享】基于Python的漏洞扫描系统,MySQL Python开发 毕业设计 实战项目【附源码、文档报告、代码讲解】 | stars: 0 | forks: 0 | updated 2026-04-05T13:19:08Z | pushed 2026-04-05T13:19:04Z
TeamPCP Supply Chain Campaign: Update 001 - Checkmarx Scope Wider Than Reported, CISA KEV Entry, and Detection Tools Available, (Thu, Mar 26th)
This is the first update to the TeamPCP supply chain campaign threat intelligence report, "When the Security Scanner Became the Weapon" (v3.0, March 25, 2026). That report covers the full campaign from the February 28 in...
PegasusMetaSec/PEGASUS-CVE-2026-2754
Yuelo0/Unauthorized-vulnerability-tools
一个用 Python + PyQt5 写的图形化未授权访问漏洞扫描器,支持检测 40+种 常见服务的未授权漏洞,GUI框架 PyQt5。 | language: Python | stars: 15 | forks: 1 | updated 2026-04-14T12:25:44Z | pushed 2026-04-05T13:18:07Z
大规模失陷!Apifox遭投毒,请立即排查
立即排查apifox.it.com的所有访问请求
Jorrit-VM/CVE-2026-33017
CavanasD/ThesisDrive
[Developing]电子科技大学一年级新生创新项目——”网盘攻防战“——“睡前一杯栈溢出”小组项目(Thesis Drive)仓库 | topics: clouddrive, confidential, uestc | language: Vue | stars: 3 | forks: 0 | updated 2026-04-23T10:53:09Z | pushed 2026-04-23T10:53:08Z
每日安全动态推送(26/3/26)
恶意 litellm PyPI 包通过 .pth 文件部署信息窃取器;利用硬件断点与调试器技巧绕过 Chrome ABE 加密;恶意蜂窝视频呼叫可实现远程代码执行
Stuub/SGLang-0.5.9-RCE
Proof of Concept exploitation of CVE-2026-5760 - RCE in SGLang 0.5.9 via malicious GGUF | topics: cve, cve-2026-5760, sglang | language: Python
teishahbc/china-as-ips
language: Python | stars: 1 | forks: 0 | updated 2026-04-21T03:38:43Z | pushed 2026-04-21T03:38:39Z
ISC Stormcast For Thursday, March 26th, 2026 https://isc.sans.edu/podcastdetail/9866, (Thu, Mar 26th)
duduLiu8787/CVE-2026-32746-Exploit
language: Python
hestugyl8933/biyesheji2118
基于SpringBoot+Vue的java基于云平台的信息安全攻防实训平台 | language: JavaScript | stars: 0 | forks: 0 | updated 2026-04-04T23:01:52Z | pushed 2026-04-04T23:01:47Z
Apple Patches (almost) everything again. March 2026 edition., (Wed, Mar 25th)
Apple released the next version of its operating system, patching 85 different vulnerabilities across all of them. None of the vulnerabilities are currently being exploited. The last three macOS "generations" are covered...