momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 9214 条情报 漏洞监控 5490 / 网安开源项目 3724
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
opensource-arrozconpollo191/CVE-2026-41089-Netlogon-RCE
Scan Windows Domain Controllers for CVE-2026-41089 to detect unauthenticated remote code execution vulnerabilities in the Netlogon service. | topics: active-directory, buffer-overflow, cve-2026-41089, cybersecurity, doma...
boobalover7/YellowKey-Bitlocker-CVE-2026-45585
Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows. | topics: bitlocker-bypass, bitlocker-drive-encryption, bitlocker-drive-lock, bitlocker-drive-...
tc4dy/CVE-2026-57821-PoC-Exploit
🔐 CVE-2026-57821 - Apache Fineract SQL Injection Toolkit 📚 Two Python scripts for authorized security testing: verifier.py (safe detection, no extraction) and exploit.py (deep analysis). Supports 11 DB types. Perfect for...
tc4dy/CVE-2026-6875-PoC-Exploit
CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell, batch threading, WAF bypass, persistence, lateral movement, credential ...
tc4dy/CVE-2026-15409-15410-Framework
CVE-2026-15409/15410 SonicWall SMA1000 multi-exploit Framework 🔥 SSRF→Erlang RPC→RCE→root privesc. Features: --detect safe check, --exec, --read-file, --privesc, --rpc, interactive shell, batch threading, file write, ws-...
tc4dy/CVE-2026-60206-PoC-Exploit
👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit combo/unsigned/xsw/nameid/all, --shodan integration, --tor support, mass scanning, J...
ZephrFish/wp2shell-scanner
CVE-2026-63030, CVE-2026-60137, wp2shell scanner | language: Python | homepage: https://blog.zsec.uk/wp2shell-code-trace-deep-dive/
0xgh057r3c0n/CVE-2026-9198
IBM Langflow Unauthenticated RCE via Auto-Login Bypass | language: Python
BuSung-dev/Root-My-Galaxy
KSU installer for supported Samsung Galaxy firmware with CVE-2026-43499 | language: Kotlin
InstaWP/wp2shell-scan
Detect & clean up wp2shell (CVE-2026-63030) WordPress compromise — bulk-runnable, read-only by default | language: Shell
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
l74o61eg98/wAMiGdYzKo
【Python计算机毕业设计分享】基于Python的web渗透漏洞扫描工具研究与应用,MySQL Python开发 毕业设计 实战项目【附源码、文档报告、代码讲解】 | stars: 1 | forks: 0 | updated 2026-07-30T18:19:53Z | pushed 2026-07-30T18:19:02Z
面向授权渗透测试与安全审计的 Windows 离线 Linux 提权辅助查询工具。
创建者: mooi-max 面向授权渗透测试与安全审计的 Windows 离线 Linux 提权辅助查询工具。
绕过澎湃OS实体键盘快捷键并在白名单软件内使用。Bypass HyperOS physical keyboard shortcuts in allowlisted apps.
创建者: HMQYHM 绕过澎湃OS实体键盘快捷键并在白名单软件内使用。Bypass HyperOS physical keyboard shortcuts in allowlisted apps.
Java 反序列化多态攻击面静态扫描器 + 利用面确证沙箱 + 默认配置安全基线
创建者: joysinleung Java 反序列化多态攻击面静态扫描器 + 利用面确证沙箱 + 默认配置安全基线
# 右键菜单 - 皮肤:拥抱新生 / 轻盈一梦 - 语音开关 - 鼠标互动 - 自主活动 / 任务栏巡逻 - 桌面图标座椅 - 删除文件触发攻击 - 查看等待时间 - 桌宠大小 - 任务栏站立高度 - 右下角指令框 - 攻击、跟随、睡觉、自由活动测试 ## 任务栏站立高度 默认使用“标准”。不同 Windows 缩放比例或任务栏样式下仍有偏差时,可右键选择: - 上移一点 - 标准 - 下移一点 ## 注意 - 无边框游戏置顶、鼠标冻结、回收站监听和桌面图标读取需要在 Windows 实机验证。 - 独占全屏游戏可能绕过普通桌面窗口层级。 - 首次运行若沿用了旧设置,可执行 `重置桌宠设置.bat` 后重启。
创建者: BestKittyRosmontis # 右键菜单 - 皮肤:拥抱新生 / 轻盈一梦 - 语音开关 - 鼠标互动 - 自主活动 / 任务栏巡逻 - 桌面图标座椅 - 删除文件触发攻击 - 查看等待时间 - 桌宠大小 - 任务栏站立高度 - 右下角指令框 - 攻击、跟随、睡觉、自由活动测试 ## 任务栏站立高度 默认使用“标准”。不同 Windows 缩放比例或任务栏样式下仍有偏差时,可右键选择: - 上移一点 - 标准...
网络安全创新创业实践课
创建者: wfz050207 网络安全创新创业实践课
渗透测试执行标准(经典)
创建者: gougu-security 渗透测试执行标准(经典)
API 渗透测试知识库 + 自动化工作流工具包,对齐 OWASP API Security Top 10 (2023)。
创建者: yzdily API 渗透测试知识库 + 自动化工作流工具包,对齐 OWASP API Security Top 10 (2023)。
CloudFlare 绕过方案,Python / Node / Chrome 扩展 绕过方案。
创建者: StardustMaker CloudFlare 绕过方案,Python / Node / Chrome 扩展 绕过方案。
SAST工具测试和漏洞研究的多基准测试集项目,包含CyberGym挑战和GitHub Advisories漏洞数据
创建者: fermat-hkrc SAST工具测试和漏洞研究的多基准测试集项目,包含CyberGym挑战和GitHub Advisories漏洞数据