Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
bluedragonsecurity/CVE-2026-46215-exploit-linux-7.0-uaf-stable
CVE-2026-46215 DRM GEM UAF Exploit for Linux 7.0 - The first working PoC for linux kernel 7 use after free- by Antonius (sw0rdm4n, w1sdom, ev1lut10n) | language: C
own2pwn-fr/wp2shell-detect
Blackbox, non-intrusive detector for wp2shell (WordPress core pre-auth RCE, CVE-2026-63030 / CVE-2026-60137). Detection only. | language: Python
47Cid/wp2shell-lab
Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion | language: Python
基于 Chromium 的 Microsoft Edge 欺骗漏洞
Microsoft Edge (基于 Chromium)信息泄露漏洞
Microsoft Edge (基于 Chromium)信息泄露漏洞
mcipekci/wp2shell
Pre-auth RCE PoC for WordPress core — chains CVE-2026-63030 (REST /batch/v1 route-confusion desync) with CVE-2026-60137 (author__not_in SQLi) into an unauthenticated shell. Authorized testing only. | language: Python
Cxyofficial/x200-cve-2026-43499
0xCyberstan/CVE-2026-42533-Config-Scanner
Static config scanner that flags nginx configs vulnerable to the complex_value two-pass capture-clobbering bug (regex map + regex capture → heap overflow / info leak). | language: Python
rjt-gupta/page-cache-corruption-lpes
CVE-2026-46331 and CVE-2026-43503 | language: C
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
G3G4X5X6/book-ptes
渗透测试执行标准(经典) | language: CSS | stars: 0 | forks: 0 | updated 2026-07-29T01:35:51Z | pushed 2026-07-29T01:35:46Z
anye1991/ChainForge
渗透工具 | language: Python | stars: 0 | forks: 0 | updated 2026-07-29T01:46:37Z | pushed 2026-07-29T01:46:33Z
MyIsmeee/YunSee-tool
渗透常用toolGUI集成 | language: CSS | stars: 1 | forks: 0 | updated 2026-07-29T05:17:40Z | pushed 2026-07-29T05:17:22Z
crailstubler-wq/ai-wechat-workflow
AI 驱动的公众号运营工作流方法论:v7.4 八步主流程 + 增强版多 Agent 协作(TeamCreate + 对抗式红队审查 + 主编复核)+ 专家团架构实战 + ADLR 文档审查 + 经验沉淀法 | language: HTML | stars: 3 | forks: 0 | updated 2026-08-12T01:21:58Z | pushed 2026-08-12T01:21:54Z
hello-world-3511/SilverFox-C2
多协议、跨平台、插件化 C2 平台 | Go + C | 红队安全研究 | language: HTML | stars: 1 | forks: 0 | updated 2026-07-29T05:16:32Z | pushed 2026-07-28T18:02:13Z
jingminglong/autopen-db-landing-page
汽车渗透门户 | language: TypeScript | stars: 0 | forks: 0 | updated 2026-07-28T07:17:49Z | pushed 2026-07-28T07:17:14Z
MWDLH/pentest-field-operator
给 AI Agent 的渗透测试实战操作系统——基于证据决策,像高级工程师一样思考,而不是机械执行工具清单 | language: Python | stars: 2 | forks: 0 | updated 2026-07-30T08:24:33Z | pushed 2026-07-30T08:22:36Z
WWindy/LARLPT-An-LLM-Augmented-Reinforcement-Learning-Framework-for-Autonomous-Penetration-Testing
面向自动化渗透测试的双层增强学习框架 | stars: 0 | forks: 0 | updated 2026-07-28T10:11:19Z | pushed 2026-07-28T10:11:00Z
LilDean17/hahaha
自动化资产收集平台,以根域驱动子域名发现、指纹识别、目录扫描等多阶段任务链,输出结构化资产知识库支撑渗透测试。 | language: Java | stars: 0 | forks: 0 | updated 2026-08-31T07:38:36Z | pushed 2026-08-31T07:36:15Z
LilDean17/reg-finder
reg-finder 是一款批量URL分析工具,帮助渗透测试与资产盘点人员在数千条网址中快速筛选出具备注册入口的高价值目标,并自动识别其业务类型(电商、后台、门户等),大幅减少人工逐条研判的重复劳动。 | language: Python | stars: 0 | forks: 0 | updated 2026-08-06T09:23:14Z | pushed 2026-08-06T09:21:34Z