momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 8871 条情报 漏洞监控 5307 / 网安开源项目 3564
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
boomerangBS/CVE-2026-65647-PoC
brendonlee20042004-sys/weakrng-sweep
Weak-RNG stream-sweep research (CVE-2026-71851 class): PRNG schemes x seeds -> BIP39 -> victim set membership | language: C
R0x19/CVE-2026-82222
GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE
R0x19/CVE-2026-82222
GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE
naheeju/POC-CVE-2026-0073
Security research PoC for CVE-2026-0073: ADB authentication bypass verification | language: Go
toanln-cov/CVE-2026-76569
Reflected XSS via search GET Parameter in Phoca Download
xiaohj233/ghostlock-x200-app
vivo X200 设备端一键 root App(Shizuku 授权 shell 域执行,CVE-2026-43499) | language: C
ming1700/CVE-2026-38192
pluck-CMS-4.7.20-code-injection-vulnerability
M4xSec/My-Exploits
Metasploit modules, Python PoCs and throwaway Docker labs for four platform CVEs: Keycloak (CVE-2026-18963), Apache NiFi (CVE-2026-39816), HashiCorp Vault (CVE-2026-5006), HashiCorp Nomad (CVE-2026-7474). | language: Rub...
M4xSec/0day-Exploits
Metasploit modules, Python PoCs and throwaway Docker labs for four platform CVEs: Keycloak (CVE-2026-18963), Apache NiFi (CVE-2026-39816), HashiCorp Vault (CVE-2026-5006), HashiCorp Nomad (CVE-2026-7474). | language: Rub...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
kwekre/ai-pentest-guide
从 0 到能打:一份带 AI 辅助的渗透测试开源教程(基础 → AI 方法论 → 靶场实战 → 报告) | topics: ai, beginner, ctf, cybersecurity, learning, pentest, red-team, security, tutorial, web-security | stars: 0 | forks: 0 | updated 2026-09-01T07:04:03Z | pushed ...
kabuqin/autovibe_pentest
基于 Vibe Pentest 的增强版本,采用 AI Agent 架构的自动化渗透测试工具。支持多 Agent 并行执行,能够对 Web 应用、API、管理后台等进行全面的黑盒渗透测试,输出稳定可靠的安全报告。 | language: Python | stars: 4 | forks: 1 | updated 2026-09-01T07:17:38Z | pushed 2026-08-31T16:02:34Z
chenow9/umbra
Umbra — self-hosted L4 stealth intranet penetration gateway (自托管的L4隐蔽式内网渗透网关) | topics: go, l4, yamux | language: TypeScript | stars: 0 | forks: 0 | updated 2026-09-01T07:23:53Z | pushed 2026-09-01T07:20:57Z | homepage: ...
Jaycee701/jiejieskill
基于 PTES 7 阶段的一站式渗透测试方法论技能,覆盖 Web 漏洞分析、国密加解密测试、认证爆破、内网域渗透、AI-LLM 新兴攻击面。 | language: Python | stars: 2 | forks: 0 | updated 2026-09-02T03:26:02Z | pushed 2026-09-02T03:21:27Z
lanyz1/TGSEC-Qtzuu
TGSEC社区 学习渗透套件 — 按攻击面组织的渗透测试知识库,可直接喂给AI自动配置使用 | language: Python | stars: 0 | forks: 0 | updated 2026-09-03T18:23:42Z | pushed 2026-09-03T18:21:05Z
Juen-Liang/june-harness
具备计划审批、安全工具执行、长上下文压缩与任务恢复能力的本地 Coding Agent | language: TypeScript | stars: 1 | forks: 0 | updated 2026-09-03T06:52:02Z | pushed 2026-09-03T06:50:52Z
Penguintry/2026-AI-Security-Attack-and-Defense-Competition
模型数据投毒、多模态检测、AI人工智能攻防赛 | stars: 0 | forks: 0 | updated 2026-09-01T01:59:13Z | pushed 2026-09-01T01:57:50Z
SCPgamerscp/Ultimate-PVP-Boss
PVPのような攻防するボスです | language: Java | stars: 0 | forks: 2 | updated 2026-09-03T16:16:34Z | pushed 2026-09-03T16:09:02Z
· 擎天柱@Qtzuu 渗透测试工具包 —— 假设驱动的授权红队渗透测试技能框架:15个域 + 状态机攻击链 + 证据账本引擎
创建者: fakedon TGSEC社区
一个网页版的终端
创建者: liangbinhao 一个网页版的终端