Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
oscerd/CVE-2026-40022
Reproducer for CVE-2026-40022: Apache Camel camel-platform-http-main authentication bypass on non-root context paths | topics: apache-camel, cve, proof-of-concept, security, vulnerability | language: Java
speedyfriend433/CVE-2026-28867-PoC
Kernel info leak Proof of Concept patched in iOS 26.4 / macOS 26.4 | language: C
Robertmak2014-sudow/CVE-2026-28995
# CVE-2026-28995 Proof of Concept for CVE-2026-28995 — Path Traversal vulnerability in App Intents on iOS 26.4.2 and below. | language: Swift
Recorded-texteditor120/CVE-2026-31802
Demonstrate and analyze the CVE-2026-31802 path traversal vulnerability in npm tar, enabling arbitrary file overwrite via symlink extraction. | topics: cve, cve-2026-31802, exploit, node-tar, path-traversal, poc, securit...
tracyliving606/RegPwn
Exploit Windows local privilege escalation on clients and servers using tested code for CVE-2026-24291 across multiple Windows versions | topics: assembly, capture-the-flag, cloudflare, containers, defcon, developer, fre...
oscerd/CVE-2026-33454
Reproducer for CVE-2026-33454: Apache Camel camel-mail header injection to RCE via camel-exec | topics: apache-camel, cve, proof-of-concept, security, vulnerability | language: Java
covepseng/cve-2026-49352-poc
Exploitability PoC for CVE-2026-49352 (9router Hardcoded JWT Secret Authentication Bypass) | language: Go
oscerd/CVE-2026-33453
Reproducer for CVE-2026-33453: Apache Camel camel-coap header injection to RCE via camel-exec | topics: apache-camel, cve, proof-of-concept, security, vulnerability | language: Java
aratane/CVE-2026-42945
A flaw was found in NGINX, specifically within the ngx_http_rewrite_module. An unauthenticated attacker can exploit this vulnerability by sending crafted HTTP requests under specific rewrite configurations. This can lead...
1neptune/chimera
Rust-based DLL hijacking loader for MobaXterm (CVE-2026-6421) with persistence | language: Rust
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
503496348-ops/stratapro
深度方略 Stratapro — A股多源验证选股决策系统。基于动态权重的AI智能选股评估,集成技术面/基本面/产业渗透率三维评分,支持每日16:00自动推送日报+盘中实时预警,开箱即用。 | topics: ai-agent, atomcollide, decision-support, finance, product, python, quant, stock-analysis | language: Python | stars...
ibislon/TatvjrhSOt
【Java计算机毕业设计分享】基于Jboss的渗透测试管理系统,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】 | stars: 1 | forks: 0 | updated 2026-07-05T09:18:41Z | pushed 2026-07-05T09:18:37Z
systemime/auto_attack
一个用于自动化渗透的思路验证DEMO | language: Python | stars: 0 | forks: 0 | updated 2026-07-07T08:14:09Z | pushed 2026-07-05T11:47:13Z
Singtreb/Sword-Riding
一款自动化探测的AI渗透测试助手 | language: Go | stars: 3 | forks: 0 | updated 2026-07-16T02:46:54Z | pushed 2026-08-09T15:40:43Z | homepage: https://github.com/Singtreb/Sword-Riding
cauwen/wCegjTnZGc
【Java计算机毕业设计分享】基于Python的后渗透框架设计与实现,MySQL Java开发 毕业设计 实战项目【附源码、文档报告、代码讲解】 | stars: 1 | forks: 0 | updated 2026-07-05T16:28:05Z | pushed 2026-07-05T16:28:02Z
0RAYS/CBCTF
CBCTF 是基于 Go 语言构建的 CTF 竞赛平台,Kubernetes 编排,支持动态附件生成、动态容器分发、容器与虚拟机混合部署、网络渗透场景搭建。0RAYS Training:https://training.0rays.club/ | topics: ctf, go, helm, k8s, pentest | language: JavaScript | stars: 7 | forks: 0 | updated 2026-...
yuag/KubePivot
KubePivot-容器渗透测试工具 | language: Python | stars: 4 | forks: 0 | updated 2026-07-06T07:36:08Z | pushed 2026-07-06T05:25:04Z
lovetree-7/cyber-agent
AI驱动的自动化渗透测试 Agent | language: Python | stars: 1 | forks: 0 | updated 2026-07-06T09:21:43Z | pushed 2026-07-06T08:49:39Z
aicoa/k8spentool-go
将传统的k8s攻击手法进行整合,融入cdk的相关exp,接入llm并提供attack接口完成k8s自动化渗透。 | language: Go | stars: 25 | forks: 3 | updated 2026-07-12T04:30:47Z | pushed 2026-07-12T04:30:44Z
Janice-zls/Driving-Effects-of-NEV-Penetration-on-Automotive-Chip-Market
新能源汽车渗透率对中国汽车芯片市场的驱动效应实证分析 本项目深度锚定国家半导体自主可控、汽车产业转型升级核心战略,聚焦全球半导体产业重构、国内新能源汽车渗透率持续攀升、汽车芯片市场加速扩容的产业大背景,针对当前学界与业界对新能源汽车带动芯片市场增长的研究短板开展专项实证研究。现阶段相关研究多为定性趋势分析,普遍存在产业传导逻辑拆解不清晰、驱动效应无法量化、核心影响因子识别模糊、产业动态演化特征刻画缺失等问题,难以精准支撑我国汽车芯片产业...