Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
sh4den/CVE-2026-24061
Proof of Concept: CVE-2026-24061 is a critical authentication bypass vulnerability in GNU inetutils-telnetd allowing unauthenticated remote attackers to gain instant root shell access via malicious NEW_ENVIRON telnet opt...
sh4den/CVE-2026-21858
Proof of Concept: CVE-2026-21858 is vulnerability on n8n where unauthenticated remote attackers can access sensitive files. | topics: cve, cve-2026-21858, exploit, n8n, n8n-exploits, nuclei, poc, vuln | language: Python
Rat5ak/CVE-2026-3805-curl-SMB-UAF
CVE-2026-3805: Use-After-Free in curl SMB connection reuse - heap info disclosure | language: Shell
dinosn/apache-activemq-rce-research
Apache ActiveMQ Classic RCE research: CVE-2026-34197 / CVE-2026-42588 bypass chain + hardened-6.2.6 audit findings + Crowdfense comparison | language: Python
0xsha/CVE-2026-6307
Google Chrome CVE-2026-6307 PoC | language: HTML
Y5neKO/CVE-2026-8461-EXP
language: Python
minanagehsalalma/cve-2026-34474-zte-h298a-h108n-sensitive-data-exposure
CVE-2026-34474: unauthenticated ETHCheat=1 requests leak the admin password and Wi-Fi PSK from ZTE H298A/H108N routers. | topics: cve, cve-2026-34474, cybersecurity, infosec, iot-security, network-security, poc, router-s...
minanagehsalalma/cve-2026-34472-auth-bypass-zte-h188a-router
Technical breakdown of CVE-2026-34472, an auth bypass via leaked credentials affecting ZTE H188A routers. | topics: auth-bypass, cve, cve-2026-34472, router, security-research, vulnerability, zte | language: HTML | homep...
0xBlackash/CVE-2026-43503
CVE-2026-43503 | language: C
hawktrace/CVE-2026-45504
CVE-2026-45504 Microsoft Exchange File Read | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Unclecheng-li/VulnClaw
基于 AI Agent + MCP 工具链 + 渗透 Skill 编排, 配合大语言模型, 自然语言输入 → 自动完成「信息收集 → 漏洞发现 → 漏洞利用 → 报告生成」全流程。 | topics: ai, ai-agent, ai-tools, ctf, cybersecurity, openclaw, penetration-testing, penetration-testing-tools, security-tools, s...
LvShenlyl/ti-auto-triage-lab
蓝队自动化威胁研判工具 — Blue Team Automated Triage Tool | language: Python | stars: 0 | forks: 1 | updated 2026-06-14T02:55:48Z | pushed 2026-06-13T09:12:07Z
hejiaying50-commits/blue-team-hw-simulation
项目模拟蓝队在护网值守场景中的工作流,覆盖以下环节: Web 访问日志采集与模拟生成 访问日志结构化解析 SQL 注入、XSS、文件上传、目录扫描、弱口令爆破、高频扫描等规则识别 告警风险评级与是否上报建议 攻击汇总表与事件研判报告输出 蓝队值守仪表盘展示与单条事件详情查看 | language: Python | stars: 1 | forks: 0 | updated 2026-07-19T11:51:03Z | pushed 2...
A4n9g7e2l/Xway
🛡️ 蓝队应急响应 / Linux 失陷主机一键排查。纯 Bash 单文件,零依赖,45 个检查模块 + 7 类隧道检测 + 6 类暴力破解 + 攻击路径时间线 + JSON-lines 日志 + 风险评分 + 横向移动证据链。集成 NOP Team 手册 v2.0.2 + 9 本公开应急手册 gap 分析(MIT)。 | topics: bash, blue-team, compromise-assessment, digital-f...
hejiaying50-commits/Blue-Team-SOC-Alert-Triage
A local blue-team SOC alert triage and web attack incident response project built with Python, pandas, Streamlit, and Suricata-style logs.基于 Python 的蓝队 SOC 告警研判与 Web 攻击日志应急响应平台,支持多源日志解析、规则检测、风险评分、事件聚合与安全态势展示。 | language:...
ClinininSec/BlueTeamSkill
面向蓝队人员的 Claude Code Skill — 把 SIEM 分诊、日志审计、pcap 流量分析、应急响应、授权 SSH 远程采集五件事合并成一个「Coding Agent 副驾驶」。 | topics: blue-team, cybersecurity, hvv, security | language: Python | stars: 6 | forks: 1 | updated 2026-08-24T02:10:00Z |...
Hackerchen716/blueteam-log-analyzer
蓝队应急响应日志分析工具 | language: Python | stars: 13 | forks: 1 | updated 2026-08-05T05:34:40Z | pushed 2026-06-20T18:29:17Z
teishahbc/china-as-ips
language: Python | stars: 1 | forks: 0 | updated 2026-09-06T04:25:21Z | pushed 2026-09-06T04:25:17Z
Dainsleif233/awesome-Cloudflare-IPs
language: Python | stars: 0 | forks: 0 | updated 2026-09-09T10:52:01Z | pushed 2026-09-09T11:00:31Z
shangdi-w/proxy-tool
一键抓取公网sock,httpip,可以实现轮换出口IP,固定出口IP,供红队,渗透测试使用。防止在测试时,IP被封 | language: Lua | stars: 0 | forks: 0 | updated 2026-05-23T06:24:55Z | pushed 2026-05-23T06:24:51Z