momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 9366 条情报 漏洞监控 5557 / 网安开源项目 3809
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
canyie/TransitionPlayer
CVE-2026-0091, play with an issue in android window management to perform arbitrary code execution in Launcher process from adb | language: Java
Sch8ill/CVE-2026-31309
Improper Access Control in Mysterium Node before v1.36.0 | homepage: https://cve.org/CVERecord?id=CVE-2026-31309
striga-ai/CVE-2026-34486
EncryptInterceptor fail-open bypass in Apache Tomcat Tribes clustering leading to unauthenticated RCE via Java deserialization. | language: Java
timtimxs/CVE-2026-51947-Advisory
Pivotal CRM's patch for an initial deserialization vulnerability was incomplete. The fix switched from BinaryFormatter to JSON.NET but left TypeNameHandling set to 4 without implementing SerializationBinder, allowing att...
abdugafforov-bobur/CVE-2026-54415-PoC
PoC for CVE-2026-54415 — Azuriom CMS (<1.2.11) Broken Access Control → account takeover | language: Python
b0ySie7e/OpenSTAManager-RCE-Exploit-CVE-2026-38751
OpenSTAManager-RCE-Exploit-CVE-2026-38751 | language: Rust
KVM: x86: Fix shadow paging use-after-free due to unexpected role
ipv6: account for fraggap on the paged allocation path
af_unix: Set gc_in_progress to true in unix_gc().
biosGit/CVE-2026-9090
Casdoor version 2.362.0 | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
nico-zhuang/ask-five-pro
Ask Five Pro — 开箱即用的专家议会系统,内置 34 位跨领域专家,支持共识/对抗/红队/陪审团/预审/淬火六种议会模式。v2.0.6 | language: Python | stars: 4 | forks: 1 | updated 2026-08-15T02:52:02Z | pushed 2026-08-01T05:29:58Z
icecliffs/nextwq
QQ小程序反编译逆向/微信小程序反编译逆向/红队攻击面分析/快速漏洞/检查/筛查 | stars: 62 | forks: 5 | updated 2026-07-27T06:21:38Z | pushed 2026-06-13T04:14:17Z
chAng-L19/codex-redteam-mode
针对于红队攻击思维做出的red team模式(破限项目,封号概不负责)##可自行适配其他Agent。项目问题请提issue | topics: ai, ai-hacking, hacking-tool, penetration-testing, red-team, redteam, redteam-tools | language: Python | stars: 1063 | forks: 136 | updated 2026-09-...
zzqsec/ai-redteam-notes
AI 驱动的红队免杀知识库 — AI-generated red team evasion notes | stars: 55 | forks: 10 | updated 2026-08-07T07:51:01Z | pushed 2026-06-23T13:45:54Z
webzzaa/pscan
基于 [fscan](https://github.com/shadow1ng/fscan) v2.1.3-rc 修改,针对红队场景进行了参数混淆与特征规避。 | language: Go | stars: 80 | forks: 18 | updated 2026-08-06T03:24:12Z | pushed 2026-07-02T09:47:47Z
LeifDiao/demand-radar
Validate whether a demand is real before you build it — a Claude Code plugin: two evidence pillars, a 7-axis scorecard, an adversarial red-team, an answer-first report. Zero login. · 在动手之前验证「这个需求是不是真的」的 Claude Code 插件:双支...
uninhibited-scholar/agent-redteam
AI Agent 红队安全测试平台 — CLI · TUI · Dashboard | 四维攻击 · 588+ 测试样本 · OWASP LLM Top 10 对齐 | topics: agent-security, ai-safety, cli, llm-security, owasp, prompt-injection, python, red-team, security-testing | language: Python | ...
katejianglaw/china-litigation-rehearsal
中国大陆民商事诉讼庭前预演与败诉风险排查 Codex Skill;引导律师进行快速体检、标准预演、法官追问、红队攻防和庭前实战手册整理。PRC civil/commercial litigation rehearsal skill for Codex; rehearsal only, not legal advice. | stars: 4 | forks: 0 | updated 2026-07-31T01:20:44Z | push...
ekkoo-z/KubeTrail
KubeTrail(云迹) 是一个面向 Kubernetes 授权红队评估与防御验证的容器内态势感知、攻击面发现和 AI 辅助攻防编排工具 | language: Go | stars: 69 | forks: 5 | updated 2026-08-29T05:29:50Z | pushed 2026-09-03T20:54:56Z
ctfd3219/red-ICS
面向红队的全自动企业资产侦察与攻击面测绘流水线。输入一个公司名,自动完成组织侦察、OSINT被动收集、子域名/端口/云服务发现、CDN穿透、APP反编译及Host碰撞,输出结构化资产报告。 | language: Python | stars: 5 | forks: 2 | updated 2026-07-08T01:27:04Z | pushed 2026-06-27T09:57:35Z