Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
HORKimhab/CVE-2026-66384
CVE-2026-66384 - Draft or TODO | language: Python
ahseven/CVE-2026-33017-PoC-Reverse-Shell
CVE-2026-33017 PoC Reverse Shell | language: Python
hackpatato/CVE-2026-33057---Mesop-Unauthenticated-RCE-PoC-and-yara-rules
CVE-2026-33057 - Mesop Unauthenticated RCE PoC and yara rules | topics: cve, cve-2026-33057, poc, proof-of-concept | language: Python
SaiTeja-Erukude/CVE-2026-10036-speechbrain-rce
SpeechBrain < 1.1.1 checkpoint metadata RCE via unsafe PyYAML parsing of CKPT.yaml. | language: Python
e4zyy/Project-CVE-2026-50751
IKEv1 VPN scanners, attempts a Check Point authentication-bypass exploit, and includes internal network scanning and reverse-shell features. | language: Python
SimoesCTT/CTT-Enhanced-CVE-2026-46339-Exploit-Engine
A specialized Python framework that executes unauthenticated remote code execution via the 9Router Model Context Protocol (MCP) bridge by deploying a 33-layer temporal phase cascade, Riemann-Hadamard dispersion, and an 1...
INFOKOM-KI/Zimbra-CVE-2026-73570-Rules
Wazuh Rules for Detection Zimbra (CVE-2026-73570). | topics: cve-2026-73570, wazuh, wazuh-siem, zimbra, zimbra-email, zimbra-exploit, zimbra-server
HORKimhab/CVE-2026-65643
CVE-2026-65643 - Draft or TODO | language: Python
SieBRUM/CVE-2026-23751-poc
Patched RemotingClient to exploit CVE-2026-23751 (Tungsten Automation - Kofax Capture Unauthenticated File Read/Write, Remote Code Execution and SMB coercion via .NET HTTP Remoting) | language: C#
ipisav/fastjson-cve
fastjson-cve-2026-16723 | language: Java
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
AI 驱动的渗透测试 CLI 工具。自然语言下达目标,自动完成 Reason→Explore→Fact→Reflect→Report 全流程,证据级反幻觉,目标驱动收敛。
创建者: okdkebm
AI 驱动的渗透测试 CLI 工具。自然语言下达目标,自动完成 Reason→Explore→Fact→Reflect→Report 全流程,证据级反幻觉,目标驱动收敛。
MTX 卡密验证全链路绕过 dylib — 逆向分析 + 注入库
创建者: mzydgnh2
MTX 卡密验证全链路绕过 dylib — 逆向分析 + 注入库
lanyz1/Qtzuu-pentest-toolbox
@Qtzuu的渗透工具箱 —— 假设驱动的授权红队渗透测试技能框架:11个域 + 状态机攻击链 + 证据账本引擎 | language: Python | stars: 0 | forks: 0 | updated 2026-08-30T16:22:04Z | pushed 2026-08-30T16:18:28Z
boom5497/HNZzsQxm
25年【计算机专业毕设一套】基于Web的网络攻防实验学习系统的设计与实现【附源码+数据库+万字论文】 | stars: 1 | forks: 0 | updated 2026-08-28T03:50:42Z | pushed 2026-08-28T03:48:14Z
h4fan/FabDefense
FabDefense,半导体制造业攻防模拟游戏 | language: HTML | stars: 0 | forks: 0 | updated 2026-08-29T04:44:05Z | pushed 2026-08-29T04:43:25Z | homepage: https://h4fan.github.io/FabDefense/
txj1420119534-blip/Return-to-Yelang
沉浸式文化体验《重返夜郎国》:连接夜郎谷实景、个人傩面与两日文明攻防的互动系统。 | topics: chatgpt-sites, cultural-heritage, guizhou, hackathon, immersive-experience, interactive-storytelling, location-based-experience, react, typescript, yelang | language: Ty...
gm0621/pvz-web-prototype
網頁版植物/僵屍陣營攻防小遊戲原型 | language: HTML | stars: 0 | forks: 0 | updated 2026-09-02T03:06:57Z | pushed 2026-09-02T03:06:45Z
tanyiqu/sec-forge
基于Python的网络安全工具箱 | language: Python | stars: 0 | forks: 0 | updated 2026-09-01T15:32:48Z | pushed 2026-09-01T14:46:11Z
Paul-Lin-wj/pi-phone-control
pi coding agent 的手机操控全局扩展——白名单工具面 + 多层安全防线(红队三轮实测) | language: TypeScript | stars: 0 | forks: 0 | updated 2026-08-29T04:14:27Z | pushed 2026-08-29T04:14:23Z
sspsec/RedCmd
常用的渗透测试命令生成 revers shell 内网渗透下载命令等 | language: Go | stars: 10 | forks: 3 | updated 2026-08-30T02:55:34Z | pushed 2026-08-30T02:55:29Z