Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
BiiTts/CVE-2026-46490-samlify-SAML-Attribute-Injection
CVE-2026-46490 — samlify <2.13.0 SAML AttributeValue XML injection -> signed-assertion privilege escalation. Self-contained PoC, verified e2e. | topics: cve-2026-46490, nodejs, poc, privilege-escalation, saml, samlify, s...
JohannesLks/CVE-2026-33186
gRPC-Go RBAC Authorization Policy Bypass via Missing `:path` Slash (Auth Bypass) | topics: cve, exploit, security, vulnerability | language: Python
JohannesLks/CVE-2026-27654
NGINX `ngx_http_dav_module` Heap Buffer Overflow via `size_t` Underflow (Remote DoS / Potential RCE) | topics: cve, exploit, security, vulnerability | language: Python
g0thamRabb1t/cve-2026-46331-pedit-cow-auditd-detection
Defensive validation of CVE-2026-46331 / pedit COW with auditd, AppArmor, mitigation comparison and detection logic.
MadExploits/CVE-2026-46300
CVE-2026-43284 - CVE-2026-43500 - CVE-2026-46300 Variant of dirtyfrag exploit | language: Python
billybaraja/cve-2026-5950-bind9-resolver-dos
Defensive research notes for CVE-2026-5950, a BIND 9 resolver DoS vulnerability credited to Billy Baraja (BielraX). | topics: bind9, bug-bounty, cve, cve-2026-5950, dns-security, security-advisory | language: Python
Ap0dexMe0/CVE-2026-49869
Kestra Auth-Bypass Vulnerability Checker | topics: kestra, proof-of-concept, rce | language: Python
TheCyberGeek/CVE-2026-4480-PoC
language: Python
sentinel-aidefense/CVE-2026-21509
CVE-2026-21509 Research writeup
grizzzer/CVE-2026-42978-PoC-Research
CVE-2026-42978 — Use-After-Free race condition in Windows Push Notifications (WpnService). Patch diff, root cause analysis, TOCTOU lab, Sysmon/ETW detection rules. | language: C
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
dilkhaz12/llama3.1-8B-threat-hunting
LLAMA3.1 8B-based Threat Hunting Framework with GRPO | language: Python | stars: 0 | forks: 0 | updated 2026-03-22T12:51:52Z | pushed 2026-03-22T12:51:48Z
Bhavya2-4/Threat-hunting-Reports
stars: 0 | forks: 0 | updated 2026-03-22T13:02:41Z | pushed 2026-03-22T13:02:38Z
alexandreborges/malwoverview
Malwoverview is a first response tool for threat hunting across VirusTotal, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, IPInfo, Shodan, AbuseIPDB, GreyNoise, U...
ShreeluSantosh/cloud-security-tools
Work in progress | language: Python | stars: 0 | forks: 0 | updated 2026-03-22T14:05:13Z | pushed 2026-03-22T14:05:10Z
ivuorinen/docker-elk
Preconfigured Security, Tools, and Self-Monitoring | topics: docker, elk-stack, fork | language: Dockerfile | stars: 0 | forks: 0 | updated 2026-03-22T12:03:54Z | pushed 2026-03-22T12:03:51Z
SandeepAi369/deepAI-Articles
Professional archive of in-depth articles on Cyber Security, Artificial Intelligence, and Python Automation. Featuring expert insights on Linux systems, open-source security tools, and intelligent automation workflows. 🚀...
BrnzAi/kensai-security-tools
KENSAI — AI-Powered Cybersecurity Platform | Autonomous Pentesting & Vulnerability Scanning | https://kensai.app | topics: ai-security, compliance, cybersecurity, devsecops, dora, kensai, nis2, pentesting, security-tools...
Priyaa1808/System-Safety-Monitor
A Python-based security tool to detect and remove hidden threats and unauthorized processes. | language: Python | stars: 0 | forks: 0 | updated 2026-03-22T12:56:45Z | pushed 2026-03-22T12:56:42Z
MrRobot-cpp/ZeroSec
A Security Tool for LLM & Vector Database Pipelines | language: JavaScript | stars: 1 | forks: 0 | updated 2026-03-22T11:28:49Z | pushed 2026-03-22T11:32:05Z
ramialdine/arpa-phishing-detector
hreat actors have discovered that because `.arpa` carries an **implicitly trusted reputation**, security tools consistently fail to scrutinize it. | stars: 0 | forks: 0 | 2026-03-22T11:43:21Z