Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
gagaltotal/CVE-2026-22557-Path-Traversal-Ubiquti-UniFi
CVE-2026-22557 Path Traversal Ubiquti UniFi Network Application | topics: api, go, golang, golang-cli, pathtraversal, ubiquiti, ubiquiti-unifi-controller, ubiquiti-unifi-network, unifi | language: Go
pssec-io/CVE-2026-48907
POC for CVE-2026-48907 | topics: cve-2026-48907, joomla, poc, proof-of-concept, pssec, pssec-io | language: PHP
faizdotid/CVE-2026-4020
language: Go
rootdirective-sec/CVE-2026-55255-Lab
language: Python
BiiTts/CVE-2026-56121-Feast-Unauth-RCE
CVE-2026-56121 — Feast <0.63.0 unauthenticated RCE via gRPC registry dill.loads of OnDemandFeatureView UDF (pre-auth). Lab + PoC, verified e2e. | topics: cve-2026-56121, deserialization, feast, grpc, mlops, pickle, poc, ...
BiiTts/CVE-2026-53753-Crawl4AI-RCE
CVE-2026-53753 — Crawl4AI <0.8.7 unauthenticated RCE (AST sandbox escape via gi_frame.f_back). Lab + PoC, verified e2e. | topics: crawl4ai, cve-2026-53753, poc, python, rce, sandbox-escape, security-research, unauthentic...
BiiTts/CVE-2026-56782-Gorse-Auth-Bypass
CVE-2026-56782 — Gorse <0.5.10 unauthenticated DB dump/restore (admin_api_key fail-open). Lab + PoC, verified e2e. | topics: authentication-bypass, cve-2026-56782, data-exfiltration, gorse, poc, recommender-system, secur...
seguridadentrerios/CVE-2026-46331
Chequeo y Fix de la vulnerabilidad "pedit COW" | language: Shell
MateusVerass/nGixshell
nginx CVE scanner + RCE exploit framework (CVE-2026-42945 + 16 others) | language: Python
vn-lazyming/CVE-2026-52943
This is a Linux Kernel Local Privilege Escalation PoC code for CVE-2026-52943 a use-after-free in skbuff.c, my first 0day found by me in linux kernel | language: C
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
MSLets97/network-security
A growing collection of hands-on guides, lab walkthroughs, and concept breakdowns covering network security tools, technologies, and best practices built and tested in real homelab and cloud environments. | stars: 0 | fo...
AGaevskiy/NMT-Hunter---Silent-Miner-Hunter
NMT Hunter is a security tool designed to detect and remove cryptocurrency miners, backdoors, and other threats on Windows systems. The program combines multiple detection techniques including process analysis, registry ...
arihantdalai/soc-lab-suricata-elk
This project focuses on designing and deploying a Virtual Security Operations Center (SOC) lab environment using open-source security tools. The lab integrates Suricata (Intrusion Detection System) with the Elastic Stack...
j0nsn/PT
渗透测试脚本仓库 | stars: 0 | forks: 0 | updated 2026-03-22T09:29:47Z | pushed 2026-03-22T09:29:43Z
trappedinthesim/NetRecon
10 security tools in a Chrome side panel — Nmap, DNS recon, WHOIS, SSL inspection, port scanning, CVE lookup, and more. Built for security researchers and CTF players. | topics: chrome-extension, ctf, cve, cybersecurity,...
DrishyaNair04/network-security-tool
language: Python | stars: 0 | forks: 0 | updated 2026-03-22T09:47:27Z | pushed 2026-03-22T09:47:24Z
july-whj/prompt-heist
Prompt Heist 是一款建立在区块链之上、由大语言模型(LLM)驱动的去中心化 AI 攻防博弈游戏。 随着 AI 技术的爆发,“提示词工程(Prompt Engineering)”正在成为新时代的黑客技术。本项目旨在将这种对抗性技术游戏化与金融化。玩家将通过极其巧妙的自然语言,试图“越狱(Jailbreak)”一个由最先进大模型扮演的金库守卫,骗取其持有的 ECDSA 密码学签名,从而掠夺部署在链上的全部加密资产奖池。 | la...
TarzEH/RedWeaver
Autonomous AI-powered vulnerability assessment platform — multi-agent bug hunting with CrewAI, real security tools, and real-time streaming | topics: ai-agents, bug-bounty, crewai, cybersecurity, docker, fastapi, knowled...
RUTHRAN-SEC/Mini-BlueTeam-Projects
SecForge is a collection of practical cybersecurity and blue team projects focused on threat detection, intrusion detection, secure coding, vulnerability assessment, and security automation. It demonstrates real-world de...
raniAllamsetty/aws-s3-security-auditor
An automated cloud security tool built with Python and Boto3 that audits AWS S3 buckets for public access and encryption compliance, delivering real-time alerts via Amazon SNS. | language: Shell | stars: 0 | forks: 0 | u...