Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
tc4dy/CVE-2026-41940-PoC-Exploit
🚀 CVE-2026-41940 cPanel/WHM Auth Bypass Exploit - Best Flow 💥 CRLF injection leads to auth bypass, session hijacking & account leak. ✅ Proxy, custom UA, keep-alive, retries, SSL verify, colored output, file save support....
tc4dy/CVE-2026-24061-PoC-Exploit
🚀 CVE-2026-24061 - GNU inetutils-telnetd Auth Bypass Exploit - Full Control 💥 CRLF injection via NEW_ENVIRON leads to auth bypass & instant root shell. ✅ Single/Mass exploitation, multi-threading, custom port/user, pipe ...
tc4dy/CVE-2026-0073-PoC-Exploit
🚀 CVE-2026-0073 - Android ADB Wireless Debugging Exploit (CVSS 8.8) 🔓 Zero-click authentication bypass via TLS type confusion. Gain interactive shell, execute commands, scan networks. Educational red-team tool. 🐚⚡ | lang...
tc4dy/CVE-2026-41091-PoC-Exploit
CVE-2026-41091 RedSun | Microsoft Defender LPE exploit. Low-privileged users gain NT AUTHORITY\SYSTEM 🔥 via Cloud Files API + NTFS junction trickery. Forces Defender to write malicious payloads to System32 with SYSTEM ri...
SecureWithUmer/CVE-2026-43503
DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503 | language: Python
calligraf0/CVE-2026-36848
Gigamon Unauth RCE (CVE-2026-36848) | language: Python
0xBlackash/CVE-2026-48907
CVE-2026-48907 | language: Python
rootdirective-sec/CVE-2026-28496-Lab
language: Python
Hann1bl3L3ct3r/CVE-2026-11349
Modern Events Calendar Lite <= 7.33.0 — Unauthenticated SQL Injection | language: Python
pssec-io/CVE-2026-20253
POC for CVE-2026-20253 | topics: cve-2026-20253, proof-of-concept, pssec, splunk | language: Dockerfile
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
RUTHRAN-SEC/SOC-Hands-on-Investigation-and-Challenges
SOC / DFIR investigations portfolio with hands-on lab cases covering SIEM alert triage, Phishing Analysis, Malware analysis, Endpoint detection, Network Analysis. Built to demonstrate practical SOC Analyst L1/L2 and DFIR...
YOUR-DFIR/YOUR-DFIR-ransomware-detection-splunk-sigma
stars: 0 | forks: 0 | updated 2026-03-21T12:49:04Z | pushed 2026-03-21T12:49:00Z
keemthedream45/-HTB-Backup-Server-Telemetry-Investigation
A DFIR lab focused on investigating potential data exfiltration and analyzing network traffic from a compromised SMB backup server. | stars: 0 | forks: 0 | 2026-03-21T17:52:51Z
NevoHainberg/The-Beast-Forensic-Kit
A forensic triage and incident response kit built for learning and practicing Windows DFIR workflows. | language: Batchfile | stars: 3 | forks: 0 | updated 2026-03-21T18:49:54Z | pushed 2026-03-20T15:13:37Z
Ne0x1/DFIR-Case-Report-Credential-Exfiltration-via-PonyStealer-FTP-Based
stars: 0 | forks: 0 | updated 2026-03-21T21:20:02Z | pushed 2026-03-21T21:19:59Z
Ne0x1/DFIR-Incident-Report-Internal-Compromise-Simulation
stars: 0 | forks: 0 | updated 2026-03-21T21:32:54Z | pushed 2026-03-21T21:32:51Z
yacrb/seckit
Portable cybersecurity swiss army knife {offensive, defensive, and DFIR tooling} | language: Shell | stars: 1 | forks: 0 | updated 2026-03-22T01:00:12Z | pushed 2026-03-22T01:00:09Z
mukul975/Anthropic-Cybersecurity-Skills
734+ structured cybersecurity skills for AI agents · MITRE ATT&CK mapped · agentskills.io open standard · Works with Claude Code, GitHub Copilot, OpenAI Codex CLI, Cursor, Gemini CLI & 20+ platforms · Penetration testing...
abubakerawad/ApexHunter
Enable fast and automated threat hunting using agent-based methods powered by Python and large language models on Kali Linux. | topics: agentic-ai, ai-security, blue-team, cybersecurity, dfir, duckdb, forensics, github-c...
rezmoss/awesome-security-pipeline
🔐 A curated list of open-source security tools organized by CI/CD pipeline stage. Covers secrets detection, SBOM, SAST, SCA, IaC security, container scanning, Kubernetes security & more. Actively maintained with weekly s...