Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
ADScanPro/CVE-2026-41089-LongLogon
CVE-2026-41089 checker: unauthenticated, non-destructive detection for the Netlogon CLDAP stack buffer overflow (CVSS 9.8). Reports whether a domain controller's domain is long enough to crash, without sending the overfl...
papageo75/CVE-2026-48908-PoC
Unauthenticated RCE PoC for CVE-2026-48908 — SP Page Builder for Joomla (≤ 6.6.1): arbitrary file upload via asset.uploadCustomIcon. Self-cleaning, token-guarded. Authorized testing only. | topics: arbitrary-file-upload,...
Stuub/Appsmith-1.98-Stored-XSS-Exploit
Automating the exploitation of CVE-2026-7299 - Stored XSS via Database Table/Column Names in SQL Autocomplete within Appsmith =>1.99. Initial discovery 30/03/26 | language: Python
ctnBobong32/CVE-2026-0073-Android-ADBD-bypass-POC_zh_CN
CVE-2026-0073-Android-ADBD-bypass-POC汉化版 | language: Python
offseckit/CVE-2026-24207
CVE-2026-24207 — NVIDIA Triton SageMaker auth bypass to unauth RCE. Detection script, bypass demo, RCE-chain PoC, and IDS rules. | topics: auth-bypass, cve-2026-24206, cve-2026-24207, nvidia-triton, proof-of-concept, rce...
Saku0512/CVE-2026-54686-poc
language: Python
Saku0512/CVE-2026-48732-poc
language: Python
Saku0512/CVE-2026-54088-poc
language: Python
Saku0512/CVE-2026-54761-poc
language: Shell
EQSTLab/CVE-2026-49975
HTTP/2 Bomb | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
syfmtexture/Trinetra-v2.0
🔬 Trinetra — A high-performance deepfake forensic suite. Combines local EfficientNet-B4 + LSTM analysis with Reality Defender cloud verification and XAI-driven spatial/temporal explainability. | language: Python | stars:...
SanikaTribhuvan/phantom-ledger
AI-native forensic system for detecting silent manipulation in Indian government budget data. | language: JavaScript | stars: 0 | forks: 0 | updated 2026-03-21T20:56:08Z | pushed 2026-03-21T20:56:03Z
Ne0x1/Zeus-Trojan-Forensics
stars: 0 | forks: 0 | updated 2026-03-21T20:56:31Z | pushed 2026-03-21T20:56:28Z
cocoflan/wowscanner
security tool | language: Shell | stars: 1 | forks: 0 | updated 2026-03-22T22:47:49Z | pushed 2026-03-22T22:47:46Z
0x7556/wolfshell
幽狼AI Shell:首款支持AI渗透的高级WebShell & C2管理工具,内置WebShell MCP服务器,支持多层内网级联的ASPX、ASHX高级WebShell管理工具,AES加密通信,无需代理,内存加载渗透工具,无文件落地隐蔽渗透目标,动态代码执行,ShellCode加载(Metasploit/Cobalt Strike),反弹Shell,Socks代理,内存马,C2远控,IIS端口复用后门、.NET反序列化漏洞Paylo...
claydemo/epgo
epgo助力红队渗透过程 | stars: 0 | forks: 0 | updated 2026-03-21T16:53:45Z | pushed 2026-03-21T17:06:15Z
lullaby-xjx/Blog
这是一个网站;技术栈:PHP、JavaScript、CSS、HTML、Mysql;有较严重的安全问题(内附渗透报告) | language: Hack | stars: 0 | forks: 0 | updated 2026-03-21T17:06:14Z | pushed 2026-03-21T17:06:11Z
NamithNayakK/Hybrid-AI-Vulnerability-analyzer
A hybrid code-security tool using CodeBERT embeddings and a Random Forest classifier to detect vulnerabilities with improved precision. Designed for reproducible experiments, easy integration, and extension across codeba...
sgaunet/conf-linux
Comprehensive Ansible automation for Linux development workstation setup with 100+ DevOps, Kubernetes, and security tools | topics: ansible, ansible-playbook, automation, aws, configuration, development, devops, docker, ...
SILENT7477/advanced-mini-security-toolkit
stars: 0 | forks: 0 | 2026-03-21T17:45:27Z