momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 9431 条情报 漏洞监控 5599 / 网安开源项目 3832
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
izxci/CVE-2026-49079
CVE-2026-49079 JetSearch SQL Injection Exploit | language: Python
izxci/CVE-2026-49105
CVE-2026-49105 WP Zendesk PHP Object Injection Exploit | language: Python
izxci/CVE-2026-49104
CVE-2026-49104 Integration for Keap/Infusionsoft PHP Object Injection Exploit | language: Python
izxci/CVE-2026-9691
CVE-2026-9691: Integration for ActiveCampaign and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.1.1 Unauthenticated PHP Object Injection PoC, Patch Analysis & Rule | language: Python
izxci/CVE-2026-49085
CVE-2026-49085 WP Insightly PHP Object Injection Exploit | language: Python
izxci/CVE-2026-5415
CVE-2026-5415 WP Captcha PRO Authenticated Authentication Bypass Exploit | language: Python
izxci/CVE-2026-7459
CVE-2026-7459 Simple History Missing Authorization Account Takeover Exploit | language: Python
izxci/-CVE-2026-7465
CVE-2026-7465 Spectra Gutenberg Blocks Authenticated RCE Exploit | language: Python
izxci/CVE-2026-8206
CVE-2026-8206 Kirki Plugin Unauthenticated Account Takeover Exploit | language: Python
izxci/CVE-2026-7654
CVE-2026-7654 Admin Columns PHP Object Injection RCE Exploit
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
lingxisec/LingXiLabs
LingXiLabs是凌曦安全团队依托攻防实战经验与SRC漏洞挖掘经验打造的漏洞靶场集合,以“锤炼攻防技能、赋能漏洞挖掘”为核心,免费为网络安全爱好者、从业人员及院校等提供高可用的练习环境。覆盖常见的Web漏洞等,采用开源开放模式。 | language: HTML | stars: 35 | forks: 2 | updated 2026-03-22T01:31:44Z | pushed 2026-03-14T14:46:17Z
GD-Attack/GD-Attack
开源渗透测试工具,包含了CC攻击,Memcached 反射放大攻击的攻击方式,将攻击方式简单化,这个工具更偏向于初级网络安全工程师,该工具是利用python基于kali linux系统编写的,最大好处是简单方便,便捷,无晦涩难懂的语法命令,注意使用工具的合法性,必须在合法的网络攻防环境下进行渗透测试,若违反法律后果自负,法网恢恢,疏而不漏,后续我回继续更新次渗透测试脚本,敬请期待 | language: Python | stars: ...
Huu1j/crawl_xz
一个批量爬取安全技术社区文章的工具(目前支持先知社区、奇安信攻防社区),支持Markdown、PDF、HTML多种格式输出 | language: Python | stars: 26 | forks: 7 | updated 2026-09-11T02:36:24Z | pushed 2026-09-11T02:36:19Z
YZBRH/CTFOnlinePlatform-CoinCollector
一款国内CTF靶场的全自动签到获取金币的工具,支持NSSCTF,Bugku,攻防世界,CTFHub等靶场 | language: Python | stars: 9 | forks: 2 | updated 2026-03-19T03:40:03Z | pushed 2026-03-19T03:40:00Z
crispvibe/anna-agent-skills
Anna Agent Skills 为 AI 编程助手 (Windsurf/Cursor) 打造的专业技能集,覆盖全栈开发、安全攻防、逆向工程等领域。 | stars: 7 | forks: 3 | updated 2026-03-21T19:22:25Z | pushed 2026-03-18T06:33:33Z | homepage: https://www.anna.tf/
guchangan1/All-Defense-Tool
本项目集成了全网优秀的攻防武器工具项目,包含自动化利用,子域名、目录扫描、端口扫描等信息收集工具,各大中间件、cms、OA漏洞利用工具,爆破工具、内网横向、免杀、社工钓鱼以及应急响应、甲方安全资料等其他安全攻防资料。 | language: Python | stars: 8001 | forks: 1421 | updated 2026-09-11T06:11:22Z | pushed 2026-09-07T02:50:58Z
zhanglinglingc/lingops
LingOps(灵控) 是一个专为 AWD/AWDP 攻防竞赛设计的竞赛自动化平台,提供 IP探测、WebShell 管理、SSH 终端管理、基线加固、Flag 读取等核心功能,帮助参赛选手在比赛中高效管理多个目标。 | stars: 56 | forks: 1 | updated 2026-08-06T03:33:18Z | pushed 2026-07-09T07:38:50Z
yeasy/ai_security_guide
从原理到实践,全面掌握大语言模型安全攻防之道 | topics: ai, book, guide, llm, security | language: Python | stars: 104 | forks: 15 | updated 2026-09-10T01:07:55Z | pushed 2026-09-09T15:34:19Z | homepage: https://yeasy.gitbook.io/ai_security_gu...
Threekiii/Awesome-Redteam
一个攻防知识库。A knowledge base for red teaming and offensive security. | topics: command-and-control, execution, exploit, initial-access, lateral-movement, privilege-escalation, reconnaissance, red-teaming | language: Python |...
pentoo/pentoo-overlay
Gentoo overlay for security tools as well as the heart of the Pentoo Livecd | language: Shell | stars: 371 | forks: 106 | updated 2026-03-23T00:13:12Z | pushed 2026-03-23T00:13:06Z