Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
guzrex/FacturaScripts-RCE-Exploit
FacturaScripts RCE Exploit - Proof of Concept | language: Python
guillaume-rce/Gravity-Thief-API
language: TypeScript
the8frust/CVE-2026-1492
Exploit for CVE-2026-1492 affecting the WordPress User Registration plugin, allowing unauthenticated attackers to register accounts and escalate privileges to administrator via a logic flaw in membership handling. | lang...
BurningMarshmallow/rce-csharp
Naive RCE in .Net | language: JavaScript
VIIIm3r/langflow_testenv
Intentionally RCE vulnerable Langflow test environment | language: Python
stuartMoorhouse/CVE-2026-4342
language: Shell
hoodietramp/outpost
A lightweight Cloudflare Worker that listens for out-of-band callbacks and fires instant notifications via Discord and ntfy. Built for blind XSS, SSRF, and RCE testing. | language: JavaScript
TEXploited/CVE-2026-21992
CVE-2026-21992-Poc
thegenetic/CVE-2026-2964-Lab
language: JavaScript
thegenetic/CVE-2026-2964-Lab-Prototype-Pollution-to-RCE
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
detectviz/go-security-tools
本文以 Checkmarx 作為商業安全掃描的基準工具,探討如何使用 govulncheck、gosec、semgrep 三種開源工具作為補充,實現 零成本擴展 和 早期發現 的安全保障策略。旨在為開發團隊提供全面的安全工具比較分析和實務應用指南。 | topics: checkmarx, go, gosec, govulncheck, security-tools, semgrep | stars: 0 | forks: 0 | up...
zhuima/rtk
一个功能完整的Rust命令行安全工具包 | language: Rust | stars: 10 | forks: 0 | updated 2026-03-19T17:20:15Z | pushed 2025-10-14T09:17:25Z
RuoJi6/LinkSec
安全工具工作流 | stars: 2 | forks: 0 | updated 2025-11-19T03:33:28Z | pushed 2025-09-18T07:09:55Z
b0bac/SecurityTools
日常积累的安全工具与代码、脚本 | language: Python | stars: 45 | forks: 15 | updated 2025-12-09T10:29:13Z | pushed 2025-12-09T10:29:10Z
TaylorChen/omnitool
一个强大的浏览器安全工具扩展 | language: JavaScript | stars: 0 | forks: 0 | updated 2025-12-14T16:34:57Z | pushed 2025-12-14T16:34:54Z
RabitW/LaunchBox
LaunchBox 一款用于在 Mac 和 Windows 上快速启动和管理各类安全工具的渗透工具箱,支持多种类型工具的统一管理和快速启动。 | stars: 0 | forks: 0 | updated 2025-12-23T00:47:28Z | pushed 2025-12-14T09:21:17Z
wooluo/kali-mcp
一个模型上下文协议(MCP)服务器,将 Kali Linux 安全工具交给 AI使用,用于授权的安全测试和渗透测试。 | language: Python | stars: 0 | forks: 1 | updated 2025-12-25T01:05:18Z | pushed 2025-12-25T01:05:15Z
hack-umbrella/LLM-Security-Toolkit
把AI安全从"艺术"变成"科学" - 全面的LLM安全工具包 | stars: 1 | forks: 0 | updated 2025-12-28T10:36:44Z | pushed 2025-12-28T10:34:40Z
hack-umbrella/LLM-Security-Toolkit
把AI安全从"艺术"变成"科学" - 全面的LLM安全工具包 | language: Python | stars: 5 | forks: 0 | updated 2025-12-30T12:55:18Z | pushed 2025-12-28T14:17:54Z
goodtab/cpHexstrike
Hex@Strike v6.0具有具有自主AI代理、智能决策和漏洞智能的多代理架构。 Hex@Strike 是一款先进的 MCP 服务器,可让 AI 代理(Claude、GPT、Copilot 等)自动运行 150 多个网络安全工具,用于自动笔试、漏洞发现、漏洞利用自动化和安全研究。无缝连接具有现实世界攻击性安全能力的LLM。 www。hexstrike。com | language: Python | stars: 0 | forks...