Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
SFTP root escape via component-agnostic prefix check in ssh_sftpd
Request smuggling via first-wins Content-Length parsing in inets httpd
CVE-2026-32775
plur1bu5/CVE-2025-2945-pgadmin-rce
Authenticated RCE in pgAdmin 4 (8.10–9.1) via eval() injection in the Query Tool. This is an updated PoC with compatibility fixes for pgAdmin 9.x auth changes | language: Python
cianananan/Umbraco-Template-RCE-PoC
Proof-of-concept code to exploit Umbraco CMS's template editor allowing arbitrary C# code injection. | language: C#
ather182/phantom_exploitV1
PHANTOM EXPLOIT v1.0 - Advanced penetration testing tool with zero-day exploitation, RCE, and multi-platform support (Windows/Linux/Android). Features AES encryption, anti-VM, and Telegram C2. For educational use only. C...
Chromium: CVE-2026-3909 Out of bounds write in Skia
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2021">Google Chrome Releases</a> for mo...
zcode-r/rce-engine
language: TypeScript
HD0x01/CVE-2026-24061-NSE
The script performs a full Telnet negotiation mirroring the exact byte sequence of a real telnet -a client session. | topics: cve-2026-24061, inetutils, nmap, nse, penetration-testing, telnet, vulnerability-detection | l...
0xdeadbit/CVE-2025-50881
API SAS Use It Flow RCE
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
nahomseb/observability-showcase
Provide a production-ready observability stack with monitoring, logging, and security tools for containerized infrastructure using Grafana, Prometheus, Loki, and OpenTelemetry. | topics: appdynamics, day2, deprecated, do...
AlejandroZaZ/cybersecurity-tools
A collection of open-source, terminal-based security tools for network analysis, penetration testing, and vulnerability assessment. Use these tools responsibly to enhance cybersecurity research and ethical hacking. | top...
infinition/Bjorn
Bjorn is a powerful network scanning and offensive security tool for the Raspberry Pi with a 2.13-inch e-Paper HAT. It discovers network targets, identifies open ports, exposed services, and potential vulnerabilities. Bj...
JKUPIR3/kaspersky-tools
Kaspersky-tools offers security tools inspired by real-time protection, anti-phishing, and vulnerability scanning for safe, educational testing 🐙 | topics: csv, data-feeds, fidelity-atp-uninstall-tool, iocs, kaspersky-se...
zishnusarker/password-security-toolkit
A Python-based toolkit for password strength analysis, hash identification & cracking, secure password generation, and breach database checking, built to demonstrate cryptographic security fundamentals. | language: Pytho...
blank-0x/privacy-shield
Android security & privacy app — WiFi/BLE device detection, network analysis, CVE lookup, and security tools suite | topics: android, bluetooth, chaquopy, cybersecurity, jetpack-compose, kotlin, network-scanner, privacy,...
KZ5017/BoberAutoScanner
BoberAutoScanner is a Python-based reconnaissance wrapper that orchestrates multiple well-known offensive security tools into a semi-automated workflow. | language: Python | stars: 0 | forks: 1 | updated 2026-03-16T20:10...
NINJA45FFS1/security-tools-hacking
🔍 Enhance your security skills with this modular Windows framework for penetration testing, covering reconnaissance, exploitation, and post-exploitation tasks. | topics: docker-registry, ethical-hacking, gathering, hacki...
Gnro-19/cc-filter
🔒 Protect sensitive data with cc-filter, a security tool that blocks unauthorized access to Claude Code, ensuring safer AI interactions. | topics: creative-commons, cuda-kernels, data-engineering, filters, fondant, insta...
deryyapolat/Password-Strength-Checker-and-Generator
A password security tool that evaluates password strength and generates customizable secure passwords. Built using Python and HTML. | language: HTML | stars: 0 | forks: 0 | updated 2026-03-16T20:15:02Z | pushed 2026-03-1...