Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
OlivierLaflamme/UniBLEed
Unitree G1 RCE PoC & Scripts (CVE-2026-76639 / CVE-2026-76640) technical details at boschko.ca/g1-ble-rce/ | language: Python
SneakyNachos/CVE-2026-74939-escape-the-mac-n-cheese-box
Firefox content-to-parent IPDL privilege escalation (N-day, bug 2054416): forged PDocumentChannel with RemoteTypeOverride -> privilegedabout process placement, via mojo-port send-path injection from a compromised content...
Slagzz/CVE-2026-9254
TP-Link Archer BE800 V1 — Parental Control LAN RCE | language: Python
Boreas37/CVE-2026-43914-PoC
PoC for CVE-2026-43914: Vaultwarden <1.35.4 email-2FA brute-force bypass password oracle. Stdlib-only Python. | language: Python
oscerd/CVE-2026-63039
Reproducer for CVE-2026-63039 (Apache InLong AuditAlertRule MyBatis ORDER BY SQL injection via orderField/orderType) | language: Java
oscerd/CVE-2026-28672
Reproducer for CVE-2026-28672 (Apache Ranger UnixUserGroupBuilder OS command injection via username in the unixusersync module) | language: Java
oscerd/CVE-2026-78329
Reproducer for CVE-2026-78329 (Apache Camel camel-undertow header filter strategy not applied, websocket.* injection) — Camel Spring Boot | language: Java
oscerd/CVE-2026-71300
Reproducer for CVE-2026-71300 (Apache Camel camel-atmosphere-websocket dispatch header injection) — Camel Spring Boot | language: Java
oscerd/CVE-2026-60093
Reproducer for CVE-2026-60093 (Apache Camel camel-azure-storage-datalake downloadToFile path traversal) — Camel Spring Boot + Camel Quarkus | language: Java
oscerd/CVE-2026-66906
Reproducer for CVE-2026-66906 (Apache Camel camel-azure-storage-blob downloadBlobToFile path traversal) — Camel Spring Boot + Camel Quarkus | language: Java
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
2022计算机毕设一套 终稿 (论文+程序源代码+使用说明)一款支持通过规则扩展进行终端防护对抗的后渗透框架设计与实现_596a004a-efc5-4543-a2ed-82b6a5ad11f5.zip
创建者: fireditoo
2022计算机毕设一套 终稿 (论文+程序源代码+使用说明)一款支持通过规则扩展进行终端防护对抗的后渗透框架设计与实现_596a004a-efc5-4543-a2ed-82b6a5ad11f5.zip
All collection of my backdoor (webshell, rootscript, LPE, etc)
创建者: exphr
All collection of my backdoor (webshell, rootscript, LPE, etc)
2022计算机毕设一套 终稿 (论文+程序源代码+使用说明)基于django的防一般web漏洞的人事管理系统_911fe0c2-b143-4a6f-938f-09a06ca2da8e.zip
创建者: voldenbar
2022计算机毕设一套 终稿 (论文+程序源代码+使用说明)基于django的防一般web漏洞的人事管理系统_911fe0c2-b143-4a6f-938f-09a06ca2da8e.zip
A Python-based exploitation framework for CVE-2026-75604 that enables authorized penetration testers to validate Next.js Windows cache traversal vulnerabilities. Deploys reverse shells and webshells via path traversal, with built-in target verification and proxy support for seamless integration into standard pentest workflows.
创建者: e4zyy
A Python-based exploitation framework for CVE-2026-75604 that enables authorized penetration testers to validate Next.js Windows cache traversal vulnerabilities. Deploys reverse shells and webshells via path t...
基于qt的跨平台远控
创建者: peilin-liu
基于qt的跨平台远控
前后端程序源代码)41.zip
创建者: lights-rix
2022软件工程毕设一套 终稿 基于python的web安全漏洞渗透测试系统设计与实现(论文+
数据库)e4.zip
创建者: lights-rix
2022软件工程毕设一套 终稿 基于Python的信息收集与漏洞检测器设计与实现_(论文+前后端程序源代码+
数据库)9c8.zip
创建者: lights-rix
2022软件工程毕设一套 终稿 基于Python爬虫的软件漏洞风险预警管理系统设计与实现_ (论文+前后端程序源代码+
2022计算机毕设一套 终稿 (论文+程序源代码)基于Java的图形化漏洞脚本快速构建和管理使用工具_57fe1c5f-f565-44ed-a0d4-12e388344b1a.zip
创建者: gogoore
2022计算机毕设一套 终稿 (论文+程序源代码)基于Java的图形化漏洞脚本快速构建和管理使用工具_57fe1c5f-f565-44ed-a0d4-12e388344b1a.zip
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于shiro框架的渗透测试研究_e55821e8-81e7-4719-aaf7-abbfc684ba7d.zip
创建者: owenbrave
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于shiro框架的渗透测试研究_e55821e8-81e7-4719-aaf7-abbfc684ba7d.zip