Intelligence Digest
威胁情报
统一威胁情报视图,聚合漏洞监控、网安开源项目与官方源情报
漏洞监控
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
2945总量
网安开源项目
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
1545总量
威胁情报
来自 360、奇安信、斗象等官方站点的公开情报聚合。
228总量
0xgh057r3c0n/CVE-2026-3844
WordPress - Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload | language: Python
kuuila/daily-2026-04-21-percolation
🦋 蝴蝶效应 · 渗透网络 — 一粒沙子如何崩溃整个帝国 | language: C++ | stars: 0 | forks: 0 | updated 2026-04-21T04:31:54Z | pushed 2026-04-21T04:31:49Z
ISC Stormcast For Wednesday, April 15th, 2026 https://isc.sans.edu/podcastdetail/9892, (Wed, Apr 15th)
bartfroklage/cve-2026-41679
language: Python
kukuxNd/daily-2026-04-21-percolation
🦋 蝴蝶效应 · 渗透网络 — 一粒沙子如何崩溃整个帝国 | language: C++ | stars: 0 | forks: 0 | updated 2026-04-21T04:31:38Z | pushed 2026-04-21T04:31:34Z
Scanning for AI Models, (Tue, Apr 14th)
Starting March 10, 2026, my DShield sensor started getting probe for various AI models such as claude, openclaw, huggingface, etc. Reviewing the data already reported by other DShield sensors to ISC, the DShield database...
0xBlackash/CVE-2026-41651
CVE-2026-41651 | language: Python
Yliken/ai4
2026腾讯云第二届智能渗透黑客松参赛作品 | language: Go | stars: 2 | forks: 0 | updated 2026-04-21T02:15:16Z | pushed 2026-04-20T02:25:03Z
Microsoft Patch Tuesday April 2026., (Tue, Apr 14th)
This month&#;x26;#;39;s Microsoft Patch Tuesday looks like a record one, but let&#;x26;#;39;s look at it a bit closer to understand what is happening
bluedragonsecurity/CVE-2026-31429-POC
POC for CVE-2026-31429 (Linux Kernel >= 6.3 < 6.12.82 Slab Cross-Cache Confusion) - vulnerability discovered by Antonius - w1sdom - bluedragonsec.com | language: C
xnftrone/Kap0k-Agent-TP
腾讯云智能渗透Agent by Kap0k | language: Python | stars: 0 | forks: 0 | updated 2026-04-21T01:14:32Z | pushed 2026-04-21T01:14:28Z
Axios爆SSRF漏洞,特定条件下可导致RCE
立即查看详情 →
im-hanzou/CVE-2026-3844
Breeze Cache WordPress <=2.4.4 allows unauthenticated file upload via fetch_gravatar_from_remote when local gravatar hosting is enabled. | topics: auto-exploit, breeze, cve-2026-3844, exploit, mass-exploit, python, rce, ...
Yn8rt/DDDD-DL
重构DDDD,与DLDL联动快速实现POC与指纹的结合,提高红队资产发现与打点效率 | language: Go | stars: 2 | forks: 0 | updated 2026-04-21T00:57:42Z | pushed 2026-04-17T03:34:58Z
Critical Patches Issued for Microsoft Products, April 14, 2026
<p>Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution. Successful exploitation of the most severe of these vulnerabilities could result in ...
Toouch67/CVE-2026-1459-POC
POC for the CVE-2026-1459 which payload changes root SSH password. | language: Python
tybghii/tech-xcio
网络安全工具箱 | stars: 0 | forks: 0 | updated 2026-04-20T22:21:58Z | pushed 2026-04-20T22:21:54Z
Multiple Vulnerabilities in Fortinet Products Could Allow for Arbitrary Code Execution
<p>Multiple vulnerabilities have been discovered in Fortinet products, the most severe of which could allow for arbitrary code execution.</p><ul><li>FortiAnalyzer is a unified security operations platform that consolidat...
CipherCloak/CVE-2026-41651
language: C
tybghii/tech-lmtd
网络安全工具箱 | stars: 0 | forks: 0 | updated 2026-04-20T22:20:29Z | pushed 2026-04-20T22:20:28Z
Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
<p>Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.</p><ul><li>Adobe Acrobat Reader is a free, widely used software application from Adob...
kaleth4/CVE-2026-41303
qq547820639/suno-ai-music-industrial-handbook
本手册是一套基于 Suno V5.5 2026.04 版本验证的 AI 音乐工业化生产体系,以“五步风格解构法”为核心,将任意歌手或曲风转化为可量化参数卡,配合三层防风格渗透标签、量化评估公式与 7 套热门风格模板,实现从风格分析、歌词优化、Prompt 组装到批量生成的全流程标准化作业,帮助创作者稳定产出高质量原创 AI 歌曲。 | stars: 2 | forks: 0 | updated 2026-04-26T15:09:42Z ...
ISC Stormcast For Tuesday, April 14th, 2026 https://isc.sans.edu/podcastdetail/9890, (Tue, Apr 14th)
casp3r0x0/CVE-2026-34159
0 Click RCE exploit for CVE-2026-34159 Lama.cpp RPC server | language: Python
atreasureboy/ovogo
Ovogo: Autonomous Red Team Coordination Engine. 基于 AI Agent 的自动化渗透测试与红队协同引擎(专为靶场环境设计),支持 MITRE ATT&CK 攻击链生成、多节点并行利用与 Flag 自动化收集。 | topics: ai-agent, automated-security, ctf-solver, cyber-range, langgraph, llm-security, m...
Scans for EncystPHP Webshell, (Mon, Apr 13th)
Last week, I wrote about attackers scanning for various webshells, hoping to find some that do not require authentication or others that use well-known credentials. But some attackers are paying attention and are deployi...
0xBlackash/CVE-2026-39813
CVE-2026-39813
pqoeiekakzbc647483/blockchain-innovate-contract-suite
一站式区块链创新智能合约套件,基于Solidity构建,集成去中心化金融、数字藏品、链上治理、数据存储、安全工具等多元功能,支持多链适配,为Web3应用提供开箱即用的模块化合约与工具代码。 | language: Solidity | stars: 0 | forks: 0 | updated 2026-04-20T12:34:04Z | pushed 2026-04-20T12:33:08Z
ISC Stormcast For Monday, April 13th, 2026 https://isc.sans.edu/podcastdetail/9888, (Mon, Apr 13th)