Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
CVE-2026-19177 Insufficient validation of untrusted input in UI
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19176 Use after free in Skia
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19175 Use after free in Payments
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19174 Integer overflow in V8
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19173 Out of bounds write in Skia
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19172 Use after free in Views
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19171 Use after free in Media
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19170 Use after free in WebGL
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19169 Insufficient validation of untrusted input in Contextual Tasks
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
CVE-2026-19168 Inappropriate implementation in V8
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2025">Google Chrome Releases</a> for mo...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
aptes-set/sentinel-x
Sentinel-X 是一个基于 Spring Boot 构建的安全管理平台后端项目,采用分层架构设计,逐步实现用户认证、JWT 双 Token 机制、权限管理、异常处理及安全审计等核心能力。项目以安全性、可维护性和模块化为设计目标,后续将扩展后台管理、Python 安全工具与自动化扫描能力,最终形成集 Web 管理平台与安全工具链于一体的综合安全项目。 | language: Java | stars: 0 | forks: 0 | ...
hongyingit/HongYingClub-IP-PV-DDOS-Toolkit
HongYingClub(HYC)网络安全工具集。包含基于 Web 的 IP/PV 流量测试工具,支持代理池、随机请求头伪造与请求统计;以及基于 PyQt6 的桌面 DDOS 压力测试工具,支持多源代理获取、代理连通性检测与并发控制。界面支持中英文切换,附带 Python 打包脚本,可一键生成可执行文件。 | topics: authorizedtesting, cybersecurityresearch, ddostesting, l...
MonkeyKing0227/CyberSecurity-Agent
面向多场景网络安全任务的自主决策智能体,支持任务理解、智能规划、安全工具调用、受控执行、证据验证与全流程审计。 | language: Python | stars: 0 | forks: 2 | updated 2026-08-23T14:29:53Z | pushed 2026-08-23T14:28:17Z
caiji-maker/agent-redteam
AI Agent 安全红队测试平台 — 11 种攻击类型 · 130+ 载荷 · 对比测试量化防护效果Automated red-teaming for AI Agents — 11 attack types, 130+ payloads, comparison testing to quantify defense effectiveness | language: Python | stars: 1 | forks: 0 | upd...
caiji-maker/waf-ml
从 Nginx Access 日志训练 LightGBM 模型检测 Web 攻击,13 步管线覆盖解析→标注→特征→训练→Replay→红队→规则覆盖完整闭环Train LightGBM models to detect web attacks from Nginx access logs. A 13-step pipeline covering parse → label → feature engineering → train →...
245678000000/china-legal-os
面向中国大陆企业法务的模块化 AI 工作系统。事实分类、法定要件拆解、证据矩阵核验、红队对抗与商业落地决策。 | topics: ai-agents, chinese-law, contract-review, enterprise-legal, legal-ai, legal-tech, llm | language: Python | stars: 0 | forks: 0 | updated 2026-08-19T09:55:09...
DSH skill: 分布式排障, 应急响应与根因分析(受 wshobson/agents 38k★ 启发)
创建者: satan9394
DSH skill: 分布式排障, 应急响应与根因分析(受 wshobson/agents 38k★ 启发)
开源透明的网络安全学习工具集,由TACS工作室维护,所有脚本均为纯Python实现,无恶意后门。仅用于已获书面授权的安全测试与个人设备自查,违规使用后果自负。
创建者: TACS-Studio
开源透明的网络安全学习工具集,由TACS工作室维护,所有脚本均为纯Python实现,无恶意后门。仅用于已获书面授权的安全测试与个人设备自查,违规使用后果自负。
批量哈希修改工具。通过底层物理簇排序(HDD优化)与零分配流式技术,毫秒级修改文件指纹。专为规避网盘秒传、特征码检测设计,支持时间戳冻结,在不破坏文件的前提下实现云端去重绕过。
创建者: a1113622001
批量哈希修改工具。通过底层物理簇排序(HDD优化)与零分配流式技术,毫秒级修改文件指纹。专为规避网盘秒传、特征码检测设计,支持时间戳冻结,在不破坏文件的前提下实现云端去重绕过。
一组可独立装载的 Agent / Claude Code Skills:编码行为准则、横切规范、多仓脚手架与多 agent 代码审计
创建者: 0xkangl
一组可独立装载的 Agent / Claude Code Skills:编码行为准则、横切规范、多仓脚手架与多 agent 代码审计