Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
HackSpeak/CVE-2026-64564
SCTPhantom (CVE-2026-64564) SCTP ASCONF DEL-IP UAF LPE PoC (Debian 13 6.12.95) — community PoC mirror, MIT; for authorized security testing | language: C
Aoripus-LTD/Zapscape-Fix
Generic kernel live patch for the KVM/x86 shadow-MMU use-after-free (Zapscape, CVE-2026-64561) | language: Shell
Meowkis/tcp-zerocopy-sm
ghostlock + tcp-zerocopy hybrid CVE-2026-43499 adaptation for samsung kernel | language: C
Hunt-Benito/one-multiply-too-many-cve-2026-70638-llama-cpp-android-jni-integer-overflow
language: Python
oscerd/CVE-2026-64640
Reproducer for CVE-2026-64640 — Apache Polaris Iceberg REST register/register-view vends storage credentials and reads an attacker-chosen metadata location before validating allowedLocations (confused-deputy cross-tenant...
ethanolgolf/CVE-2026-64564
LPE on Deb | language: C
alreadyClosed/CVE-2026-39987
CVE-2026-39987 for marimo 0.20.4 PoC | topics: ctf, cve, cve-2026-39987, educational, marimo, tool | language: Python
WismanSec/sharepoint-2026-poc
PoC, IOCs, and detection logic for the SharePoint /_trust WS-Federation BinaryFormatter deserialization chain. Lab reconstruction covering unauthenticated RCE, in-process machine key theft, and the artifacts each variant...
HORKimhab/CVE-2026-44613
CVE-2026-44613 | topics: collection-cve-poc, cve-2026-44613, poc-cve-collection | language: Python | homepage: https://www.ox.security/blog/cve-2026-44613-turning-a-csrf-into-silent-unauthorized-actions/
JohenLastGen-JLG/CVE-2026-11961
CVE-2026-11961 — UserRegistration: WordPress User Registration <= 5.2.2 Privilege Escalation. Misconfigured Membership Roles → Unauthenticated Admin Creation → Site Compromise. CVSS 8.1 | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
aqio84skux/JCZkDecYXj
2025年网络工程毕设一套(论文+程序源码文件)浏览器攻防技术的研究与实现定稿.zip | stars: 1 | forks: 0 | updated 2026-08-17T10:48:41Z | pushed 2026-08-17T10:47:45Z
q4d3dmbnqp/xRLQDSuCTX
2025年网络工程毕设一套(论文+程序源码文件)浏览器攻防技术的研究与实现定稿.zip | stars: 0 | forks: 0 | updated 2026-08-17T12:57:11Z | pushed 2026-08-17T12:55:25Z
zhuatech-cn/zhuatech-agentsec
知华科技 AgentSec 社区源码版|Agent 红队测试与发布门禁 | language: Java | stars: 0 | forks: 0 | updated 2026-08-22T02:32:28Z | pushed 2026-08-22T02:32:24Z | homepage: https://www.zhuatech.cn/
DJAzzs/agent-red-team
全球首个开源的中文 AI Agent 红队攻击与安全评估框架 Global first open-source Chinese AI Agent red-teaming & security evaluation framework | language: Python | stars: 2 | forks: 0 | updated 2026-08-24T06:16:52Z | pushed 2026-08-13T15:14:25Z
xuzw0818/ai-investment-agent
个人投资分析 Agent(Claude Code 工作区):Skill 结构化取数 + 私有知识库对账纪律 + 对抗式复核红队 | topics: ai-agent, claude-code, investment, llm, personal-finance | language: Python | stars: 1 | forks: 0 | updated 2026-08-15T01:44:09Z | pushed 2026-08-...
lxr-source/zhangzhou-website
信息工程学院三下乡六星踏漳巡红队实践网站 | language: HTML | stars: 0 | forks: 0 | updated 2026-08-15T02:08:26Z | pushed 2026-08-15T02:08:10Z
wanglin1111111/dl-training-testing
深度学习模型训练(SFT/RLHF/GRPO/DPO)与测试场景引擎 — 7阶段训练闭环、红队测试、超参搜索、实验追踪,以阿里云百炼bl CLI为执行层 | topics: agent-skill, bailian, deep-learning, evaluation, fine-tuning, llm, reinforcement-learning | language: Python | stars: 0 | forks: 0 | ...
ai798-Lab/sophon
给一个产品 URL,输出一份每条结论都挂得上证据的深度拆解报告:它靠什么获客、怎么赚钱、有没有护城河、你能抄什么。能进登录态实测付费墙与体验,交付前过十项机械检查加一轮独立红队。Agent Skill,不绑定客户端。 | topics: agent-skill, agent-skills, ai-agent, claude-code, codex, competitive-analysis, competitor-research, g...
SeaOf0/dsh-redteam-model
基于dsh web实现的多种模式,目的是服务于redteam进行授权的安全研究,覆盖渗透测试、红队评估、代码审计等范围领域,请勿用于非法行为。(允许二开,赋予模块各位自己的业务逻辑,方法论只有自己熟练的才好用,好的方法论=好的生态) | topics: dsh-plugin | language: Python | stars: 274 | forks: 27 | updated 2026-09-07T01:17:53Z | pushe...
simimasai111/ai-jailbreak-prompts
整合 GitHub 公开的 AI 越狱/破解提示词研究资料(DAN 系列、角色扮演、开发者模式、编码混淆等),供 LLM 安全红队研究与防御参考 | language: C | stars: 53 | forks: 3 | updated 2026-09-06T00:10:18Z | pushed 2026-08-15T08:39:51Z