momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 7165 条情报 漏洞监控 4635 / 网安开源项目 2530
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
jayhutajulu1/CVE-2026-43284-DirtyFrag-PoC
Proof-of-concept for CVE-2026-43284 — 4-byte XFRM/ESP page-cache write primitive to patch a setuid binary (x86_64, user namespaces). Includes kernel preflight + SUID scan. | language: C
jayhutajulu1/CVE-2026-43494-PinTheft-PoC
Proof-of-concept for CVE-2026-43494 (PinTheft): Linux LPE via RDS zerocopy refcount bug + io_uring fixed buffers → SUID page-cache overwrite. Authorized research only. | language: C
MrRawBit/SonicWall-SMA1000-Zero-Day-IoC-Check
Unofficial Bash IoC checker for SonicWall SMA1000 appliances affected by actively exploited CVE-2026-15409 and CVE-2026-15410. | language: Shell
0xBlackash/CVE-2026-15409
CVE-2026-15409 | language: Python
Sana-404/CVE-2026-8388-Mitigation-and-Detection
dfs333/trivysupplychainanalysis
Formally verified, quantitative reconstruction of the Trivy/TeamPCP GitHub Actions supply-chain attack (CVE-2026-33634): a TLA+/TLC incident model, PRISM probabilistic analysis, and a 189-workflow corpus study. | topics:...
babyshen/CVE-2026-57155
OPNsense Root RCE (CVE-2026-57155) | language: Python
minq0x1412/CVE-2026-21955
language: C
JFOZ1010/CVE-2026-14871
BOLA/IDOR vulnerability in osTicket ajax.tickets.php | Responsible Disclosure | language: Python
Ch4120N/CVE-2026-58138
CVE-2026-58138 — Conductor (3.21.21..<3.30.2) unauthenticated RCE via INLINE GraalVM evaluator (HostAccess.ALL). Lab + PoC, verified e2e (root). | topics: bug-bounty, code-injection, conductor, cve-2026-58138, cwe-94, cy...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Yn8rt/DDDD-DL
重构DDDD,与DLDL联动快速实现POC与指纹的结合,提高红队资产发现与打点效率 | stars: 56 | forks: 3 | updated 2026-08-06T11:52:01Z | pushed 2026-07-24T06:59:58Z
nico-zhuang/ask-five-pro
Ask Five Pro — 开箱即用的专家议会系统,内置 34 位跨领域专家,支持共识/对抗/红队/陪审团/预审/淬火六种议会模式。v2.0.6 | language: Python | stars: 3 | forks: 0 | updated 2026-08-01T05:30:03Z | pushed 2026-08-01T05:29:58Z
icecliffs/nextwq
QQ小程序反编译逆向/微信小程序反编译逆向/红队攻击面分析/快速漏洞/检查/筛查 | stars: 62 | forks: 5 | updated 2026-07-27T06:21:38Z | pushed 2026-06-13T04:14:17Z
chAng-L19/codex-redteam-mode
针对于红队攻击思维做出的red team模式(破限项目,封号概不负责)##可自行适配其他Agent。项目问题请提issue | topics: ai, ai-hacking, hacking-tool, penetration-testing, red-team, redteam, redteam-tools | language: Python | stars: 925 | forks: 126 | updated 2026-08-0...
zzqsec/ai-redteam-notes
AI 驱动的红队免杀知识库 — AI-generated red team evasion notes | stars: 55 | forks: 10 | updated 2026-08-07T07:51:01Z | pushed 2026-06-23T13:45:54Z
webzzaa/pscan
基于 [fscan](https://github.com/shadow1ng/fscan) v2.1.3-rc 修改,针对红队场景进行了参数混淆与特征规避。 | language: Go | stars: 80 | forks: 18 | updated 2026-08-06T03:24:12Z | pushed 2026-07-02T09:47:47Z
LeifDiao/demand-radar
Validate whether a demand is real before you build it — a Claude Code plugin: two evidence pillars, a 7-axis scorecard, an adversarial red-team, an answer-first report. Zero login. · 在动手之前验证「这个需求是不是真的」的 Claude Code 插件:双支...
uninhibited-scholar/agent-redteam
AI Agent 红队安全测试平台 — CLI · TUI · Dashboard | 四维攻击 · 588+ 测试样本 · OWASP LLM Top 10 对齐 | topics: agent-security, ai-safety, cli, llm-security, owasp, prompt-injection, python, red-team, security-testing | language: TypeScrip...
katejianglaw/china-litigation-rehearsal
中国大陆民商事诉讼庭前预演与败诉风险排查 Codex Skill;引导律师进行快速体检、标准预演、法官追问、红队攻防和庭前实战手册整理。PRC civil/commercial litigation rehearsal skill for Codex; rehearsal only, not legal advice. | stars: 4 | forks: 0 | updated 2026-07-31T01:20:44Z | push...
ekkoo-z/KubeTrail
KubeTrail(云迹) 是一个面向 Kubernetes 授权红队评估与防御验证的容器内态势感知、攻击面发现和 AI 辅助攻防编排工具 | language: Go | stars: 60 | forks: 4 | updated 2026-08-12T03:45:42Z | pushed 2026-08-07T16:08:37Z