momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 10898 条情报 漏洞监控 6349 / 网安开源项目 4549
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
FIPS mode assertion failure via malicious CERT payload
rmhowe425/POC-CVE-2026-0769
Proof of concept exploit code for CVE-2026-0769 | language: Python
tcollins-hashicorp/vault-cve-2026-5006-audit
language: HTML
CyberAlp0/SmarterMail-CVE-2026-24423
Unauthenticated RCE PoC for CVE-2026-24423 in SmarterTools SmarterMail (ConnectToHub). For authorized security testing, CTFs, and research only. | topics: ctf, cve-2026-24423, cwe-306, cyberalp0, cybersecurity, cyberskii...
4n4s4zi/tfo-connect-bypass
Using TCP Fast Open to bypass syscall-based networking rules (CVE-2026-63828/CVE-2026-72243 PoC) | topics: cve-2026-63828, cve-2026-63828-poc, cve-2026-72243, cve-2026-72243-poc | language: Go
R4Wbytes/phpbb-cve-2026-48611-scanner
A Python-based security scanner for CVE-2026-48611, designed to identify vulnerable phpBB installations through version detection and conservative authentication-bypass verification. Supports single targets or URL lists,...
rmhowe425/POC-CVE-2026-0768
Proof of concept exploit code for CVE-2026-0768 | language: Python
realalexandergeorgiev/artifactory-CVE-2026-82329-poc.py
CVE-2026-82329 — JFrog Artifactory unauthenticated authentication bypass ("phantom join key" -> forged service admin token) | language: Python
ByteV0rtex/CVE-2026-65330
CVE-2026-65330 PoC — setxattr PAC bypass via fixed #0x307a diversifier (iOS 26.6 / 23G71) | topics: cve, cve-2026, ios, kernel, poc, reverse-engineering, security, security-research, vulnerability | language: C
ByteV0rtex/CVE-2026-65343
CVE-2026-65343 PoC — AppleKeyStore OOB read → KASLR defeat (iOS 26.6 / 23G71) | topics: cve, cve-2026, ios, kernel, poc, reverse-engineering, security, security-research, vulnerability | language: Objective-C
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
sunminemei/kerberos-pentest
内网渗透skill | stars: 2 | forks: 1 | updated 2026-09-01T03:07:49Z | pushed 2026-09-01T03:07:37Z
okdkebm/plutox-sec-forge
AI自动渗透 | language: Python | stars: 1 | forks: 0 | updated 2026-09-01T03:39:53Z | pushed 2026-08-31T15:22:30Z
litsasuk/Unity
一个快速启动渗透测试脚本、程序和工具的控制台 | language: Python | stars: 1 | forks: 0 | updated 2026-09-01T03:57:30Z | pushed 2026-09-01T04:00:01Z
AAAAAAAAAA6-FY/VULNCLAW
VULNCLAW 渗透测试平台|AGPL-3.0-or-later WITH Classpath-exception-2.0 开源;37 BaseEngines × AI v100 编排;DAG 流水线;分布式 master-worker;Burp Suite 桥 v1.0.8;MCP 原生接口;商业授权见 README | language: Python | stars: 0 | forks: 0 | updated 2026-09...
kwekre/security-skills
1404 安全与渗透测试 Agent Skills — 自包含、跨平台、按 35 类整理 (pentest / CTF / red-team / OSINT / web-security) | topics: agent-skills, bugbounty, ctf, offensive-security, osint, pentest, red-team, security, skill, web-security | languag...
kwekre/ai-pentest-guide
从 0 到能打:一份带 AI 辅助的渗透测试开源教程(基础 → AI 方法论 → 靶场实战 → 报告) | topics: ai, beginner, ctf, cybersecurity, learning, pentest, red-team, security, tutorial, web-security | stars: 0 | forks: 0 | updated 2026-09-01T07:04:03Z | pushed ...
kabuqin/autovibe_pentest
基于 Vibe Pentest 的增强版本,采用 AI Agent 架构的自动化渗透测试工具。支持多 Agent 并行执行,能够对 Web 应用、API、管理后台等进行全面的黑盒渗透测试,输出稳定可靠的安全报告。 | language: Python | stars: 4 | forks: 1 | updated 2026-09-01T07:17:38Z | pushed 2026-08-31T16:02:34Z
chenow9/umbra
Umbra — self-hosted L4 stealth intranet penetration gateway (自托管的L4隐蔽式内网渗透网关) | topics: go, l4, yamux | language: TypeScript | stars: 0 | forks: 0 | updated 2026-09-01T07:23:53Z | pushed 2026-09-01T07:20:57Z | homepage: ...
Jaycee701/jiejieskill
基于 PTES 7 阶段的一站式渗透测试方法论技能,覆盖 Web 漏洞分析、国密加解密测试、认证爆破、内网域渗透、AI-LLM 新兴攻击面。 | language: Python | stars: 2 | forks: 0 | updated 2026-09-08T08:51:15Z | pushed 2026-09-08T08:49:54Z
lanyz1/TGSEC-Qtzuu
TGSEC社区 学习渗透套件 — 按攻击面组织的渗透测试知识库,可直接喂给AI自动配置使用 | language: Python | stars: 0 | forks: 0 | updated 2026-09-12T12:15:37Z | pushed 2026-09-11T07:49:23Z