Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
SyntaxSaiyan/CVE-2026-36851
Walkthrough and PoC of File path traversal vulnerability(CVE-2026-36851) for UnPoller 2.33.0
0xgh057r3c0n/CVE-2026-48907
CVE-2025-48907 - Unauthenticated RCE exploit for Joomla JCE < 2.9.99.5 | language: Python
J4ck3LSyN-Gen2/CVE-2026-6307-Longinus
CVE-2026-6307 PoC: Longinus - 2 Boundaries in One Bug https://nebusec.ai/research/v8-cve-2026-6307-writeup/) | language: Python
gl1tch0x1/DirtyClone
DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503 | language: C
1beelze/CVE-2026-11387
language: Python
0xh7ml/CVE-2026-27626-PoC
OliveTin is a self-hosted web UI for exposing predefined shell commands to end users. This repository contains a proof-of-concept demonstrating two independent OS command injection vectors in OliveTin's Shell mode execut...
Chromium: CVE-2026-13798 Heap buffer overflow in Chromecast
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2026">Google Chrome Releases</a> for mo...
Chromium: CVE-2026-13874 Inappropriate implementation in DataTransfer
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2026">Google Chrome Releases</a> for mo...
Chromium: CVE-2026-13953 Inappropriate implementation in SplitView
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2026">Google Chrome Releases</a> for mo...
Chromium: CVE-2026-14020 Insufficient validation of untrusted input in WebXR
<p>This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see <a href="https://chromereleases.googleblog.com/2026">Google Chrome Releases</a> for mo...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
kevinyang11102/bpiaknchnZ
"307-java基于云平台的信息安全攻防实训平台"是一款专注于实战训练的信息安全系统。其主要用途是通过模拟攻防场景,提供用户在信息安全领域的实操经验,核心功能包括攻防策略模拟、数据存储与分析。系统采用MySQL数据库和Java语言开发,致力于帮助用户深入理解信息安全概念,并掌握实际技能。 | stars: 0 | forks: 0 | updated 2026-02-04T06:01:49Z | pushed 2026-02-04T0...
superZhao913/UCAS_winmine_reverse
记录一下国科大网络攻防基础期末作业,扫雷逆向分析。。。虽然做的很烂 | stars: 1 | forks: 0 | updated 2026-02-04T09:12:13Z | pushed 2026-01-24T13:39:12Z
has2lab/OpenMalAttack
面向Windows PE恶意软件的攻防评估平台 | language: Python | stars: 2 | forks: 0 | updated 2026-02-04T18:47:04Z | pushed 2026-02-04T06:29:54Z
a1373827007/E-commerce-Attack-and-Defense-Lab-Demo
一个用户教学演示的商城攻防Demo,可进行SQL注入、RCE、XSS等漏洞的复现 | stars: 0 | forks: 0 | updated 2026-02-06T05:16:58Z | pushed 2026-02-25T03:45:21Z
liuzbin/soli-forge
红蓝攻防-区块链合约 [增强版] | language: Python | stars: 0 | forks: 0 | updated 2026-02-08T02:35:24Z | pushed 2026-02-08T02:35:21Z
USTCTI/sandbox
这是一个基于 Python 开发的自动化攻防沙箱测试系统。该系统能够模拟攻击者从本机对本机发起多种类型的网络攻击和系统渗透尝试,同时部署多层防御机制进行实时检测、拦截和响应。 | language: Python | stars: 0 | forks: 1 | updated 2026-02-09T19:53:51Z | pushed 2026-02-09T19:53:47Z
zhugemingjia/cloud-native-security-lab
这是一个基于Kubernetes和Docker的网络安全学习环境,将传统安全靶场与云原生技术结合。本项目旨在帮助学习者在真实的云原生环境中实践网络安全攻防技术。 | language: Makefile | stars: 0 | forks: 0 | updated 2026-02-16T17:32:44Z | pushed 2026-02-16T17:32:40Z
strangersinsist/Research-on-Network-Attack-and-Defense-Game-Model
网络攻防博弈模型研究 | stars: 0 | forks: 0 | updated 2026-02-18T15:28:18Z | pushed 2026-01-20T16:33:36Z
QuanQ1016/Cyber-offense-and-defense
网络攻防测试插件 | language: Python | stars: 1 | forks: 0 | updated 2026-02-20T05:01:40Z | pushed 2026-02-20T05:01:18Z
joohnny157/HackTheBox-notes
本仓库用于记录和分享本人 Hack The Box(HTB)靶场实战笔记, 围绕信息收集、漏洞利用、权限提升及攻击路径构建等环节, 系统化总结攻防思路与技术要点。 | stars: 4 | forks: 0 | updated 2026-02-26T10:46:58Z | pushed 2026-02-01T10:59:06Z