Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
ray-goldman/ffmpeg-jellyfix
patched ffmpeg-tools for jellyfin to patch CVE-2026-8461 aka PixelSmash | language: PowerShell
BS2010-AirborneTroops/NEXT-SSRF
SSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF | language: Python
n0bitaemon/CVE-2026-26980-PoC
Ghost CMS Content API Blind SQL Injection | language: Python
EpSiLoNPoInTOrI/IKEV2-POC
IKEv2, ikeext.dll, CVE-2026-33824, double free, heap grooming, ROP, SKF fragmentation, Windows exploit, anti-debug, obfuscation, API hooking, shellcode, reverse shell | language: C++
SugiB3o/CVE-2026-31431
language: Python
Saku0512/CVE-2026-40176-poc
language: PHP
renat0z3r0/prefect-cve-2026-5366
PoC for CVE-2026-5366: git argument injection in Prefect's GitRepository leading to RCE on the worker. | topics: cve, poc, prefect, rce, security | language: Python
sec-zone/CVE-2026-36213
CVE-2026-36213 | Local Privilege Escalation in MEmu Android Emulator 9.2.7.0 via Insecure Service Binary Permissions | Patched in 9.3.2
Saku0512/CVE-2026-35585-poc
language: HTML
grayxploit/CVE-2026-48907
CVE-2026-48907 is a CVSS 10.0 pre-auth RCE in Joomla Content Editor affecting all versions ≤ 2.9.99.4. The Grayxploit team breaks down the 3-weakness chain — missing auth, no extension validation, and an unsafe upload fl...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Yeti-791/Tsec-Hackathon
腾讯云智能渗透黑客松 Official repository of Tencent Cloud Intelligent Penetration Hackathon. Showcasing top open-source projects of LLM-based autonomous penetration agents, including multi-agent collaboration, automated penetratio...
XCW-X/GoSecProbe
GoSecProbe 是一套全新打造的网络安全评估系统,后端以 Go 语言驱动,前端采用 Vue 3 构建,整体架构现代、响应迅速。该平台聚焦实战需求,融合了网络资产发现、服务端点盘点、漏洞验证(基于 POC)、智能测绘以及自动化报告输出等关键能力,意在替代传统商业扫描器。它专为渗透测试人员、安全运营团队及攻防演练角色设计,力求在功能深度、操作效率与扩展性之间取得平衡,打造一个直观、敏捷且功能完备的一站式安全分析环境。 | langua...
xxiu1/Co-sploit
交互式渗透测试系统 | language: Vue | stars: 0 | forks: 0 | updated 2026-03-22T06:01:32Z | pushed 2026-03-22T06:01:29Z
trkegamer169-svg/security-toolkit
stars: 0 | forks: 0 | 2026-03-19T08:48:25Z
informalsecurity/dfir_timeline_generator
language: HTML | stars: 0 | forks: 0 | updated 2026-03-17T20:13:20Z | pushed 2026-03-17T20:13:17Z
PassengerPrince/DFIR-Journey
The purpose of this repository is to track my journey into learning DFIR | stars: 0 | forks: 0 | updated 2026-03-18T02:47:31Z | pushed 2026-03-18T02:47:28Z
josh9deathclaw/dfir_simulation_internship
Controlled DFIR simulation and validation environment using curated datasets. | language: JavaScript | stars: 0 | forks: 0 | updated 2026-03-18T04:15:39Z | pushed 2026-03-18T04:15:36Z
mcbridemcl/hashimoire
A practical field codex of DFIR tools, commands, artifacts, and repeatable workflows. | stars: 0 | forks: 0 | updated 2026-03-18T04:24:52Z | pushed 2026-03-18T04:24:48Z
kyle-s-key/DFIR-Reverse-Shell-Analysis
Timelining a reverse shell compromise with FTK Imager. | topics: cybersecurity, cybersecurity-tools, cybersecurity-training, dfir, ftk-imager | stars: 0 | forks: 0 | updated 2026-03-18T04:44:29Z | pushed 2026-03-18T04:44...
google/cloud-forensics-utils
Python library to carry out DFIR analysis on the Cloud | language: Python | stars: 502 | forks: 90 | updated 2026-03-18T04:50:57Z | pushed 2026-03-18T04:50:53Z