Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
abraxas/CVE-2026-61628
CVE-2026-61628 - nginx-ignition - High 8.1 - Unauthenticated Privilege Escalation (Administrator Account Creation) | language: Python
rmhowe425/POC-CVE-2026-93674
POC-CVE-2026-93674 Authenticated Blind command injection proof of concept exploit code | language: Python
libXrender RenderQueryPictFormats Reply Heap-based Buffer Overflow
libX11 XkbGetMap Reply Heap-based Buffer Overflow
Gillarchnganasan2735/CVE-2026-41089-Netlogon-RCE-PoC
Automate Netlogon CVE-2026-41089 validation and defensive testing through integrated AI security workflows, enabling rapid risk assessment and mitigation verification. | topics: active-directory, buffer-overflow, cve-202...
coactionbrittlemaidenhair51/coactionbrittlemaidenhair51.github.io
Explore and validate CVE-2026-42978 PoC with an integrated AI security tool, multi-protocol terminal, and autonomous agent suite for Windows Push Notifications. | language: HTML | homepage: https://github.com/coactionbri...
coactionbrittlemaidenhair51/CVE-2026-42978-PoC-Research
Exploit and analyze CVE-2026-42978 with a Windows Push Notifications module for AI security, multi-protocol terminal, and autonomous agent suite. | topics: ai-security-tool, cve-2026-42978, cve-2026-42978-poc, cwe-362, l...
rmhowe425/POC-CVE-2026-93680
Proof of concept exploit code for CVE-2026-93680 | language: Python
madfxr/xss2shell-poc
XSS2Shell: WordPress Preauth XSS to RCE Chain (CVE-2026-64638) | topics: poc, proof-of-concept, whitebox-penetration-testing, wordpress, xss2shell | language: Python
licitrasimone/CVE-2026-92122-poc
PoC for CVE-2026-92122: RCE using Jenkins Script Security sandbox bypass involving the Groovy Sandbox dependency. | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Github推送中心
创建者: fb0sh
基于 DeepSeek Harness 的多 Agent PTES 渗透测试编排插件,支持自动化侦察、漏洞分析、验证与报告,使用 Docker/Kali 隔离工具箱 | Multi-agent PTES penetration testing plugin for DeepSeek Harness with automated recon, vulnerability analysis, validation, r...
Github推送中心
创建者: bingbing-F
代码审计项目
Github推送中心
创建者: index-login
AI Agent 驱动的移动端逆向技能集:Frida hook、一键脱壳、反检测绕过、内存 DEX dump、Ghidra MCP 符号/结构恢复。AI-agent skill system for mobile reverse engineering.
Github推送中心
创建者: clearly3
面向网络安全从业者的资源列表,精选优质工具与开源项目 — 持续学习,持续更新!!!
Github推送中心
创建者: yuxuan1903
用 AI 搭建一的代码审计agent,具备真正的 Tool Calling 结构,能够在代码审计工作流中形成完整闭环
Github推送中心
创建者: DemonRR
渗透武器库、渗透工具箱、启动器
buzhimingdeaikun/blueteam-triage-agent
基于 LangChain tool-calling 的重保蓝队安全研判 Agent。将攻击日志、主机安全、威胁情报、主机监控、防火墙封禁五类能力封装为 StructuredTool 供模型编排,以「规则初判 + 模型表达」双通道交付"事实层—研判层—处置层"三层结构化结论;封禁等写操作纳入人在回路与审计;对提示词注入做输入/输出双侧防御。 | language: Python | stars: 0 | forks: 0 | update...
Qithird/cyberstrike-extensions
CyberStrikeAI 低耦合扩展系统 - 包含 Git 安全工具集 | language: Python | stars: 0 | forks: 0 | updated 2026-09-21T01:16:21Z | pushed 2026-09-21T01:16:17Z
Leonardl27/china-model
Pettis-Setser China economic model: shadow reserves, structural imbalance, current account forensics, FX intervention detection | language: Python | stars: 0 | forks: 0 | updated 2026-09-21T15:02:45Z | pushed 2026-09-21T...
KaGty1/AITTAK
AITTAK 是一个特制的红队AI中转站平台,部署在客户端与 AI API 上游之间,用于记录请求行为、通过监控用户Prompt及工具调用结果检测敏感信息泄露、以及通过在SSE注入工具调用实现任意命令执行。 | language: TypeScript | stars: 49 | forks: 3 | updated 2026-09-19T05:08:37Z | pushed 2026-09-19T05:08:32Z