momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 7447 条情报 漏洞监控 4716 / 网安开源项目 2731
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
alisster00/CVE-2026-23744-RCE
This utility was created during research involving MCPJam v1.4.2. The application exposes an API endpoint that accepts a server configuration object. Under certain conditions, insufficient validation may allow unintended...
K3ysTr0K3R/CVE-2026-24061
A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass | topics: auth-bypass, cve-2026-24061, telnet-rce, telnetd | language: Python
Koshmare-Blossom/CIFSwitch-go
A Go implementation of CIFSwitch (CVE-2026-46243) | language: Go
HORKimhab/CVE-2026-23111
CVE-2026-23111 - Linux - Draft
carlosalbertotuma/cve-2026-3180-poc
language: PHP
simota/nginx-rift-scanner
Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis. Python 3 stdlib-only, no network calls. | topics: claude-code-skill, cve, ...
0xBlackash/CVE-2026-11499
CVE-2026-11499 | language: Python
0xBlackash/CVE-2026-50751
CVE-2026-50751 | language: Python
anxs3c/CVE-2026-24061-GNU-InetUtils-telnetd
GNU-InetUtils-telnetd-Authentication-Bypass-Vulnerability | topics: authentication-bypass, cve-2026-24061, injection
John-Popovici/CVE-2026-31431-CopyFail-Linux-PrivEsc
A demo and explanation of CVE-2026-31431 | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Rubby2001/Rshell---A-Cross-Platform-C2
Rshell是一款开源的golang编写的支持多平台的C2框架,旨在帮助安服人员渗透测试、红蓝对抗。 | language: Go | stars: 525 | forks: 135 | updated 2026-07-07T09:30:19Z | pushed 2026-07-07T09:30:33Z
arch3rPro/PST-Bucket
Scoop-Buket for Penetration Suite Toolkit - Windows渗透测试工具仓库For Scoop | topics: pentest-tools, scoop-bucket, windows-penetration-testing | language: PowerShell | stars: 245 | forks: 44 | updated 2026-08-16T08:21:45Z | pus...
Mr-xn/Penetration_Testing_POC
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms | topics: authenti...
threehammers-group/SwordfishSuite
SwordfishSuite - Web安全测试利器 一款轻量、高速、插件化的现代Web安全测试工具,专为安全研究员和渗透测试者打造。 ✨ 核心特性: 智能代理:无缝拦截与修改HTTP/S请求,流畅度超越BurpSuite。 高度集成:集成云端虚拟手机,快速定位APP漏洞。 强大插件:支持自定义Python扩展插件,轻松定制专属功能。 直观界面:提供清晰直观的GUI操作体验。 致力于成为安全研究员手中最锋利的剑。让安全测试变得更简单、更...
zhanglimao/Abyss
基于AI多智能体的自主渗透测试框架 | language: JavaScript | stars: 20 | forks: 2 | updated 2026-07-23T04:38:18Z | pushed 2026-07-19T16:49:47Z
adysec/ARL
ARL 资产侦察灯塔系统(可运行,添加指纹,提高并发,升级工具及系统,无限制修改版) | ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。 | topics: arl, cyber-security, flask, fofa, python, scan, secu...
iammm0/secbot
⚠️ 本工具仅用于授权的安全测试。未经授权使用本工具进行网络攻击是违法的。一个智能化的自动化渗透测试机器人,具备AI驱动的安全测试能力。 | topics: langchain, langgraph, ollama, react-ink, sqlite-vec | language: Python | stars: 41 | forks: 7 | updated 2026-03-22T09:14:29Z | pushed 2026-03...
wangziling-rgb/web-pentestagents
一个让Ai模型进行完全自动化web渗透测试的项目。你只需要提供域名或网址。 | language: Python | stars: 2 | forks: 1 | updated 2026-03-21T05:20:07Z | pushed 2026-03-21T05:20:03Z
doki-byte/EasyTools
EasyTools - 一个简单方便使用的渗透测试工具箱,集成了工具仓库、网址导航、简练助手、CTF合集、代理池、cli脚本定时执行等诸多功能。 | topics: easytools | language: Go | stars: 238 | forks: 18 | updated 2026-03-18T10:57:11Z | pushed 2026-03-17T14:56:30Z
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript | topics: bug-bounty, ctf, cybersecurity, hacking-tools, infosec, owasp, payload, penetration-testing, pentest, react, red-team, se...