Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
horrister/axios-supply-chain-cve-2026-26555
In-depth analysis of cve-2026-26555 | language: Shell
horrister/beyondtrust-cve-2026-1232
language: Python
ikarolaborda/CVE2026-42926
Controlled NGINX HTTP/2 frame injection lab for CVE-2026-42926 patch validation and defensive research | topics: cve-2026-42926, cybersecurity, defensive-security, docker, docker-compose, frame-injection, http2, nginx, p...
Gumbraise/CVE-2026-30849-PoC
Proof-of-Concept checker/exploit for MantisBT SOAP auth bypass (CVE-2026-30849 / GHSA-phrq-pc6r-f6gh) | topics: cve, cve-2026-30849, mantis, mantisbt, poc, proof-of-concept | language: TypeScript | homepage: https://gith...
asdasddqwdq29-a11y/CVE-2026-41940
Redacted cPanel/WHM authentication bypass analysis and authorized checker
asdasddqwdq29-a11y/CVE-2026-34197
Apache ActiveMQ RCE via Jolokia vulnerability analysis and reproduction notes | language: Python
u1tr0nex/cve-2026-40072-ssrf-lab
Hands-on lab for CVE-2026-40072 — SSRF vulnerability in web3.py via CCIP Read (EIP-3668)
Dhananjayasj/CVE-2026-3844-Breeze-Cache-WordPress-Plugin-Remote-Code-Execution
language: Python
hnytgl/CVE-2026-41089-Detector
这是一个用于防御巡检的 CVE-2026-41089 检测脚本。该漏洞是 Microsoft 在 2026 年 5 月安全更新中披露的 Windows Netlogon 远程代码执行漏洞。 | language: Python
doany1/CVE-2026-24849
Proof-of-concept exploit for CVE-2026-24849, an authenticated path-traversal / arbitrary file read in OpenEMR's Fax/SMS (EtherFax) module. Any authenticated user regardless of privilege level can read arbitrary files fro...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
casaislabs/casaislabs
Blockchain Protocol Engineer building production-grade EVM and Solana systems: smart contracts, DeFi, agents, security tooling, dashboards, and dApps. | stars: 1 | forks: 0 | updated 2026-03-22T17:31:16Z | pushed 2026-03...
onedom-Pentesting/tools
这里是山东同域红队队伍公开的程序集 | stars: 6 | forks: 0 | updated 2025-10-17T13:34:45Z | pushed 2025-09-30T01:26:02Z
Alibaba-AAIG/Shark-Family
Shark Family is an AI safety red-teaming and jailbreak attack module. it harnesses powerful optimization and automated strategies to generate highly effective jailbreak prompts that penetrate diverse model defenses for e...
cheesehaobuhao/NetworkPenetration
红蓝对抗-红队靶场-1 | stars: 0 | forks: 0 | 2025-11-20T13:11:10Z
hiromichikzk-jpg/-chinese-llm-redteam-platform
杨森个人开发 | 中文大模型红队测试平台,企业级安全测试工具 | stars: 0 | forks: 0 | 2025-12-02T07:33:24Z
shinianyunyan/txCloudCVMCract
通过txcloud API批量化创建cvm实例,在红队中快速实例化需要的vps,并解决ip封禁问题 | language: Python | stars: 1 | forks: 0 | updated 2025-12-24T08:19:13Z | pushed 2025-12-24T08:19:10Z
sylvieverykawaii/Lucifina
一款基于ChatGPT开发的,使用360Quake,Gemini,AWVS等工具的红队信息收集/攻击面/漏洞/AI分析系统 | language: Python | stars: 10 | forks: 0 | updated 2026-01-08T07:28:25Z | pushed 2025-12-08T05:40:42Z
viplurker/RedTeam
全网首发!!!红队详细教程!上万次攻防演练经验 | stars: 0 | forks: 2 | updated 2026-01-12T08:07:14Z | pushed 2025-10-06T14:17:34Z
Sirius0079/CdnScan
CdnScan - 红队渗透专用工具:批量高速识别网站背后CDN类型,智能探测并突破真实源站IP。支持Cloudflare、Akamai、阿里云、腾讯云、Fastly等多种防护绕过,适用于红蓝对抗、资产侦察与攻防演练。 | language: Python | stars: 0 | forks: 0 | updated 2026-01-17T14:51:50Z | pushed 2026-01-17T14:51:47Z
SecNN/Xeno-RAT-Server
Xeno RAT Server 中文汉化版 Xeno-RAT 是用 C# 开发的开源远程访问工具 (RAT),为远程系统管理提供了一套全面的功能。具有 HVNC、实时麦克风、反向代理等功能!适用于安全研究和渗透测试, 使用者必须严格遵守合规要求,禁止用于非法用途。远控|Red Team|钓鱼|提权|红队|信息收集|内供免杀版 | stars: 15 | forks: 4 | updated 2026-01-21T01:00:21Z | ...