Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
4nuxd/omrs-rce
Automated exploit for CVE - Online Marriage Registration System 1.0 Unauthenticated file upload → RCE → Auto reverse shell (Windows & Linux targets) | language: Python
cwjchoi01/CVE-2026-3796
CVE-2026-3796 | language: C++
Coff0xc/lobster-guard
OpenClaw Security Assessment Tool | OpenClaw安全评估工具 | 31 Attack Chains | 23 Nuclei Templates | Full RCE Chain | Secret Extraction | Rogue Node | Interactive Shell | Shodan/FOFA Discovery | topics: ai-security, automation,...
cht11/evil-llm-relay
Security research: how a malicious LLM relay service performs zero-click RCE on Claude Code and OpenClaw users via SSE response injection
symphony2colour/fonttools-varlib-cve-2025-66034-rce.py
Proof-of-concept exploit for CVE-2025-66034 in the fontTools variable font generation pipeline. A crafted .designspace file allows control of the output path, enabling arbitrary file writes. The script automates payload ...
Shyamkratos/rce_cdp
mehh | language: HTML | homepage: https://rce-cdp.vercel.app
v-jfanca/cve-2026-20833-rc4-kerberos
Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833) | language: PowerShell
MrSmiiith/hg6145f1-full-access
FiberHome HG6145F1 (Algeria Telecom RP4423) — Full admin access, root shell, custom dark WebUI, RCE exploit & 4 CVE submissions. By Smothy / Numb Team | topics: algerie-telecom, cve, fiberhome, firmware, hg6145f1, rce, r...
Rohitberiwala/FontTraverse-Exploit
A Python-based exploit for the VariaType machine on HackTheBox. It leverages a Path Traversal vulnerability in the fontTools library's .designspace file processing to achieve Remote Code Execution (RCE) via a PHP web she...
SnailSploit/CVE-2026-31899
CVE-2026-31899: Exponential DoS via Recursive <use> Element Amplification in CairoSVG (CVSS 7.5 High)
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
WireRecon/Detection-Engineering
Detection Engineering and Threat Hunting content. | language: YARA | stars: 0 | forks: 0 | updated 2026-03-20T22:30:38Z | pushed 2026-03-20T22:30:33Z
arjunarju123/Security-Operations-SOC---Enterprise-EDR-Threat-Hunting-Grid
This project demonstrates the design and implementation of a simulated enterprise Security Operations Center (SOC) environment using the Wazuh SIEM/XDR platform across Ubuntu Linux and Windows endpoints. | stars: 0 | for...
8damon/Blackbird-Platform
Windows kernel EDR/DFIR telemetry platform for malware research & threat hunting, with IOCTL control-plane targeting + ETW streaming for process/thread tracing | topics: blue-team, blue-team-tool, dfir, forensic-analysis...
Jyothishvm/NetScan---A-Network-Traffic-Analyser-Tool
NetScan is an advanced network forensic platform that automates threat hunting. By combining Deep Packet Inspection, modular behavioral heuristics, and AI-driven summaries, it transforms complex raw network traffic into ...
Ward-Software-Defined-Systems/UniFI-Network-SIEM
A self-contained, AI-powered Node.js application that collects syslog from UniFi consoles and gateways, parses all event types, stores them in SQLite, and serves a real-time security dashboard with built-in AI threat hun...
Diego-Grau/soc-analyst-portfolio
SOC Analyst Portfolio - Detection, Incident Response, Threat Hunting and Lab Writeups | stars: 0 | forks: 0 | updated 2026-03-14T15:29:46Z | pushed 2026-03-14T15:29:43Z
Varunpv2005/ai-threat-hunting-platform
AI-powered SOC platform with ML threat detection, SOAR automation and real-time dashboard | topics: anomaly-detection, cybersecurity, docker, fastapi, incident-response, machine-learning, mitre-attack, python, react, sie...
LeaiMuadDib/elastic-threat-hunting-lab
Built a SIEM and endpoint detection environment using Elastic Security with Windows and macOS telemetry to practice detection engineering, threat hunting, and incident investigation workflows. | stars: 0 | forks: 0 | upd...
sunilgentyala/gsh-framework
Autonomous agentic AI threat hunting framework with hunt playbooks, behavioral baselining, and zero-trust enforcement for LLM and multi-agent pipeline security. | topics: agentic-ai, ai-security, cybersecurity, llm-secur...
anshulgehlot/Azure-Sentinel-KQL-Detection-Rules
A collection of KQL detection and threat hunting queries for Azure Sentinel / Microsoft Sentinel | stars: 0 | forks: 0 | updated 2026-03-14T18:36:04Z | pushed 2026-03-14T18:36:00Z