Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
mdshoaibuddinchanda/zombieguard
ML-based detection of Zombie ZIP archive header evasion attacks (CVE-2026-0866) | topics: archive-evasion, archive-security, cve-2026-0866, cybersecurity, entropy-analysis, machine-learning, malware-detection, malware-re...
SomeTechyGuy/Linksys-Router-RCE
A exploit for older Linksys Smart Wi-Fi routers that's able to get root shell access with just the admin login.
piiiico/mcp-check
MCP server security scanner — tests against clause-compliance vulnerabilities (arxiv 2603.10163), CVE-2026-26118, and common MCP security gaps | language: TypeScript
NFA regex engine NULL pointer dereference affects Vim < 9.2.0137
mdshoaibuddinchanda/ZOMBIE_GUARD
ML-based detection of Zombie ZIP archive header evasion attacks (CVE-2026-0866) | topics: archive-evasion, archive-security, cve-2026-0866, cybersecurity, entropy-analysis, machine-learning, malware-detection, malware-re...
A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the component POST Request Handler. Performing a manipulation results in c
CVE-2026-4163;dd061ec96eba6122b12642e7c4764b97;A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the component POST Request ...
Jvr2022/CVE-2026-31802
PoC and write-up for CVE-2026-31802, a symlink path traversal vulnerability in npm tar enabling arbitrary file overwrite outside the extraction directory. | topics: cve, cve-2026-31802, exploit, node-tar, path-traversal,...
Issues in stm32 USB device driver (drivers/usb/device/usb_dc_stm32.c) can lead to an infinite while loop.
CVE-2026-4179;eaf1ba33fc481e3070e292f9d4b2fe3e
Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can inject XSS payloads through comments to execute a
CVE-2026-32774;96244f76b3b8dd7b3b723d107fb8fd38;Vulnogram 1.0.0 contains a stored cross-site scripting vulnerability in comment hypertext handling that allows attackers to inject malicious scripts. Remote attackers can i...
Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised device or bus attacker to corrupt kernel memory and potentially hijack exec
CVE-2026-0849;c2284f253d6ebc190de0cd5ccd73f14e;Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised device or bus attacker to co...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
pranavibunny/sentinel-soc-lab
Microsoft Sentinel SOC lab — KQL detection rules, threat hunting queries, and IR playbooks mapped to MITRE ATT&CK | stars: 0 | forks: 0 | updated 2026-03-14T19:48:30Z | pushed 2026-03-14T19:48:27Z
Security-Onion-Solutions/securityonion
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, and case management. ...
santinoholmes1979/santinoholmes1979
Cybersecurity engineering portfolio demonstrating AI-assisted detection, threat hunting, and security analytics workflows. | topics: ai-security, cybersecurity, detection-engineering, security-analytics, soc, threat-hunt...
SDimitri05/threat-hunting-port-of-entry
Threat hunting investigation using Microsoft Defender for Endpoint and KQL to reconstruct a multi-stage attack including RDP compromise, Defender evasion, persistence, credential dumping, and data exfiltration. | stars: ...
omatomato/Fraud-Investigation
Research and documentation of a multi-stage JavaScript injection campaign targeting cryptocurrency users. Includes OSINT, on-chain analysis, and threat hunting methodology. | stars: 0 | forks: 0 | updated 2026-03-14T22:3...
JayTech1881/Azure-kql-threat-hunting
stars: 0 | forks: 0 | updated 2026-03-14T22:59:11Z | pushed 2026-03-14T22:59:07Z
CrowdStrike/falcon-mcp
Connect AI agents to CrowdStrike Falcon for automated security analysis and threat hunting | topics: ai, crowdstrike, falcon, mcp, mcp-server | language: Python | stars: 122 | forks: 36 | updated 2026-03-20T22:15:08Z | p...
engrbayo/Cloudtrail-threat-hunting
language: HCL | stars: 0 | forks: 0 | updated 2026-03-14T23:52:50Z | pushed 2026-03-14T23:52:47Z
aktran321/threat-hunting-scenario-tor
stars: 0 | forks: 0 | updated 2026-03-14T23:59:07Z | pushed 2026-03-14T23:59:04Z
blackopsinc/THREATS
Threat Hunting Intel Feed | topics: honeypot, threat-hunting, threat-intelligence | stars: 2 | forks: 0 | updated 2026-03-22T01:00:10Z | pushed 2026-03-22T01:00:06Z