Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
StillSoul/CVE-2020-15099
TYPO3 CVE-2020-15099 — Unauthenticated RCE | topics: cve-2020-15099, deserialization, pentest, php-object-injection, rce, typo3, typo3-cms | language: Python
StillSoul/CVE-2019-12747
TYPO3 CVE-2019-12747 — Unauthenticated RCE | topics: cve-2019-12747, deserialization, pentest, php-object-injection, rce, typo3, typo3-cms | language: Python
robertcerny61-spooky/engeto_lekce_5_rce
Testovaci repositar v ramci testing academy
ZoneToolsCiber/Explotando-FreeFloatFTP-CVE-2025-5548
Análisis técnico, preparación de entorno de laboratorio y desarrollo de exploit (RCE) para la vulnerabilidad CVE-2025-5548 en FreeFloat FTP Server.
j-dahl7/arc-cloud-c2-sentinel
Sentinel detection lab for Azure Arc identity takeover (CVE-2026-26117) and Living-off-the-Cloud C2 attacks. Analytics rules, hunting queries, workbook, Bicep infrastructure, and C2 simulation script. | language: PowerSh...
g0w6y/CVE-2026-4092
UnHackerEnCapital/BatiRaR
PoC Exploit RAR 2025 (RCE C2 ) - CVE2025-8088 / 2025-6218 | language: Python
neronmelvis-ship-it/security-case-examples
Real-world web security case studies (XSS, SSRF, RCE, misconfigurations). Educational and sanitized reports.
Robertnile/splunk-metasploitable-lab
Splunk SIEM home lab: Simulated attacks (Nmap, SSH brute-force, Drupal RCE) on Metasploitable3, forwarded logs via Universal Forwarder, captured network traffic with Zeek, built detections, dashboards, and alerts in Splu...
sw0rd1ight/CVE-2026-1312
Analysis and reproduction of CVE-2026-1312 | language: Python
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
saidineshkintali/Threat-Hunting-MDE
Threat Hunt Queries on Microsoft Defender | stars: 0 | forks: 0 | updated 2026-03-15T06:17:15Z | pushed 2026-03-15T06:17:11Z
jaraguayo/KQL-Queries
KQL-Queries 🐙 provides ready KQL scripts for Microsoft Defender XDR threat hunting, helping security teams detect, investigate, and respond to threats. | topics: blueteam, defenderxdr, dfir, hunting, kusto, kusto-languag...
anhnmt/sentra
High-performance, extensible threat scanner for incident response and threat hunting | topics: go, golang, incident-response, scanner, threat-hunting, yara, yara-x | language: Go | stars: 5 | forks: 0 | updated 2026-03-2...
TahaGameDev/Offensive-Security-Forensics-Portfolio
💻 Showcase practical cybersecurity skills in forensics, threat hunting, and penetration testing through this comprehensive ethical hacking portfolio. | topics: apiit, cyber-security, incident-response, kernel-exploit, me...
DrAbdoEltbakh/Offensive-Security-Forensics-Portfolio
💻 Showcase forensic and cybersecurity skills through detailed reports on forensics, penetration testing, and threat hunting in ethical hacking. | topics: apiit, cyber-security, incident-response, kernel-exploit, memory-f...
bommakantirishi1-lab/nl-threat-hunter
Natural Language Interface for Threat Hunting: Translate English queries to SIEM/EDR hunts with AI. | language: Python | stars: 0 | forks: 0 | updated 2026-03-15T07:38:57Z | pushed 2026-03-15T07:38:54Z
sangasary/nullsec-logreaper
🪓 Analyze logs swiftly for incident response, threat hunting, and forensic investigations with LogReaper's high-speed tools and flexible parsers. | topics: blue-team, c, dfir, forensics, incident-response, ioc-extraction...
kevin5771323/D4g3lgXmyV
该系统基于Python开发,用于网络安全资产扫描与管理。核心功能包括资产自动发现、漏洞扫描、风险评级、报告生成及结果可视化。技术特点采用模块化设计,支持多协议扫描,具备实时监测与历史数据追溯能力。系统可帮助用户全面掌握网络资产安全状况,提升安全管理效率。 | stars: 1 | forks: 0 | updated 2026-01-28T05:21:03Z | pushed 2026-01-28T05:20:44Z
3886370410/THxwwedEhU
本工具是一款基于Web渗透技术的注入漏洞扫描及防护系统。具备扫描Web应用注入漏洞、评估风险等级、生成安全报告等功能。系统采用Python编程语言开发,具备高效、稳定的性能特点,适用于各类Web应用的安全评估与防护。 | stars: 1 | forks: 0 | updated 2026-01-28T06:23:40Z | pushed 2026-01-28T06:23:37Z
3886370410/VRiNksWkVo
本系统是一套基于Shiro框架的渗透测试研究项目,包括论文和前后端程序源代码。系统旨在提供渗透测试环境,支持安全漏洞检测与分析。功能模块涵盖安全漏洞扫描、风险评估、漏洞报告生成等。采用Shiro框架,实现权限控制和身份验证,保障系统安全稳定运行。 | stars: 1 | forks: 0 | updated 2026-01-28T06:39:59Z | pushed 2026-01-28T06:39:56Z