Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
yolkfull/cve-2026-52910-poc
POC of cve-2026-52910 | language: C
34zY/CVE-2026-72898
CVE-2026-72898 exploit | language: Python
unh00k3d/cve-2026-85706
CVE-2026-85706 — GitLab unauthenticated arbitrary file read (CVSS 10.0). Root-cause analysis, vulnerable Docker lab, and PoC. | topics: cve, cve-2026-85706, exploit, gitlab, parser-differential, path-traversal, proof-of-...
0xenesbayram/cve-2026-85706
CVE-2026-85706 — GitLab unauthenticated arbitrary file read (CVSS 10.0). Root-cause analysis, vulnerable Docker lab, and PoC. | topics: cve, cve-2026-85706, exploit, gitlab, parser-differential, path-traversal, proof-of-...
genksome/ghost-hoock
GhostLock stripped to one primitive: SELinux off on Galaxy A17 (BZA5) via futex PI UAF (CVE-2026-43499). No root, no cred patch, no rwforge. | topics: android, cve, exploit, ghostlock, samsung, selinux | language: C
Windows 安全内核模式特权提升漏洞
HarshRajSinghania/CVE-2026-90782-s2opc-status-clobber
Standalone PoC for CVE-2026-90782: status-clobbering NULL dereference in S2OPC alloc_notification_message_items() (DataChange fails, Event succeeds) | language: C
accessmodifier364/cve-2026-43499-firetv-sheldonp-writeup
Security research write-up on exploiting CVE-2026-43499 on the Amazon Fire TV Stick 3rd Gen (sheldonp), from temporary root to bootloader unlock.
gabrielunknown/CVE-2026-85706
CVE-2026-85706 — GitLab Unauthenticated Arbitrary File Read exploit PoC. | language: Perl
DiegoArias008/CVE-2026-20079-research-private
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Fasthei/DSHairedskill
AI红队技能 | language: TypeScript | stars: 0 | forks: 0 | updated 2026-09-14T15:26:28Z | pushed 2026-09-14T15:26:20Z
sjmysoul/dirtydoge
DirtyDoge Team1 | DSH-based AI自主开发红队自动化框架 (DeepSeek Harness 二开) | language: Shell | stars: 0 | forks: 0 | updated 2026-09-15T04:02:26Z | pushed 2026-09-15T04:02:23Z
DemonRR/HackLauncher
渗透武器库、渗透工具箱、启动器 | language: JavaScript | stars: 24 | forks: 1 | updated 2026-09-24T09:03:09Z | pushed 2026-09-23T05:26:40Z | homepage: https://github.com/DemonRR/HackLauncher
blackwisten/burp-ai-copilot
LLM-powered penetration testing copilot for Burp Suite — AI analyzes and advises, never sends requests. 让大模型成为你的渗透测试副驾驶。 | language: Java | stars: 1 | forks: 0 | updated 2026-09-15T09:14:03Z | pushed 2026-09-14T13:44:15Z
Y3128/pentest_portfolio
这是一个在补天SRC上进行授权漏洞挖掘的实战作品集,包含渗透测试方法论、完整实战流程、报告提交和零基础教学 This is a hands-on portfolio for authorized vulnerability hunting on Butian SRC, including penetration testing methodology, a complete real-world workflow, report sub...
Yufeifeio/TGSEC-Qtzuuz
TGSEC社区 学习渗透套件 — 按攻击面组织的渗透测试知识库,可直接喂给AI自动配置使用 | stars: 4 | forks: 4 | updated 2026-09-15T07:30:13Z | pushed 2026-09-11T07:49:23Z
ruochen123/CyberAttack-ai
AI自主渗透 | language: Python | stars: 0 | forks: 0 | updated 2026-09-17T05:40:21Z | pushed 2026-09-17T05:40:17Z
对 OpenAI Chat Completions 兼容端点进行长上下文压力测试的命令行工具。可有效绕过网关和模型缓存,精准评估推理部署的实际承载能力
创建者: WolfYangFan
对 OpenAI Chat Completions 兼容端点进行长上下文压力测试的命令行工具。可有效绕过网关和模型缓存,精准评估推理部署的实际承载能力
一款捷途车机的ADB管理工具,可以绕过限制直接打开ADB
创建者: jyz0501
一款捷途车机的ADB管理工具,可以绕过限制直接打开ADB
Linux 应急响应一键排查脚本 — 28 个模块,只检测不处置,一份完整报告 + 疑似清单 + 简报
创建者: GoghOrz
Linux 应急响应一键排查脚本 — 28 个模块,只检测不处置,一份完整报告 + 疑似清单 + 简报