momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 10679 条情报 漏洞监控 6222 / 网安开源项目 4457
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
erberkan/CVE-2026-42536-PoC
Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content | language: Python | homepage: https://httpd.apache.org/security/vulnerabilities_24.html
brigadeops32/CVE-2026-85706
language: Python
HarshRajSinghania/CVE-2026-90781-alsa-lib-oob
Standalone reproducer for CVE-2026-90781: 1-byte OOB write in alsa-lib __snd_ctl_ascii_elem_id_parse() name= parsing (quoted and unquoted) | language: C
gagaltotal/CVE-2026-85706-gitlab-poc
CVE-2026-85706 | language: Go
abhishek2512mishra/claude-code-security-audit
Security scanner auditing Claude Code environments for CVE-2026-21852 pre-trust execution, hook hijacking, and eBPF lockdown. | topics: agent-security, ai-security, anthropic, claude-code, cve-2026-21852, ebpf, prompt-in...
user445213/CVE-2026-78006
CVE-2026-78006
BL0odz/JFrog_CVE-2026-65615-ByGLM
JFrog Artifactory 预认证全链 RCE 复现项目(CVE-2026-42018 / CVE-2026-65616 / CVE-2026-65615):完整攻击链报告、7.146.7 Docker 复现交付物(EXP / 部署 / 基线验证 / payload 样本 / 恢复工具) | language: Python
hyphenTBG/CVE-2026-23980
Modified exploit of CVE-2026-23980 | language: Python
0cqb/CVE-2026-24332
Unpatched Discord privacy leak allowing presence inference while Invisible. | topics: cve, discord, infosec, privacy, research, websocket | language: Python
zhubaohe123/ghostlock-kit
GhostLock kit for vivo iQOO Neo9S Pro (MT6989): MCAST transport port, one-click root scripts and writeups (CVE-2026-43499) | language: PowerShell
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
B站视频 → 图文报告:匿名 cookie 绕过 412 + yt-dlp + whisper 中文转写 + 关键帧视觉识别 → Markdown 报告|Hermes Agent 技能,也可脱离 agent 独立运行
创建者: mofahqc B站视频 → 图文报告:匿名 cookie 绕过 412 + yt-dlp + whisper 中文转写 + 关键帧视觉识别 → Markdown 报告|Hermes Agent 技能,也可脱离 agent 独立运行
第二届“湾区杯”网络安全大赛决赛
创建者: CTF-Archives 第二届“湾区杯”网络安全大赛决赛
A comprehensive webshell detection system built with Wazuh SIEM, leveraging multi-signal analysis to identify and track malicious web shells. Includes detection rules, evidence collection, and forensic analysis workflows.
创建者: Yasserkdr1 A comprehensive webshell detection system built with Wazuh SIEM, leveraging multi-signal analysis to identify and track malicious web shells. Includes detection rules, evidence collection, and forensic ...
活动联系信息收集表单 - QR Form
创建者: Josephjiao414 活动联系信息收集表单 - QR Form
Godzilla插件|内存马|Suo5内存代理|自定义字节码执行|memShellParty-Godzilla
创建者: 1ucky7 Godzilla插件|内存马|Suo5内存代理|自定义字节码执行|memShellParty-Godzilla
新手关于xss漏洞的靶场笔记
创建者: chen0222-tech 新手关于xss漏洞的靶场笔记
漏洞测试
创建者: hatjwe 漏洞测试
无敌粘贴大法 pro max:绕过禁止粘贴限制的模拟打字工具。双输入引擎(PyDirectInput + Unicode 回退),中文可靠输入,全局热键,配置自动保存,单文件 EXE | Typing simulator that bypasses paste restrictions
创建者: potacotion 无敌粘贴大法 pro max:绕过禁止粘贴限制的模拟打字工具。双输入引擎(PyDirectInput + Unicode 回退),中文可靠输入,全局热键,配置自动保存,单文件 EXE | Typing simulator that bypasses paste restrictions
Scene TTC (com.omarea.vtools) APK 静态补丁 + 发布版。绕过授权、屏蔽更新。
创建者: ABI-ZTROS Scene TTC (com.omarea.vtools) APK 静态补丁 + 发布版。绕过授权、屏蔽更新。
个人开发的靶场网站未经个人允许不能用于涉及网络安全的操作
创建者: qynb6666n-bit 个人开发的靶场网站未经个人允许不能用于涉及网络安全的操作