Intelligence Digest
github安全推送
GitHub 安全开源项目与漏洞监控情报推送
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
vulnquest58/VQ-RefluxCore
is an advanced security research framework designed to model, analyze, and demonstrate Local Privilege Escalation (LPE) mechanics associated with kernel-level race conditions and filesystem structure vulnerabilities (CVE...
LucasVanHaaren/CVE-2026-22226
Proof of Concept for the CVE-2026-22226 | topics: cve-2026-22226, proof-of-concept, tp-link | language: Python | homepage: https://www.cve.org/CVERecord?id=CVE-2026-22226
0xBlackash/CVE-2026-64600
CVE-2026-64600 | language: Shell
opensource-arrozconpollo191/CVE-2026-41089-Netlogon-RCE
Scan Windows Domain Controllers for CVE-2026-41089 to detect unauthenticated remote code execution vulnerabilities in the Netlogon service. | topics: active-directory, buffer-overflow, cve-2026-41089, cybersecurity, doma...
boobalover7/YellowKey-Bitlocker-CVE-2026-45585
Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows. | topics: bitlocker-bypass, bitlocker-drive-encryption, bitlocker-drive-lock, bitlocker-drive-...
tc4dy/CVE-2026-57821-PoC-Exploit
🔐 CVE-2026-57821 - Apache Fineract SQL Injection Toolkit 📚 Two Python scripts for authorized security testing: verifier.py (safe detection, no extraction) and exploit.py (deep analysis). Supports 11 DB types. Perfect for...
tc4dy/CVE-2026-6875-PoC-Exploit
CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell, batch threading, WAF bypass, persistence, lateral movement, credential ...
tc4dy/CVE-2026-15409-15410-Framework
CVE-2026-15409/15410 SonicWall SMA1000 multi-exploit Framework 🔥 SSRF→Erlang RPC→RCE→root privesc. Features: --detect safe check, --exec, --read-file, --privesc, --rpc, interactive shell, batch threading, file write, ws-...
tc4dy/CVE-2026-60206-PoC-Exploit
👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit combo/unsigned/xsw/nameid/all, --shodan integration, --tor support, mass scanning, J...
ZephrFish/wp2shell-scanner
CVE-2026-63030, CVE-2026-60137, wp2shell scanner | language: Python | homepage: https://blog.zsec.uk/wp2shell-code-trace-deep-dive/
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
通过无障碍权限实现绕过某软件的检测,结合ai实现搜题,目前正在进一步拓宽功能
创建者: duringk
通过无障碍权限实现绕过某软件的检测,结合ai实现搜题,目前正在进一步拓宽功能
一个记录我学习DVWA靶场渗透测试的仓库
创建者: Kavlina
一个记录我学习DVWA靶场渗透测试的仓库
APK爆毒免杀处理方案 -
创建者: scdnai
APK爆毒免杀处理方案 -
网络安全 · 渗透测试 · 网络工程 · 运维实践 | Astro博客
创建者: ziddzide
网络安全 · 渗透测试 · 网络工程 · 运维实践 | Astro博客
经典的主机安全/反病毒工具。根据 YARA 规则描述,扫描文件或进程内存,判断是否存在恶意代码、Webshell 或病毒特征。
创建者: Hjyyutr
经典的主机安全/反病毒工具。根据 YARA 规则描述,扫描文件或进程内存,判断是否存在恶意代码、Webshell 或病毒特征。
渗透项目/渗透工具/脚本文件
创建者: JY-666-YINZI
渗透项目/渗透工具/脚本文件
目标 Linux 服务器遭遇恶意挖矿病毒入侵。核心表现为 CPU 占用率异常暴涨,且系统关键命令(如 stat、rm 等)遭到病毒感染与篡改,同时存在恶意的守护进程与定时任务进行权限维持。进行全面的应急响应的流程。
创建者: JY-666-YINZI
目标 Linux 服务器遭遇恶意挖矿病毒入侵。核心表现为 CPU 占用率异常暴涨,且系统关键命令(如 stat、rm 等)遭到病毒感染与篡改,同时存在恶意的守护进程与定时任务进行权限维持。进行全面的应急响应的流程。
目标 Linux 服务器遭遇恶意挖矿病毒入侵。核心表现为 CPU 占用率异常暴涨,且系统关键命令(如 stat、rm 等)遭到病毒感染与篡改,同时存在恶意的守护进程与定时任务进行权限维持。进行全面的应急响应的流程。
创建者: JY-666-YINZI
目标 Linux 服务器遭遇恶意挖矿病毒入侵。核心表现为 CPU 占用率异常暴涨,且系统关键命令(如 stat、rm 等)遭到病毒感染与篡改,同时存在恶意的守护进程与定时任务进行权限维持。进行全面的应急响应的流程。
Official implementation of the core experiments from: Beyond Detection: A Comprehensive Benchmark and Study on Representation Learning for Fine-Grained Webshell Family Classification
创建者: FeijiangHan
Official implementation of the core experiments from: Beyond Detection: A Comprehensive Benchmark and Study on Representation Learning for Fine-Grained Webshell Family Classification
vercel-labs-skillsc漏洞测试
创建者: czx1111
vercel-labs-skillsc漏洞测试