momo安全漏洞库

多模块数据检索平台

登录 注册
共聚合 10832 条情报 漏洞监控 6319 / 网安开源项目 4513
来自 GitHub Issues、仓库检索和关键词命中的 CVE / RCE / POC 动态。
HID: nintendo: fix out-of-bounds read in joycon_ctlr_read_handler()
ext4: don't enable DAX on new encrypted files
mptcp: pm: fix memory leak from alloc-during-teardown race
HID: pidff: fix OOB write when hid->inputs is empty
sctp: reject stale cookies with mismatched verification tags
pvharmo2/gha-lab-733c168b88
Authorized security-research lab reproducing CVE-2026-44246 (GHSA-63mx-j37w-gh59): prompt injection via verbatim issue title/body inlining into the claude-code-action triage agent in nnU-Net's issue-triage workflow. Snap...
pvharmo2/gha-lab-677752506e
Authorized security-research lab reproducing CVE-2026-42298 (pull_request_target docker-build RCE in pr-docker-build.yml) — flattened snapshot of gitroomhq/postiz-app | topics: academic-research, github-actions, research...
joaovicdev/CVE-2026-42559
Docker lab + Python PoC for CVE-2026-42559 - DNS rebinding via unvalidated Host header in the rmcp (Rust MCP SDK) Streamable HTTP server transport | language: Python
pvharmo2/gha-lab-456dd8a245
Security-research lab reproducing CVE-2026-41414 (pull_request_target pwn in .github/workflows/pr.yml) — snapshot of skim-rs/skim @ ca986f4, not a fork. | topics: academic-research, github-actions, research-artifact | la...
pvharmo2/gha-lab-5bce203f66
Security-research lab: reproduction of CVE-2026-41249 (GHSA-q58j-g3f4-h26h) — pull_request_target pwn request in .github/workflows/static.yml, snapshot of coreshop/CoreShop@cc1e3f54 | topics: academic-research, github-ac...
优先展示中文安全团队维护的开源项目,兼顾工具落地场景和最近更新时间。
Atlas-KK/prd-lifecycle
面向产品需求文档全生命周期的 Codex Skill。它把 PRD 创建、分步补全、证据化红队评审和开发执行规划统一到一个入口,并通过确认门禁保护业务决策、版本基线与代码边界。 | language: Python | stars: 1 | forks: 0 | updated 2026-09-04T08:29:05Z | pushed 2026-09-04T08:27:59Z
lupingQAQ/red-team-skill-tree
Red team skill tree — full-stack offensive security reference: recon, AD attacks, C2 development, AV/EDR evasion, cloud-native & AI-powered attacks. 红队全栈技能参考(蓝军技能树) | topics: active-directory-security, ai-security, cloud...
emmmdty/heng-agent
「衡 · Heng」跨境电商购物 Agent 的可信度工程。继承自原项目 globex-agent 并全面改造:检索/到手价/组合优化/下单全链路与长期记忆;8 类确定性判据、八项零成本提交门禁,每道护栏带真红证据链;自建评测(44+11 条用例,含对抗性红队),无真实流量,定位为方法验证。 | topics: agentscope, credibility-engineering, e-commerce, evaluation, fa...
mvpbaggio/chaogexuangu
超哥选股 | Serenity 瓶颈投资法 A股全市场选股工具链:全市场粗筛→批量财务拐点→精确终审→红队证伪 (Python+akshare) | language: Python | stars: 1 | forks: 0 | updated 2026-09-07T12:40:27Z | pushed 2026-09-06T02:24:43Z
xiaomanb666/
对自己服务器创建的网站进行完整的渗透测试,查找出自己网站所存在的漏洞 | stars: 0 | forks: 0 | 2026-09-04T07:50:21Z
Loglog3508/de_lu_energy
预测现货市场日前/实时电价,为发电企业报价、购电决策、储能套利提供依据; - 量化新能源渗透率对电价与消纳的影响,识别高比例新能源下的价格规律,形成可落地的消纳与调度建议。 | language: Python | stars: 0 | forks: 0 | updated 2026-09-04T13:03:20Z | pushed 2026-09-04T12:55:19Z
fakedon/TGSEC-Qtzuu
TGSEC社区 学习渗透套件 — 按攻击面组织的渗透测试知识库,可直接喂给AI自动配置使用 | stars: 1 | forks: 0 | updated 2026-09-06T15:27:33Z | pushed 2026-09-04T18:03:41Z
fireditoo/kQwiFRvb
2022算机毕设一套 终稿 基于web渗透技术的注入漏洞扫描工具及防护方法的研究与实现_(论文+python源代码+可执行文件)1.zip | stars: 1 | forks: 0 | updated 2026-09-04T23:22:06Z | pushed 2026-09-04T23:22:02Z
boom5497/VKdQQQXC
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于shiro框架的渗透测试研究_e55821e8-81e7-4719-aaf7-abbfc684ba7d.zip | stars: 1 | forks: 0 | updated 2026-09-05T03:42:47Z | pushed 2026-09-05T03:42:43Z
boom5497/GaMMFkst
2022计算机毕设一套 终稿 (论文+前后端程序源代码)基于Jboss框架的渗透测试研究_7343e07d-dc1f-43ad-807b-cb4efaff1aa5.zip | stars: 1 | forks: 0 | updated 2026-09-05T03:57:01Z | pushed 2026-09-05T03:56:58Z