viaMover |
Sherlock对Mover的合约审计报告,包含一个高危和一个中危漏洞。 |
https://github.com/viaMover/contract-audit-reports/blob/main/Mover_Final_Report.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Python,JavaScript,Solidity,TeX,HTML |
0 |
0 |
trailofbits |
VAST - 基于 MLIR 框架,为 C/C++ 语言实现的前端程序分析工具 |
https://github.com/trailofbits/vast |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jinja,Python,C++,Go,Ruby,Rust |
0 |
0 |
sleeyax |
用于 Hook Burp 的 HTTP/TLS 栈以篡改浏览器指纹的扩展 |
https://github.com/sleeyax/burp-awesome-tls |
https://github.com/sleeyax?tab=followers |
Using the right skills for the right job |
Belgium |
None |
118 |
0 |
450 |
0 |
0 |
Go,C#,TypeScript,Rust |
0 |
0 |
quarkslab |
Fuzzing NVIDIA 驱动,挖掘本地提权漏洞 |
https://github.com/quarkslab/conf-presentations/blob/master/Hexacon-2022/fuzzing_NVIDIA_drivers-tdore.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Python,JavaScript,C++,Shell,Go,Rust |
0 |
0 |
prowler-cloud |
Prowler: AWS security best practices 基线检查 |
https://github.com/prowler-cloud/prowler |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Shell,HCL |
0 |
0 |
pinauten |
Fugu15 - 研究员 Linus Henze 放出了他的 iOS 15.4.1 越狱工具 |
https://github.com/pinauten/Fugu15 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Swift |
0 |
0 |
osandov |
drgn - 支持通过 Python 实现脚本化扩展的调试器 |
https://github.com/osandov/drgn |
https://github.com/osandov?tab=followers |
|
Seattle, WA |
@facebook |
50 |
0 |
15 |
0 |
0 |
Python,C,Shell,C++,Vim |
0 |
0 |
git |
Git 修复了一个本地仓库 clone 过程中的符号链接 Following 问题,可以泄露用户敏感信息 |
https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,HTML,Ruby,CSS |
0 |
0 |
bw3ll |
SHAREM - Windows Shellcode 辅助分析和构造的工具 |
https://github.com/bw3ll/sharem |
https://github.com/Bw3ll?tab=followers |
|
None |
None |
3 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
alfarom256 |
Lenovo Diagnostics 驱动(Windows)访问控制处理不当,导致低权限进程可以实现任意物理、虚拟内存地址读写 |
https://github.com/alfarom256/CVE-2022-3699/ |
https://github.com/alfarom256?tab=followers |
|
None |
None |
56 |
0 |
69 |
0 |
0 |
Go,C,C++ |
0 |
0 |
abusech |
ThreatFox:开源威胁情报共享平台 |
https://github.com/abusech/ThreatFox |
https://github.com/abusech?tab=followers |
Fighting malware and botnets |
Zurich |
abuse.ch |
4 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
SpyGuard |
SpyGuard - 增强版的 TinyCheck,通过网络流量检测主机是否已经被攻陷 |
https://github.com/SpyGuard/SpyGuard |
https://github.com/SpyGuard?tab=followers |
|
None |
None |
1 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
SnaffCon |
Snaffler - 渗透测试项目中帮助探测 Windows/AD 环境的工具 |
https://github.com/SnaffCon/Snaffler |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C#,Go,HTML |
0 |
0 |
Sentinel-One |
peafl64: Windows 64位PE文件静态插桩工具 |
https://github.com/Sentinel-One/peafl64 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Java,Python,Smarty,C#,C++,Go |
0 |
0 |
NationalSecurityAgency |
NSA 发布 Ghidra 10.2 版本,Debugger、Decompiler 等组件均有更新 |
https://github.com/NationalSecurityAgency/ghidra/releases/tag/Ghidra_10.2_build |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Groovy,C,HTML,Java,JavaScript |
0 |
0 |
KULeuven-COSIC |
从硬件角度研究 SpaceX Starlink 终端的安全性,利用电压错误注入的技术实现任意代码执行 |
https://github.com/KULeuven-COSIC/Starlink-FI |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jupyter,Sage,C++,HTML,Verilog,Assembly,MATLAB |
0 |
0 |
0xADE1A1DE |
以其他已连接 USB 设备的身份注入击键指令,来自 USENIX 会议的 Paper:The Impostor Among US(B): Off-Path Injection Attacks on USB Communications |
https://github.com/0xADE1A1DE/USB-Injection |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Assembly,VHDL,C++ |
0 |
0 |