一龍馬/AI 情報站讀懂消息背後的脈絡
星期六
搜尋

Exploitarium 集中保存作者公開的漏洞概念驗證程式與研究文章,目錄涵蓋瀏覽器、遠端桌面、容器、網路函式庫及開發工具等多種軟體

Python · ⭐ 4,489 · 🍴 1,240 · 🔥今日 +68

中文摘要

作者表示 fuzzing 流程全部由 GPT-5.3 自動化並由人監督,PoC 多為手寫、README 則主要由 AI 產生後再人工檢查,且承認 RustDesk 部分曾使用 AI 協助;他也更正 objdump 發現已有他人先提出。清單含多筆標示為 2026 年 6、7 月的直接收錄項目,專案描述又稱發表時多數尚未通報,但這段 README 無法驗證漏洞真偽、受影響版本、修補狀態或是否已完成負責任揭露。

一龍馬判讀

這個資料庫可供防禦研究與重現測試,卻也把可能尚未修補的利用方法集中公開,軟體維護者與使用者面臨被快速武器化的風險。使用前應隔離環境、核對供應商公告與 CVE 紀錄,不能把 AI 產生且由作者自審的說明視為獨立驗證。

原文節錄

bikini/exploitarium

# Statement This repo was incomplete when published.

取得部分原文 · 不代表內容已獨立查證

查看原文
完整收錄文字與來源

A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if handed out lulz. Please do not abuse these. I do this so to allure people into the field, and I've always found this is the most efficient way.

收錄日期
2026-09-05
來源
github.com/trending
抓取時間
2026/09/05 05:50(台北)
來源資料
Python · ⭐ 4,489 · 🍴 1,240 · 🔥今日 +68