目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

安全情报专区 76+

精选漏洞公告、利用分析、安全博客、GHSA Advisory 等情报来源,已自动清洗 + 中英双语呈现,持续更新。

213
已接入情报源
92
当前稳定在线
506
24 小时新增
76+
AI 处理情报
持续监听、清洗、翻译并进行 AI 分析 监听情报
示例:RCE · SSRF · GHSA · 反序列化
筛选
清除筛选
精品
High
AWS Ops Wheel 存储型XSS致会话劫持(CVE-2024-1441)
CVE-2024-1441 · github.com · 2026-08-01
AWS Ops Wheel versions prior to 168
Read more
High
Strands Agents Tools http_request 错误授权漏洞 CVE-2026-18394 修复公告
CVE-2026-18394 · aws.amazon.com · 2026-08-01
strands-agents-tools < 0.8.2
Read more
Medium
Strands Agents Tools http_request 代理注入漏洞公告
GHSA-qh6w-2h72-m84v · github.com · 2026-08-01
strands-agents/tools < 0.8.2
Read more
精品
Critical
CVE-2026-18481: AWS Ops Wheel 存储型 XSS 导致账户接管漏洞
CVE-2026-18481 · aws.amazon.com · 2026-08-01
AWS Ops Wheel v2 (versions prior to or including PR #168)
Read more
High
AWS aws-smithy-json CVE-2026-18140 不受控递归DoS漏洞通告
CVE-2026-18140 · aws.amazon.com · 2026-07-31
aws-smithy-json <= 0.62.6
Read more
High
CVE-2025-18140: aws-smithy-json 无限递归导致远程 DoS 漏洞
CVE-2025-18140 · github.com · 2026-07-31
aws-smithy-json <= 0.62.6
Read more
精品
Critical
AWS @aws-amplify/codegen-ui-react 代码注入漏洞(CVE-2025-4318)分析
CVE-2025-4318 · github.com · 2026-07-31
@aws-amplify/codegen-ui-react < 2.20.6
Read more
精品
Unknown
AWS Bedrock AgentCore SDK install_packages() 远程命令执行漏洞 (CVE-2026-16796)
CVE-2026-16796 · aws.amazon.com · 2026-07-24
bedrock-agentcore < 1.18.1
Read more
精品
High
AWS Bedrock AgentCore RCE漏洞CVE-2026-16796
CVE-2026-16796 · github.com · 2026-07-24
AWS Bedrock AgentCore Python SDK <1.18.1
Read more
精品
High
aws-smithy-http-server 默认配置下未授权 DoS 漏洞
GHSA-jxpx-qmx7-gjgx · github.com · 2026-07-24
aws-smithy-http-server <= 0.66.4
Read more
精品
High
AWS API MCP Server 安全策略绕过漏洞 (CVE-2026-16584)
CVE-2026-16584 · aws.amazon.com · 2026-07-24
AWS API MCP Server >= 0.2.15 AND < 1.3.47
Read more
Medium
s2n-tls CVE-2026-15317 TLS 1.3 记录静默丢弃漏洞
CVE-2026-15317 · github.com · 2026-07-22
s2n-tls <v1.7.5
Read more
Medium
aws-sdk-rust 授权头调试信息泄露漏洞修复
github.com · 2026-07-22
aws_smithy_runtime_api
Read more
Critical
smithy-rs/Rust SDK反序列化器未控制递归导致远程拒绝服务
CVE-2026-15967 · github.com · 2026-07-22
smithy-rs < release-2026-06-02 · aws-sdk-rust crates < release-2026-06-02
Read more
Unknown
AWS HealthOmics MCP Server 路径遍历与任意文件写入漏洞
github.com · 2026-07-18
aws-healthomics-mcp-server <0.36
Read more
Medium
AWS Athena Synapse连接器SQL注入漏洞(CVE-2026-12383)公告
CVE-2026-12383 · github.com · 2026-07-18
aws-athena-query-federation >= v2022.20.1
Read more
High
AWS Bedrock AgentCore Python SDK 敏感信息泄露漏洞
CVE-2024-15737 · github.com · 2026-07-17
bedrock-agentcore-sdk-python 1.4.8 · bedrock-agentcore-sdk-python 1.5.0
Read more
High
RES 符号链接漏洞致任意文件读取修复通告
github.com · 2026-07-08
AWS Research and Engineering Studio (RES) versions prior to 2026.06
Read more
精品
High
CVE-2026-14471: AWS mcp-gateway-registry 认证SQL注入漏洞
CVE-2026-14471 · aws.amazon.com · 2026-07-07
mcp-gateway-registry >=1.0.3 AND <=1.0.12
Read more

每篇文章经过自动 HTML→Markdown 清洗 + LLM 去噪 + 中英双语翻译。原始链接保留在文章末尾。

想看哪个安全博客 / 公告源?邮件告诉我们,每周新接 1-2 个。