Back to
                                  GitHub Security Lab


                                  GitHub Security Lab


                                  SGreen AD·Simple Proxy Master应用排名和商店数据 | App Annie:查看例如SGreen AD·Simple Proxy Master这种热门应用在iOS商店中的每日应用排名、排名历史、评级、特性伍及评价。

                                  Follow @GHSecurityLab


                                  Find vulnerabilities
                                  Find vulnerabilities

                                  Our researchers find and report new vulnerabilities in the open source projects everyone relies on.

                                  Empower others

                                  We build tools like CodeQL to make security easy for anyone working to secure open source.

                                  Foster collaboration
                                  Foster collaboration

                                  We're building a community of security researchers and an open coalition of the world's security teams.


                                  • 朋友伊都用的什么tz?ios的,之前充值的sgreen现在服务器都没有了,q...:1楼: 朋友伊都用的什么tz?ios的,之前充值的sgreen现在服务...6楼:我现在用这个
                                    CVE-2023-9434 • lua-openssl • published 5 months ago • discovered by sgreen下载ios
                                  • Incorrect use of X509_check_host
                                    CVE-2023-9432 • lua-openssl • published 5 months ago • discovered by Agustin Gianni
                                  • Incorrect use of X509_check_email
                                    green加速器安卓破解版 • lua-openssl • published 5 months ago • discovered by Agustin Gianni
                                  • Use of uninitialized memory in X509_check_host
                                    CVE-2023-7042 • openfortivpn • published 5 months ago • discovered by Agustin Gianni
                                  • Incorrect use of X509_check_host (regarding return value)
                                    CVE-2023-7041 • openfortivpn • published 5 months ago • discovered by Agustin Gianni
                                  129 CVEs found
                                  by Security Lab researchers


                                  Nico Waisman

                                  Open Source Entomologist

                                  Kevin Backhouse

                                  Compilers, program analysis, security research

                                  Man Yue Mo

                                  Security scavenger

                                  Agustin Gianni

                                  Avoiding grep since 1999 AD

                                  Antonio Morales

                                  EthicalHacker'­BugHunter & C++; 3735928559

                                  Xavier René-Corail

                                  3-legged race organizer: Building bridges between Dev and Sec

                                  Hauwa Otori

                                  Operations and coalition builder for security research


                                  Debugging enthusiast

                                  Alvaro Munoz

                                  Hacking since 1970-01-01T00:00:00Z

                                  Jaroslav Lobacevski

                                  Security panda



                                  Our industry-leading code analysis engine, CodeQL, is now free for use on open source. CodeQL lets you query code as though it were data. Write a query to find all variants of a vulnerability, eradicating it forever. Then share your query to help others do the same.

                                  Download CodeQL

                                  Join the effort

                                  As a security researcher, your expertise is instrumental in securing the world’s software. Codify that knowledge as an expressive, executable, and repeatable CodeQL query that can be run on many codebases. Get rewarded for queries that have a positive impact on open source projects through our bounty program.

                                  See our bounties


                                  SSTI, Java, CVE
                                  GHSL-2023-072: Arbitrary file disclosure in JinJava - CVE-2023-12668
                                  July 29, 2023
                                  Fuzzing, C/C++, AFL, AFL++
                                  Fuzzing software: advanced tricks (Part 2)
                                  SSTI, Java
                                  GHSL-2023-071: Server-side template injection in Lithium CMS
                                  July 27, 2023
                                  See all research
                                  佛跳墙破解版  vps加速器  加速器知乎  ssrr订阅地址获取  极光官网vmp加速器  ysscloud 加速器下载  lstpvpn官网