Skip to content
View DevGreick's full-sized avatar
🏠
Working from home
🏠
Working from home

Highlights

  • Pro

Block or report DevGreick

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
devgreick/README.md
Boas-vindas

Cybersecurity Analyst @ NTT DATA
DevSecOps · AI Security · Threat Intel · Security Tool Builder

Threat Intel · Automação · Red Team


  🟢   ABERTO A OPORTUNIDADES  

DevSecOps  ·  AI Security  ·  Threat Intel  ·  Security Engineering


Remoto · pt-BR / en-US

[+] FEED DE AMEAÇAS AO VIVO: CISA KEV 👇 (clique para abrir)

Vulnerabilidades exploradas conhecidas da CISA • atualizado 02/09/2026 20:19 UTC • exibindo 10 itens

Fonte: CISA Known Exploited Vulnerabilities

  • CVE-2026-59822 - BerriAI LiteLLM Improper Authentication Vulnerability
    Fornecedor: BerriAI | Produto: LiteLLM | Adicionado: 2026-09-02
    BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-48710 - Kludex Starlette HTTP Request/Response Smuggling Vulnerability
    Fornecedor: Kludex | Produto: Starlette | Adicionado: 2026-09-02
    Kludex Starlette contains a HTTP request/response smuggling vulnerability that could allow attackers to inject paths into the host part, prepending the actual path leading to issues such as authentication bypass when the authentication depends on the reconstructed URL’s path. This vulnerability could be chaned with CVE-2026-42271.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-49869 - Kestra OSS OS Command Injection Vulnerability
    Fornecedor: Kestra | Produto: Kestra OSS | Adicionado: 2026-09-02
    Kestra OSS contains an OS command injection vulnerability that could allow an unauthenticated remote attacker to create and execute arbitrary workflows without credentials.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-82329 - JFrog Artifactory Improper Authentication Vulnerability
    Fornecedor: JFrog | Produto: Artifactory | Adicionado: 2026-09-02
    JFrog Artifactory contains an improper authentication vulnerability that under default configuration can allow an unauthenticated attacker with network access to obtain administrative privileges.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-9586 - Sangoma Switchvox SQL Injection Vulnerability
    Fornecedor: Sangoma | Produto: Switchvox | Adicionado: 2026-09-02
    Sangoma Switchvox contains a SQL injection vulnerability which allows an unauthenticated remote attacker to execute arbitrary SQL statements against the backend PostgreSQL database using a single crafted request, including database operations and remote code execution.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-83548 - SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability
    Fornecedor: SonicWall | Produto: SMA1000 Appliances | Adicionado: 2026-09-02
    SonicWall SMA1000 Appliances contains a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to gain unauthorized access to sensitive functionality and perform unauthorized operations.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-83549 - SonicWall SMA1000 Appliances OS Command Injection Vulnerability
    Fornecedor: SonicWall | Produto: SMA1000 Appliances | Adicionado: 2026-09-02
    SonicWall SMA1000 Appliances contains an OS command injection vulnerability that could enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-82078 - PaperCut NG/MF Unsafe Reflection Vulnerability
    Fornecedor: PaperCut | Produto: NG/MF | Adicionado: 2026-08-31
    PaperCut NG/MF contains an unsafe reflection vulnerability that allows an attacker to manipulate system configuration parameters and execute arbitrary Java bytecode residing on the application classpath under the security context of the PaperCut server process. This vulnerability can be chained with CVE-2026-81578.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2026-81578 - PaperCut NG/MF Missing Authentication for Critical Function Vulnerability
    Fornecedor: PaperCut | Produto: NG/MF | Adicionado: 2026-08-31
    PaperCut NG/MF contains a missing authentication for critical function vulnerability which allows an unauthenticated remote attacker to modify certain system configurations. This vulnerability can be chained with CVE-2026-82078.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

  • CVE-2023-49105 - ownCloud Improper Authentication Vulnerability
    Fornecedor: ownCloud | Produto: ownCloud | Adicionado: 2026-08-27
    ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.
    Ação requerida: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.


[+] FEED DE INTEL: ÚLTIMOS POSTS

Fonte: feeds públicos de segurança


[+] PROJETOS EM DESTAQUE

ThreatDeflect

Engine de threat intel que automatiza correlação de IOCs em VirusTotal, Shodan, AbuseIPDB, URLHaus e MalwareBazaar. Python com core em Rust (PyO3, crates.io). 100% offline com IA local via Ollama.

VulnHunter

Scanner offline de CVEs para pipelines CI/CD. Sem dependência de API externa. Bases NVD e OSV, output SARIF compatível com GitHub Code Scanning. Pensado para ambientes air-gapped.

awesome-llm-security

Curadoria pública de tools e recursos para segurança de aplicações LLM, agentes e infraestrutura de IA (OWASP LLM, adversarial ML, guardrails, red teaming de IA).

Portfólio Interativo

Portfólio no formato de sistema operacional com terminal web, comandos interativos, easter eggs e assistente com RAG 100% local.


[+] ARSENAL

Python Rust Bash Linux Docker
Ollama LM Studio llama.cpp RAG SARIF
Fortigate Palo Alto Cisco ASA Checkpoint F5 WAF
GCP Azure MITRE ATT&CK OWASP
Nmap Wireshark

[+] CERTIFICAÇÕES

LPIC-1 NSE 4 GCP ACE MBA USP/Esalq
OSAI+ 2026

GitHub Metrics

[+] CONTATO

Pinned Loading

  1. ThreatDeflect ThreatDeflect Public

    Uma ferramenta de análise de ameaças que automatiza a consulta de IPs/URLs em múltiplas fontes (VirusTotal, Shodan, etc.), gera relatórios e cria resumos com IA local.

    Python 46 2