theori-io/copy-fail-CVE-2026-31431

Pythonxint.io/blog/copy-fail-linux-distributions

Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code

ai-securitycve-2026-31431exploitlinux-kernelprivilege-escalationprivilege-escalation-exploitssecurity-researchtheorivulnerabilityxint-code
Star Growth
Stars
4.1k
Forks
910
Weekly Growth
+5
Issues
103
2k3k4k
Apr 26May 26Jul 26Sep 26
ArtifactsPyPI
README

Copy Fail - CVE-2026-31431

Technical Writeup

Tested Distro / Version

Distro Version
Ubuntu 24.04 LTS 6.17.0-1007-aws
Amazon Linux 2023 6.18.8-9.213.amzn2023
RHEL 10.1 6.12.0-124.45.1.el10_1
SUSE 16 6.12.0-160000.9-default
Related repositories
usestrix/strix

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

PythonPyPIApache License 2.0agentsartificial-intelligence
strix.ai
61.2k6.7k
KeygraphHQ/shannon

Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabilities before they reach production.

TypeScriptnpmGNU Affero General Public License v3.0penetration-testingpentesting
keygraph.io
47.8k5.5k
The-Art-of-Hacking/h4cker

This repository is maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), AI security, vulnerability research, exploit development, reverse engineering, and more. 🔥 Also check: https://hackertraining.org

Jupyter NotebookawesomeMIT Licensehackingpenetration-testing
hackerrepo.org
29.3k5.4k
NVIDIA/SkillSpector

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and supply-chain risks in Claude Code, Codex, and MCP skills before you install them.

PythonPyPIApache License 2.0agent-securityagent-skills
docs.nvidia.com/skills/scanning-agent-skills
16.6k1.4k
openai/codex-security

OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm: https://www.npmjs.com/package/@openai/codex-security

TypeScriptnpmcliApache License 2.0ai-securityapplication-security
developers.openai.com/codex/security
10.6k769
Tencent/AI-Infra-Guard

A full-stack AI Red Teaming platform securing AI ecosystems via Agent Scan, Skills Scan, MCP scan, AI Infra scan and LLM jailbreak evaluation.

PythonPyPIApache License 2.0agentllm
tencent.github.io/AI-Infra-Guard/
6.2k579
FlorianBruniaux/claude-code-ultimate-guide

The most comprehensive Claude Code guide: agentic workflows, hooks, skills, MCP servers, quizzes, and production-ready templates. 430K+ lines.

PythonPyPItutorialCreative Commons Attribution Share Alike 4.0 Internationalagentic-codingai-assistant
cc.bruniaux.com
5.9k773
Giskard-AI/giskard-oss

🐢 Open-Source Evaluation & Testing library for LLM Agents

PythonPyPIApache License 2.0mlopsml-validation
docs.giskard.ai
5.8k529
Awarexone/Agentic-Bug-Hunter

AI-powered bug bounty hunting toolkit that works with or without subscription.

PythonPyPIMIT Licenseai-securitybug-bounty
awarexone.com
4.7k835
elementalsouls/Claude-BugHunter

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24 core vulnerability classes, plus enterprise identity + infrastructure attack matrices.

PythonPyPIskillMIT Licenseai-securityanthropic
elementalsouls.github.io/Claude-BugHunter
4.4k661
nolabs-ai/nono

secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

Rustcrates.ioApache License 2.0ai-agentssecurity
nono.sh
4k260
skills/secure-code-game

Learn to code securely while having fun through our popular open source in-editor experience, designed for developers, students, and anyone curious about security. Get started for free in under 2 minutes, playing right from your browser.

JavaScriptnpmtutorialMIT Licensecode-securityai
gh.io/scg
2.8k385