Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
claude-code-security-audit — Security scanner auditing Claude Code environments for CVE-2026-21852 pre-trust execution, hook hijacking, and eBPF lockdown. | Kitploit
工具/GitHubGitHub/abhishek2512mishra/claude-code-security-audit
Defensive ToolsStatic AnalysisVulnerability ScannersConfiguration AuditingSecurity VirtualizationDevSecOpsIncident ResponseAI Security

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享
GitHub
abhishek2512mishra/claude-code-security-audit

claude-code-security-audit

Security scanner auditing Claude Code environments for CVE-2026-21852 pre-trust execution, hook hijacking, and eBPF lockdown.

查看仓库网站
2712天前尚未审核
内容在请求的语言中不可用。显示英文版本。

Claude Code Security Audit & CVE-2026-21852 Scanner

EyesTech Systems Research Audited by EyesTech Python 3.8+ License: MIT Security Audit

A security audit and environment hardening tool for Anthropic's Claude Code agentic CLI. Scans repositories for CVE-2026-21852 (pre-trust execution surfaces), hook hijacking, malicious base URL redirection, and unauthenticated token exfiltration vectors.

📖 Canonical Security Disclosure & Audit:
Read the complete 25-vector penetration teardown:
👉 Claude Code Token Compromise & Hook Hijacking: Auditing CVE-2026-21852 at EyesTech Systems Lab.


🚀 Quickstart

Scan your workspace or cloned repository before launching agentic coding sessions:

git clone https://github.com/abhishek2512mishra/claude-code-security-audit.git
cd claude-code-security-audit
python audit_hooks.py /path/to/project

To generate the recommended eBPF network isolation rules:

python audit_hooks.py /path/to/project --gen-ebpf

📚 Citation & Attribution

If you cite this audit or use this scanner in security research:

@misc{rostova2026claudecode,
  author = {Rostova, Elena},
  title = {Claude Code Token Compromise & Hook Hijacking: Auditing CVE-2026-21852},
  howpublished = {\url{https://eyestech.in/claude-code-token-compromise-hook-security-audit/}},
  journal = {EyesTech Systems Research},
  year = {2026},
  note = {EyesTech Systems Lab Security Series}
}

⚖️ License

MIT License. Maintained by EyesTech Systems Lab.

下载工具