Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
cybersecurity_portfolio — Практические кейсы по информационной безопасности: развёртывание SIEM Wazuh и эксплуатация CVE-2021-41773 | Kitploit
Tools/GitHubGitHub/glebusalt/cybersecurity_portfolio
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingIntrusion DetectionLearning & EducationLog AnalysisLabs & Practice

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
GitHub
glebusalt/cybersecurity_portfolio

cybersecurity_portfolio

Практические кейсы по информационной безопасности: развёртывание SIEM Wazuh и эксплуатация CVE-2021-41773

View Repository
7 days agoNot yet reviewed

Portfolio. Gleb Usoltsev

Second-year student, Institute of Computer Science and Cybersecurity, Peter the Great St. Petersburg Polytechnic University, field of study 10.03.01 «Information Security».

As part of the educational (introductory) practice at Positive Technologies JSC, two practical cases were completed. Below are their descriptions in the format of technical materials, without the formatting typical of an educational report.

The practical works were performed as part of a study group: Bandurko V. V., Usoltsev G. V., Ustyantsev A. S.

Cases

Wazuh SIEM Deployment: SSH Brute-Force Detection

wazuh-siem-deployment

Deploying Wazuh, creating a custom detection rule, configuring an index template, connecting an agent, and building a visualization of attacks on the server.

Stack: Ubuntu Server, Wazuh (Server / Indexer / Dashboard), OpenSearch DSL, Wazuh XML rules.

CVE-2021-41773: From Building a Vulnerable Apache to RCE

cve-2021-41773-apache

Building the vulnerable Apache 2.4.49 from source code, reproducing Path Traversal with escalation to RCE, validating remediation measures, and analyzing why the first official patch did not fully close the vulnerability.

Stack: Apache HTTP Server, mod_cgid, curl, PowerShell.

Note on the Contents of the Reports

In the original training reports, the screenshots contained the real IP address of the test server, the auto-generated administrator password, and the agent authentication key. Before publication, this data was removed from the images and replaced with placeholders in the text.

Download Tool