
Educational Python simulator modeling a fictional security incident inspired by CVE-2024-36401 to demonstrate vulnerability management, segmentation, monitoring, and incident response.
A Python-based educational simulator that models a fictional network-security incident inspired by the real-world exploitation of CVE-2024-36401.
The project demonstrates how vulnerability management, network segmentation, least privilege, monitoring, logging, and incident response affect the outcome of a simulated security incident.
Important: This project does NOT exploit CVE-2024-36401, GeoServer, or any real system. All network assets, events, and activity used by the simulator are fictional and synthetic.
CVE-2024-36401 is a security vulnerability affecting GeoServer that was publicly disclosed before being exploited in the real world. This project uses that incident as a case study and asks:
How would different security controls change the outcome of a similar incident?
The simulator creates a fictional network of servers, generates simulated security events, and evaluates them under different security configurations.
Two scenarios are provided: