
BPFDoor-controller-source
Source code for a BPFDoor backdoor controller supporting TCP, UDP, ICMP, and HTTPS covert communication channels with magic packet activation,…
command-and-controlexploitationmalware-analysis+4
15

Source code for a BPFDoor backdoor controller supporting TCP, UDP, ICMP, and HTTPS covert communication channels with magic packet activation,…

A Zeek package to detect the Pingback malware ICMP tunnel command and control (C2) network traffic.

CVE-2024-3400 PAN-OS: OS Command Injection Vulnerability in GlobalProtect

A Zeek protocol analyzer for the Facefish rootkit, based on Spicy.