
PS-CVE-2021-44228
Static detection of vulnerable log4j librairies on Windows servers, members of an AD domain.

Static detection of vulnerable log4j librairies on Windows servers, members of an AD domain.

Blue Team detection lab created with Terraform and Ansible in Azure.

Simulated exploitation and mitigation of CVE-2025-54918 (Windows NTLM flaw). Includes detection scripts, Ansible patching, and CI/CD hardening.…

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

Powershell script to do domain auditing automation

Web application that lets you test if your domain is vulnerable to email spoofing

Automated attack surface assessment framework for Active Directory and local infrastructures, correlating vulnerabilities with attack paths to domain…

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

Scans SSL/TLS certificates for expiry dates, issuer details, and OCSP status. Sends notifications via webhook, Telegram, or Slack. Supports proxy per…

Identifying all log4j components across all windows servers, entire domain, can be multi domain. CVE-2021-44228

Network and domain security auditor scanning Windows Active Directory, Linux systems, and network infrastructure with AI-powered hardening guides…

Production-safe scanner that detects CVE-2026-25177 (AD SPN Unicode Collision) exploitation on Active Directory Domain Controllers. Read-only.

Here's a Python script that checks if the polyfill.io domain is present in the Content Security Policy (CSP) header of a given web application.

Para verificar si tu entorno podría ser vulnerable al CVE-2025-29810, necesitamos hacer algunas comprobaciones básicas, como: Versión del sistema…

Automate the creation of a lab environment complete with security tooling and logging best practices

Analyzes DNS delegation and DNSSEC security by probing resolvers and authoritative servers, then validating, diagnosing, and visualizing zone…

Check for LDAP protections regarding the relay of NTLM authentication