
Threat_Model_Examples
A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

Post-exploit a compromised etcd, gain persistence and remote shell to nodes.

A Smart Log4Shell/Log4j/CVE-2021-44228 Scanner

CVE-2021-41773 exploit PoC with Docker setup.

CVE-2021-40438 exploit PoC with Docker setup.


docker lab setup for kibana-7609

Open-source deception platform that turns any Linux machine into a high-signal canary. Deploy tripwire sensors on files, ports, and network services…

Millisecond microVM sandbox forking for AI agents on Kubernetes. Firecracker VMs that restore from memory snapshots in milliseconds, fork a running…

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Like Envoy xDS, but for eBPF filters

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

Runtime behavioral analysis tool that sandboxes suspicious packages in Docker, traces syscalls with strace, maps process cascades into directed…

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

Experimental Decoy Broker

Cryptographically signed, replay-verifiable evidence layer for AI agents. Governs actions in the loop, produces Ed25519-signed receipts linked into a…

Deploy a FullStack Prodo-Typing Agent into your AWS Account (OpenClaw, Kiro-Cli, Pi, Hermes, Claude Code, Codex)