
tirith
Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Malicious Extension Database

Curated database of vulnerable and malicious Windows drivers with YARA, Sigma, ClamAV, and Sysmon detection rules for proactive threat hunting and…

Interesting APT Report Collection And Some Special IOCs

This Repository is created after my own research into malicious browser extensions, by brining the work of many others and news articles into one…

Curated collection of payloads for ethical security testing and bug bounty hunting, covering common web vulnerabilities and attack vectors.

a list of useful feeds

Curated repository of detection information and validation guidance for identifying malicious activity in enterprise environments.

Detailed analysis of CVE-2026-21510, a Windows Shell security feature bypass allowing silent code execution via malicious links or shortcuts.…

Advisory detailing CVE-2025-56218, an unrestricted file upload vulnerability in Ascertia SigningHub allowing malicious Excel files with phishing…

We collected existing open source code for malicious URL detection

Just some lists of Malware Configs


Checker for CVE-2024-3094 where malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of…

A collection of malware samples and relevant dissection information, most probably referenced from http://blog.inquest.net

Malware samples, analysis exercises and other interesting resources.

Daily collection of malicious samples originating from Vietnam for malware analysis, threat intelligence, and detection engineering research.

Quick access to XXE Payloads