
mirth-connect-security-poc
Working PoCs for three NextGen Connect 4.5.2 vulnerabilities.

Working PoCs for three NextGen Connect 4.5.2 vulnerabilities.

Kernel driver based disk size and sector query spoofing program, can evade Windows WMIC query.

Defensive notes on CVE-2022-24637 in Open Web Analytics before 1.7.4, covering unauthenticated information disclosure, privilege escalation impact,…

Detects CheatEngine process activity by monitoring file system changes with ReadDirectoryChangesW, providing a lightweight anti-cheat mechanism for…

Vulnerability Analysis of CVE-2026-83548 affecting SonicWall SMA1000 security systems.

Use cve-2026-36425 killer edr,360 can killer

CVE-2026-31431, AKA Copy Fail, can be mitigated in one-line with bpftrace

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.

Generates SCAP, Ansible, Bash, and CEL security content for compliance evaluation and automated hardening across Linux hosts, containers, and…

Forensics artefact collection tool for systems running Microsoft Windows

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Automatically generated Sysmon parser for Azure Sentinel

Curated signature-rule collection for detecting and classifying malicious files via pattern matching, with CLI instructions for scanning files and…

Block any Process to open HANDLE to your process , only SYTEM is allowed to open handle to your process ,with that you can avoid remote memory…

Macro-header for compile-time C obfuscation (tcc, win x86/x64)

A resource containing all the tools each ransomware gangs uses

Aggregates MITRE ATT&CK, Sigma, and Atomic Red Team data into BloodHound graphs so SOC analysts can map detection coverage, identify gaps, and…