
rayhunter
Rust tool to detect cell site simulators on an orbic mobile hotspot

Rust tool to detect cell site simulators on an orbic mobile hotspot

Linux namespaces and seccomp-bpf sandbox

Windows honeypot using ProjFS to project decoy files that trigger Event Log and desktop alerts when accessed, with SMB remote session logging for…

CVE-2026-68820 - Draft or TODO

This project aims to compare and evaluate the telemetry of various EDR products.

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.

Educational Linux kernel rootkit PoC exploring DKOM, syscall hooking, stealth, observability and defensive detection

CY376 Blue Team project — pfSense DMZ, Suricata IDS/IPS, and automated host hardening against CVE-2014-6271

Kratos is a high-performance Windows File System Minifilter driver designed to detect, block, and permanently immunize

Jailer is an eBPF-based process jailing system that provides mandatory access control (MAC) for Linux. It tracks processes using BPF task_storage…

AutoPoC Generator HoneyPoC

Cross-platform system DNS client for uBlockDNS with device wide ad and tracker blocking and real time filter updates.

HardeningKitty - Checks and hardens your Windows configuration


Rules generated from our investigations.

Lightweight security state inspector for Linux — bridging the gap between pretty fetch tools and heavy-duty audit frameworks.

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse