
reactor
Runs custom filters on Elasticsearch and alerts on matches

Runs custom filters on Elasticsearch and alerts on matches

Ban all denial-of-service vulnerability exploitable nodes from your node CVE-2018-17144

Official IP ranges for AI bot crawlers (OpenAI, Anthropic, Google, Microsoft, Perplexity). Weekly auto-updates.

AIEngine is a next generation interactive/programmable Python/Ruby/Java/Lua and Go NIDS (Network intrusion detection system).

A passive detection tool for identifying potential exposure to CVE-2026-24061 in GNU inetutils telnet installations

Proof-of-concept exploit for CVE-2017-8570 (Composite Moniker) using Packager.dll file-dropping technique to execute arbitrary SCT payloads via…

The Whale Sentinel Services

POC firewall with rules designed to detect and block Spring4Shell vulnerability (CVE-2022-22965) exploit

Live monitoring tool for remote PowerShell sessions using ETW to capture and decode WinRM/PSRP protocol, providing command execution traces and…

Disables Jenkins CLI/Remoting subsystem as a mitigation against unauthenticated remote code execution vulnerabilities SECURITY-218 and SECURITY-360,…

Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/


Open-source security orchestration, automation, and response (SOAR) platform with a visual workflow editor, prebuilt security app integrations, and…

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

A Wordpress Honeypot

DNS traffic sniffer and analyzer for monitoring, filtering, and detecting anomalies in DNS queries. Features include PCAP export, DoH support, and a…

Non-destructive detector for CVE-2026-64638 (XSS2Shell) — WordPress pre-auth XSS reflection primitive