


HTTP/2 attack simulation & defense lab - Slowloris, Rapid Reset (CVE-2023-44487), HPACK Bomb attacks with 5 layered defenses. Built in pure Python…

a highly customizable PHP script to sanitize / make (X)HTML secure against XSS attacks, so users can edit HTML without risk of your site getting…

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

An active cyber defense & honeypot system for OpenWrt routers running from a USB drive.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

An open source threat modeling tool from OWASP

Automated IP ban service that detects failed login attempts from event logs and files, blocking attackers on Windows and Linux via firewall…

A unique technique to execute binaries from a password protected zip

Signatures and IoCs from public Volexity blog posts.

AntiSpy is a free but powerful anti virus and rootkits toolkit.It offers you the ability with the highest privileges that can detect,analyze and…

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

A simple super fast django reusable app that blocks people from brute forcing login attempts

DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

An EDR bypass that prevents EDRs from hooking or loading DLLs into our process by hijacking the AppVerifier layer

Ultimate Network Stealther that makes Linux a Ghost In The Net and protects from MITM/DOS/scan

A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis.