
DetectionLab
Automate the creation of a lab environment complete with security tooling and logging best practices

Automate the creation of a lab environment complete with security tooling and logging best practices



POC firewall with rules designed to detect and block Spring4Shell vulnerability (CVE-2022-22965) exploit

NVR with realtime local object detection for IP cameras

An ADCS honeypot to catch attackers in your internal network.

Windows hypervisor for Intel x64: defensive host hypervisor for Windows designed to mitigate kernel-level attacks including BYOVD, compatible with…

A lightweight tool designed to stop clickfix attacks by using clipboard formatting with execution surface checks

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

A high-performance port spoofing tool built in Rust. Confuse port scanners with dynamic service emulation across all ports. Features customizable…

Obfuscates x86-64 assembly with instruction injection, junk code, constant obfuscation, and runtime decryption to hinder reverse engineering and…

CVE-2025-55182-scanner with 2 different method

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

Collection of YARA rules designed for usage through VirusTotal.com.

Attack and defend active directory using modern post exploitation adversary tradecraft activity

Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma