
wafaray
Enhance your malware detection with WAF + YARA (WAFARAY)

Enhance your malware detection with WAF + YARA (WAFARAY)

camjacking templates

Automate the creation of a lab environment complete with security tooling and logging best practices

Docker-based security lab demonstrating Apache Struts2 S2-045 (CVE-2017-5638) exploitation and defense, featuring vulnerable and patched applications…

Asymmetric defense against adversarial AI agents. VeilGate evaluates each incoming request, redirects suspected agents into a per-IP-consistent…

Train, evaluate, and explore neural networks with built-in adversarial robustness tools, including PGD attacks, adversarial training, and robust…

AV/EDR Lab environment setup references to help in Malware development

[NeurIPS '25] Code for Paper "IF-Guide: Influence Function-Guided Suppression of Harmful Training Data for Reducing LLM Toxicity"

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

Containerized three-tier lab reproducing CVE-2023-43804 urllib3 cookie leak via cross-origin redirects, with exploit script and patch verification.

Docker-based lab demonstrating CVE-2019-15107, the Webmin unauthenticated RCE, covering deployment, exploitation, detection, and remediation.

Controlled NGINX HTTP/2 frame injection lab for CVE-2026-42926 patch validation and defensive research

Linux namespaces and seccomp-bpf sandbox

Manages the core lifecycle of Qubes OS domains via a Python admin API, handling secure compartmentalization with Xen and exposing an event system for…

Windows Process Lockdown Tool using Job Objects

Active deception tool that transparently migrates attackers from real targets to honeypots during exploitation and post-exploitation, supporting…

Database firewall written in Go

HellPot is a cross-platform portal to endless suffering meant to punish unruly HTTP bots.