
SharePoint-ToolShell-CVE-2025-53770-Incident-Analysis
Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.
digital-forensicseducationexploitation+7

Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

SentinelNav: zero-dependency, pure Python binary visualization and forensics tool.


Lack of argument sanitization leading to password leakage in Ghostscript PDF versions up to 10.05.0.

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

My Citrix ADC NetScaler CVE-2019-19781 Vulnerability DFIR notes.