
AIL-framework
AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Current links from the OSINT Inception start-me project

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

A tool to listen on a KNX bus via TPUART and the Calimero Project suite and to dump the data from the packets into a Wireshark-Compatible file hex…

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

Re-play Security Events

Analyze, extract and visualize features, artifacts and IoCs of files and memory dumps (Windows, Linux, Android, iPhone, Blackberry, macOS binaries,…

Extract all forensic interesting information of Firefox, Iceweasel and Seamonkey browsers

Portable forensic acquisition tool for Android devices that collects relevant data via USB debugging to identify potential spyware or compromise…

Blue Team detection lab created with Terraform and Ansible in Azure.

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…

FWT is a security analysis and file monitoring tool that utilizes Sysmon events.

Generate bulk YARA rules from YAML input

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

SOC investigation of a CVE-2024-49138 exploitation alert using log analysis, threat intelligence, and endpoint containment.

Investigation of a PAN-OS CVE-2024-3400 command injection attempt, analyzing payload delivery, internal processing, and execution validation based on…

Technical analysis of a SharePoint ToolShell (CVE-2025-53770) exploitation attempt involving RCE, webshell deployment, and MachineKey extraction.