
wp2shell-compromise-scanner-plugin
Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

Read-only WordPress User Registration CVE-2026-1492 checker for hidden admins, plugin version, uploads PHP, cron, and compromise IOCs.

Defensive mitigation and auditing toolkit for CVE-2026-54420 in LiteSpeed cPanel plugin, providing symlink detection, IOC hunting, and remediation…

Total Commander FTP Password Recovery Tool for Python allows you to decrypt the FTP account password information for all Total Commander versions…

A radare2 script to parse the gopclntab to facilitate Reverse Engineering Go binaries.

Wireshark plugin for dissecting the Telegram protocol

Automagically extract forensic timeline from volatile memory dump

Volatility plugin for extracts configuration data of known malware

Zeek plugin to detect and decrypt XOR-encrypted EXEs

Lua plugin to extract data from Wireshark and convert it into MISP format

Volatility Explorer Suit (volatility 3)

WinDbg plugin for automated malware dynamic analysis and IOC extraction. Executes within the debugger to collect predefined indicators and writes…

A wireshark plugin to instrument ETW

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

volatility explorer (volatility 2)

Volatility plugin to extract X screenshots from a memory dump
