
THM-Tempest
TryHackMe SOC Level 1 — Follina CVE-2022-30190, Nim C2, Chisel, PrintSpoofer, backdoor accounts

TryHackMe SOC Level 1 — Follina CVE-2022-30190, Nim C2, Chisel, PrintSpoofer, backdoor accounts

CVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool

Some labs looking at the xz backdoor vulnerability (CVE-2024-3094)

Python demo simulating CVE-2024-3094: a supply chain backdoor in XZ Utils with a trigger-based stealth activation.

Real-world attack analysis of CVE-2025-55182 (React2Shell) - React Server Components RCE vulnerability

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.…

Shell-based scanner to detect the XZ Backdoor (CVE-2024-3094) vulnerability in files and directories, enabling rapid identification and mitigation of…

Scan for files containing the signature from the `xz` backdoor (CVE-2024-3094)

XZ Backdoor Extract(Test on Ubuntu 23.10)

Shell script to detect the CVE-2024-3094 backdoor in XZ Utils by checking for malicious code in liblzma build artifacts and identifying affected…

A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks

Powershell Empire Persistence finder