
ToolShellFinder
Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771
digital-forensicsforensicsincident-response+5

Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

Conducted a full SOC investigation into a Conti ransomware compromise of an Exchange server using Splunk 8.2.2. Analysed 28,145 events across Windows…

Zeek package that detects CVE-2022-22954 exploit attempts, logs exploit URIs and attacker response data to aid in incident response and network…