
dfir-malware-investigation
Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.

Spring4Shell (CVE-2022-22965) DFIR lab with exploit simulation, Python WAF, IOC-based detection, and PCAP analysis.


Project Repository for Exploitation, Detection and Mitigation of Folina Vulnerability (CVE-2022-30190)

Research repository tracking affected IPs from the Fortigate CVE-2022-40684 configuration leak by Belsen Group

Detects attempts and successful exploitation of CVE-2022-26809

Public repo for anything CVE-2022-21894

Created to help detect IOCs for CVE-2022-21894: The BlackLotus campaign

Patches CVE-2022-41099

Run on your ManageEngine server

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

7-Zip CVE-2022-29072 Mitigation - CHM file - This script detects if the .chm file exists and removes it.

Operational information regarding CVE-2022-3602 and CVE-2022-3786, two vulnerabilities in OpenSSL 3

Script to check for IOC's created by ProxyNotShell (CVE-2022-41040 & CVE-2022-41082)

Removes the ability for MSDT to run, in response to CVE-2022-30190 (Follina)

A Fullstack Academy Cybersecurity project examining the full cycle of the Follina (CVE-2022-30190) vulnerability, from exploit to detection and…

Major Security Vulnerability on PrestaShop Websites - CVE-2022-31101

Detection and Remediation of the Follina MSDT Vulnerability (CVE-2022-30190)