
cowrie
Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Blue-team SIEM lab: Wazuh 4.7.5 detecting 7 simulated attacks (SSH brute force, Slowloris DoS / CVE-2007-6750, web attacks) with real-time MITRE…

Hash-based malware scanner for incident response. Scans files recursively using known malware hashes, supports multithreading, extension filtering,…

Detects NTLM authentication status by checking LmCompatibilityLevel registry value to assess exposure to CVE-2024-43451 and mitigate credential relay…

FWT is a security analysis and file monitoring tool that utilizes Sysmon events.

An easy to use, light-weight, on-demand virus scanner for Linux systems. For additional help, see the <a…

A high interaction SSH honeypot

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Bash and PowerShell scripts to scan a local filesystem for Log4j .jar files which could be vulnerable to CVE-2021-44228 aka Log4Shell.

Medium-interaction SSH honeypot that logs brute force attacks and full attacker shell interactions, with customization options to reduce…