

Operational information regarding CVE-2022-3602 and CVE-2022-3786, two vulnerabilities in OpenSSL 3

Collection of IoCs available and related to attacks on ESXi infrastructures that occurred as of Friday February 3, 2023.

Honeypot for CVE-2025-53770 aka ToolShell

A secure low code deception runtime framework, leveraging AI for System Virtualization.

The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Securekit is a protocol-agnostic security kernel that enforces zero-trust, sandboxed execution for AI tool use. It sits between any LLM or agent…

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

AI runtime inventory: discover shadow AI, trace LLM calls

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

CVE-2020-9483 OR CVE-2020-13921

Log4Shell (CVE-2021-44228) exploit demo for SEAS 8405. Includes a vulnerable Spring Boot app, fake LDAP server, Docker setup, MITRE mapping, incident…

Find, verify, and analyze leaked credentials

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

Docker configuration to quickly setup your own Canarytokens.

Regipy is an os independent python library for parsing offline registry hives

PowerShell module for Office 365 and Azure log collection