
OreNPMGuard
Defense Against the Shai-Hulud Supply Chain Attack

Defense Against the Shai-Hulud Supply Chain Attack

Proof-of-concept exploit for CVE-2019-17041, a buffer overflow in rsyslog's parser, demonstrating remote code execution.

A lightweight security auditor and sandbox for shell scripts. Oversight combines a Static Analysis engine (Rust) with Dynamic Enforcement (Linux…

SécurixOS is a NixOS-based secure operating system tailored for small to medium-sized teams. It provides a minimal, hardened environment with strong…

Multi-threaded Windows event log forensics timeline generator and threat hunting tool with full Sigma rule support, producing CSV/JSON timelines for…

A powerful and flexible tool to apply active attacks for disrupting stegomalware

A lightweight utility designed to detect and remediate systems affected by CVE-2024-3094, a critical vulnerability impacting [insert affected…

USB port access control tool for Debian with whitelist management, automatic background scanning daemon, and CLI interface to block or allow USB…

Fast, auditable Linux mitigation for CVE-2026-31431 Copy Fail: algif_aead block, verification, and AF_ALG seccomp hardening.

Security Governance for Agentic AI

A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.

Local Bytecode Scanner for the Log4JShell Vulnerability (CVE-2021-44228)

Find, verify, and analyze leaked credentials

Open-source secret scanner in Rust

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Cross-platform incident response and live forensics toolkit with built-in detection, structured analysis, and report generation — designed for fast,…