
SessionView
A portable C# utility for enumerating local and remote windows sessions

A portable C# utility for enumerating local and remote windows sessions

🚨 Just completed a detailed investigation for Event ID 193: "SOC231 - Cisco IOS XE Web UI ZeroDay (CVE-2023-20198)" via @LetsDefend.io. The attacker…

Recovery notes for proxmox advisory ID: PSA-2026-00043-1 (CVE-2023-54391)

Detection scripts, patch checker & hardening guide for CVE-2026-44963 (Veeam B&R RCE)

An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

🔵 Threat analysis writeup for Follina (CVE-2022-30190) — Microsoft MSDT RCE zero-day exploited in the wild. Covers static analysis, VirusTotal,…

🚨 Just completed an incident report on Event ID 217: Apache OFBiz Auth Bypass and Code Injection 0-Day (CVE-2023-51467). This critical vulnerability…

PowerShell remediation for CVE-2013-3900 (WinVerifyTrust) / Tenable Plugin 166555 using EnableCertPaddingCheck.

You didn't think I'd go and leave the blue team out, right?

Instantly disable Touch ID and lock your Mac with one click or keyboard shortcut.

Security advisory detailing a critical authentication vulnerability (CVE-2025-4162030) in Copilot, involving user ID switching that could lead to…

Open source templates you can use to bootstrap your security programs

cPanel CVE-2026-41940 nuclear.x86 Security Audit & Cleanup Script

🔍 Just wrapped up an incident report on a Phishing Alert (Event ID 257, SOC282). Enhancing my expertise in email threat detection and response! 🚨…

🚨 New Incident Report Completed! 🚨 Just wrapped up "Event ID 268: SOC292 - Possible PHP Injection Detected (CVE-2024-4577)" on LetsDefend.io. This…


Detailed incident report and educational analysis of CVE-2022-41082 (ProxyNotShell) exploitation attempt on Microsoft Exchange Server, including…