
laravel-threat-detection
Passive Laravel middleware that detects and logs SQL injection, XSS, RCE, bot scanners, and 175+ attack patterns. Features a built-in dashboard,…

Passive Laravel middleware that detects and logs SQL injection, XSS, RCE, bot scanners, and 175+ attack patterns. Features a built-in dashboard,…

Educational analysis of the 2023 MOVEit Transfer data breach (CVE-2023-34362), detailing unauthenticated SQL injection exploitation and its global…

Educational case study of the MOVEit Transfer SQL injection breach (CVE-2023-34362) by Cl0p ransomware group, covering attack timeline, exploitation,…

Analyzes Nginx access logs to detect SQL injection, scanner tools, webshells, and exploitation attempts, aiding system administrators in server…

Detection engineering content for CVE-2025-25257, a pre-auth SQL injection in Fortinet FortiWeb leading to RCE. Includes YARA, Sigma, KQL, and Splunk…

Academic analysis of CVE-2023-34362 SQL injection in MOVEit Transfer, including attack-flow breakdown, trust boundary analysis, and a SOC-style…

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

Open-source threat intelligence platform for collecting, correlating, and sharing structured cybersecurity indicators, malware analysis, and attack…

Offline MongoDB analysis tool detecting CVE-2025-14847 exploitation via log correlation, assert count analysis, and FTDC spike detection. Supports…

Python-based tool to detect ransomware infections and malicious code in MySQL instances. Performs reconnaissance, user enumeration, and deep scans…

Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

Analysis and remediation guide for CVE-2025-14847 (MongoBleed), a MongoDB zlib compression memory disclosure. Includes detection indicators,…

Hunt for CVE-2026-18963 exploitation traces (Keycloak unauthenticated account takeover) in the Keycloak database