
Fortinet-FortiWeb-Fabric-Connector-CVE-2025-25257-Detection
This repository provides production-ready detection engineering content for **CVE-2025-25257**, a pre-authentication SQL Injection vulnerability in…

This repository provides production-ready detection engineering content for **CVE-2025-25257**, a pre-authentication SQL Injection vulnerability in…


CVE-2026-20253



Proof-of-concept Velociraptor artifacts pack to showcase a remote Veeam forensics pipeline.

A spigot plugin to fix CVE-2021-44228 Log4j remote code execution vulnerability, to protect Minecraft clients.

Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain

This repository contains Velociraptor artifact and Chainsaw rules to help detect Microsoft Remote Access VPN activity

OpenIOC rules to facilitate hunting for indicators of compromise

LetsDefend SOC336 case study on CVE-2025-21298

CVE-2026-48908

**Log4Shell PoC is a high-fidelity exploitation environment designed to replicate the CVE-2021-44228 vulnerability.** It provides a containerized…

Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…

Anti-keylogger/anti-rat application for Windows

Windows honeypot using ProjFS to project decoy files that trigger Event Log and desktop alerts when accessed, with SMB remote session logging for…

Python Decoders for Common Remote Access Trojans