
tpotce
🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

eBPF Security Monitoring and Sandboxing Agent Based on Aya

Labtainers: A Docker-based cyber lab framework

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

The Whale Sentinel Services

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

This project is a SIEM with SIRP and Threat Intel, all in one.

CVE proof-of-concept labs, exploit scripts, and detection/prevention rules (Nginx, Apache, Snort, YARA) for high-severity CVEs. Authorized security…

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

Automate the creation of a lab environment complete with security tooling and logging best practices

DShield Sensor Log Collection with ELK

Log4Shell (CVE-2021-44228) defense lab — nginx + Coraza WAF dynamic module + OWASP CRS v4. Educational use only.

Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulation.

This tool parses log data and allows to define analysis pipelines for anomaly detection. It was designed to run the analysis with limited resources…

Proof-of-concept exploit for CVE-2023-0264 (Keycloak OIDC session hijacking) with a frontend for session_id substitution and an agent that detects…

Minimal Redis honeypot detecting RediShell (CVE-2025-49844) exploits.

Docker-based lab environment for exploiting CVE-2014-0160 (Heartbleed) to leak sensitive memory from nginx web servers, with Snort IDS detection…