
CVE-2007-2447-Exploitation-SIEM-Detection-Lab
Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)


Rules generated from our investigations.

Small tool to play with IOCs caused by Imageload events

Splunk SIEM lab simulating and detecting CVE-2021-34527 (PrintNightmare) exploitation using Sysmon, Windows Event logs, and custom SPL detection…

CY376 Blue Team project — pfSense DMZ, Suricata IDS/IPS, and automated host hardening against CVE-2014-6271

MysqlHoneypot

Runs custom filters on Elasticsearch and alerts on matches

Generate bulk YARA rules from YAML input

Rust tool to detect cell site simulators on an orbic mobile hotspot

A host-based IDS and network monitoring system (My graduation project)

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

Honeynet Project generic authenticated datafeed protocol

CVE-1999-0678- /doc directory browsable

🔒 Spring4Shell Firewall Defense — Cybersecurity Incident Simulation This project is part of a Cybersecurity Job Simulation I completed in August…


Defensive security demo: seL4 microkernel gateway protecting vulnerable ICS from CVE-2019-14462