
zeek-jetdirect
Zeek Package to detect cve-2017-2741

Zeek Package to detect cve-2017-2741
Analysis, detection, and mitigation of CVE-2023-20198 exploitation in Cisco IOS XE – QUB CSC3064 Network Security Assessment

Sigma Rule for CVE-2025–29927 Detection

Investigation of CVE-2018-11776 vulnerability that allows attackers to remotely execute code and gain control over Apache Struts-based applications.


Integrates your Modern Honeypot Network Server and Wordpress Blog via MHN's REST API and WP's shortcodes


Honeypot FTP server written in .NET Core (C#) for both Linux and Windows.

Redis UAF RCE PoC collection for CVE-2026-23479: safe version checker, exploit module, GDB-assisted PoC, and Sigma detection rules for authorized…

GitHub mirror of the Linux Kernel's audit repository

React2Shell(CVE-2025-55182) 취약점 기반 침해 시나리오를 재현하고, Wazuh/Sysmon/Coraza WAF 로그로 침해사고를 분석·대응한 DFIR 프로젝트

Lightweight web-attack monitor. One Go binary + SQLite. Not OSSEC, not a WAF.

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

Практические кейсы по информационной безопасности: развёртывание SIEM Wazuh и эксплуатация CVE-2021-41773

Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)


A ModSecurity ruleset for detecting potential attacks using CVE-2018-6389