
canarytokens-docker
Docker configuration to quickly setup your own Canarytokens.

Docker configuration to quickly setup your own Canarytokens.

Demo for detection and mitigation of HTTP/2 Rapid Reset vulnerability (CVE-2023-44487)

Labtainers: A Docker-based cyber lab framework

DShield Sensor Log Collection with ELK

Full-lifecycle vulnerability management on a live Log4Shell (CVE-2021-44228) target — scan, manual exploitation, network detection, and remediation…

eBPF-based runtime detector for container breakout vulnerabilities in runc and Docker, monitoring syscalls and Docker daemon calls to detect…

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Web-based Traffic and Cybersecurity Network Traffic Monitoring

This project is a SIEM with SIRP and Threat Intel, all in one.

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

Easy to configure Honeypot for Blue Team

Detection script for CVE-2026-31431 (Copy Fail) that checks kernel version, patch presence, kernel configs, AF_ALG socket availability, setuid…

An open-source, self-hosted AI-powered SIEM, EDR and SOAR platform for modern security operations.

teamcity teamcity-CVE-2026-63077 exploitation pcap

Docker-based lab environment for exploiting CVE-2014-0160 (Heartbleed) to leak sensitive memory from nginx web servers, with Snort IDS detection…

Docker-based multi-stage attack emulation lab demonstrating CVE-2017-5638 and CVE-2021-41773 exploitation, lateral movement, and Suricata IDS…

Dockerized training lab for exploiting Heartbleed (CVE-2014-0160) via TLS heartbeat to leak nginx memory, plus Snort rule to detect attacks.

Honeypot for CVE-2025-53770 aka ToolShell