
arp-validator
Security Tool to detect arp poisoning attacks

Security Tool to detect arp poisoning attacks

Deceptive MySQL honeypot exploiting LOAD DATA LOCAL INFILE to read Windows files from attackers, capturing WeChat ID, phone number, and location data…

A host based IDS written in C# Targetted at Metasploit

Real-time host intrusion detection system for desktop Linux users, alerting on suspicious processes, new TCP connections, auditd events, and USB…

CY376 Blue Team project — pfSense DMZ, Suricata IDS/IPS, and automated host hardening against CVE-2014-6271

Exploit for Apache Unomi pre-auth RCE (CVE-2020-13942) with a Suricata detection rule for identifying exploitation attempts.

Docker-based multi-stage attack emulation lab demonstrating CVE-2017-5638 and CVE-2021-41773 exploitation, lateral movement, and Suricata IDS…

Host-based detection rules for the RCE vulnerability in the React JavaScript framework.