
Sigma-Rule-for-CVE-2021-40438-exploitation-attempt
Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

A simple bash script to check for evidence of compromise related to CVE-2024-3400


My Citrix ADC NetScaler CVE-2019-19781 Vulnerability DFIR notes.

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

A collection of IOCs for CVE-2021-44228 also known as Log4Shell

This repo contains IoCs which are associated with exploitation of CVE-2021-4428.

Regla YARA para detectar el backdoor de liblzma en XZ Utils 5.6.0/5.6.1 (CVE-2024-3094).

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

Data we are receiving from our honeypots about CVE-2021-44228

Created to help detect IOCs for CVE-2022-21894: The BlackLotus campaign

Python script to search Citrix NetScaler logs for possible CVE-2023-4966 exploitation.

Hunting CVE-2018-13379

Compiling links of value i find regarding CVE-2021-44228

Sigma rule for detecting exploitation of CVE-2022-30190 (Follina) via Windows process creation events, enabling SOC teams to identify malicious…

Results of retrohunt for files matching YARA rules from https://github.com/AmgdGocha/Detection-Rules/blob/main/CVE-2023-21716.yar

BlackBerry Threat Research & Intelligence