


🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

This repo contains IoCs which are associated with exploitation of CVE-2021-4428.

A collection of IOCs for CVE-2021-44228 also known as Log4Shell

Regla YARA para detectar el backdoor de liblzma en XZ Utils 5.6.0/5.6.1 (CVE-2024-3094).

Data we are receiving from our honeypots about CVE-2021-44228

Python script to search Citrix NetScaler logs for possible CVE-2023-4966 exploitation.

Created to help detect IOCs for CVE-2022-21894: The BlackLotus campaign

Hunting CVE-2018-13379

Compiling links of value i find regarding CVE-2021-44228

Sigma rule for detecting exploitation of CVE-2022-30190 (Follina) via Windows process creation events, enabling SOC teams to identify malicious…

Results of retrohunt for files matching YARA rules from https://github.com/AmgdGocha/Detection-Rules/blob/main/CVE-2023-21716.yar

BlackBerry Threat Research & Intelligence

Tracking the family of unrelated IoT botnets sharing CVE-2021-35394 as a delivery vector — findings, relationships, methodology.

Indicator of Compromise Scanner for CVE-2019-19781

Single-page tracker recording per-distribution patch status for CVE-2025-39682, a use-after-free in the Linux kernel kTLS receive path.