
vercel-april2026-incident-response
This is an incident response playbook we created for the Vercel April 2026 compromise

This is an incident response playbook we created for the Vercel April 2026 compromise

Spip network sensor written in Go

This package extends the Intel package to log more fields

KQL Hunting for WinRAR CVE-2023-38831

Extract useful information from PANOS support file for CVE-2024-3400

IOC checker for the TanStack/Mini Shai-Hulud npm supply chain attack (CVE-2026-45321)

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

Repository containing the compromised certificate seen in recent CVE-2022-30190 (Follina) attacks.

Contains a simple yara rule to hunt for possible compromised KeePass config files



IOCs for CVE-2019-19781

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

Python script to search Citrix NetScaler logs for possible CVE-2023-4966 exploitation.

La siguiente regla YARA ayuda a detectar la presencia del backdoor en la librería liblzma comprometida en sistemas que utilizan las versiones 5.6.0 y…

Data we are receiving from our honeypots about CVE-2021-44228

Created to help detect IOCs for CVE-2022-21894: The BlackLotus campaign