
AgentTesla-Config-Extractor
Config extractor for AgentTesla - Discord/Telegram Variant

Config extractor for AgentTesla - Discord/Telegram Variant


Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts

Honeypot for CVE-2025-53770 aka ToolShell

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

Repository containing the compromised certificate seen in recent CVE-2022-30190 (Follina) attacks.

This repository contains Yara rule and the method that a security investigator may want to use for CVE-2022-26134 threat hunting on their Linux…

Contains a simple yara rule to hunt for possible compromised KeePass config files

cve-2025-8088_detection

Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

Detect CVE-2025-54313 eslint-config-prettier supply chain attack IOCs on Windows

A simple bash script to check for evidence of compromise related to CVE-2024-3400

Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771



IOCs for CVE-2019-19781

CVE-2022-28672 Vulnerabilidad Foxit PDF Reader - UaF - RCE - JIT Spraying

This repo contains IoCs which are associated with exploitation of CVE-2021-4428.