
Detection-Rules
This repository contains validated detection rules for adversary behaviors observed during APT29 simulation. Each rule was tested against the actual…

This repository contains validated detection rules for adversary behaviors observed during APT29 simulation. Each rule was tested against the actual…

CVE Reproduction: cve-2024-43451-ntlm_hash_disclosure_reproduction

TryHackMe Moniker Link (CVE-2024-21413) walkthrough: Outlook Protected View bypass leading to NTLMv2 hash capture via a crafted moniker link.

Documentation of my hands-on lab Moniker Link (CVE-2024-21413) completed on TryHackMe.


Instructions for installing a vulnerable version of Exim and its expluatation

POC_CVE-2026-45185 for nuclei-templates

camjacking templates

A lightweight, self-hosted simulation tool for "ClickFix" (ClearFake) social engineering training. Safely simulates clipboard-injection attacks with…



Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

LetsDefend SOC336 case study on CVE-2025-21298

Educational cybersecurity project demonstrating exploitation and mitigation of CVE-2020-25213 (WordPress File Manager Plugin RCE). Includes malware…

Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

Penetration testing lab demonstrating CVE-2024-21413 moniker link exploitation for NTLM credential theft, including attack execution, hash cracking,…

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

Technical write-up on CVE-2024-21413 (Moniker Link vulnerability)