
CVE-2024-4577
Demonstrates exploitation of CVE-2024-4577, a PHP CGI RCE on Windows, including attack steps, reverse shell deployment, and ransomware simulation…

Demonstrates exploitation of CVE-2024-4577, a PHP CGI RCE on Windows, including attack steps, reverse shell deployment, and ransomware simulation…

Curated index of incident response and DFIR tools, including memory and disk forensics, evidence collection, log analysis, playbooks, and educational…

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Distributed & real time digital forensics at the speed of the cloud

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

Advanced detection of port scanning, DoS and malware attacks using Machine Learning techniques

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Indicator of Compromise Scanner for CVE-2019-19781

A curated collection of DFIR skills and workflows for InfoSec practitioners.

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

This repository contains a list of new remediation scripts.

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

This is a bash script focus on hardening linux. This is a custom think of windows defender but unlike of their privacy issue. User can feel freedom…

Automate the creation of a lab environment complete with security tooling and logging best practices