
CVE-2019-19781-Forensic
Automated forensic script hunting for cve-2019-19781

Automated forensic script hunting for cve-2019-19781

Read-only N-able N-central CVE-2026-18556/CVE-2026-18577 post-exploitation IoC hunter for Windows endpoints

Unofficial Bash IoC checker for SonicWall SMA1000 appliances affected by actively exploited CVE-2026-15409 and CVE-2026-15410.

Run on your ManageEngine server

Extract useful information from PANOS support file for CVE-2024-3400

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…


Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771

CarbonBlack hunting queries to detect PrintNightmare (CVE-2021-1675) exploitation via file, module load, and process events, based on Sigma rules.

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

This repo contains IoCs which are associated with exploitation of CVE-2021-4428.

Python script to search Citrix NetScaler logs for possible CVE-2023-4966 exploitation.

Sigma rule for detecting exploitation of CVE-2022-30190 (Follina) via Windows process creation events, enabling SOC teams to identify malicious…

SIEM query collection for detecting Log4Shell (CVE-2021-44228) exploitation attempts. Provides ready-to-use detection rules for security monitoring…

Defensive detection kit for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway, with Sigma and YARA rules, IOCs, and remediation…

Indicator of Compromise Scanner for CVE-2019-19781