
Sigma-Rule-for-CVE-2021-40438-exploitation-attempt
Sigma-Rule-for-CVE-2021-40438-Attack-Attemp

Sigma-Rule-for-CVE-2021-40438-Attack-Attemp



CVE-2021-44228 Response Scripts



React2Shell(CVE-2025-55182) 취약점 기반 침해 시나리오를 재현하고, Wazuh/Sysmon/Coraza WAF 로그로 침해사고를 분석·대응한 DFIR 프로젝트

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

psad: Intrusion Detection and Log Analysis with iptables

Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management

fail2ban filter that catches attacks againts log4j CVE-2021-44228

IFRIT is an AI-powered reverse proxy that intercepts incoming requests in real time, classifying each one as legitimate or malicious. Legitimate…

A host-based IDS and network monitoring system (My graduation project)

Lightweight security state inspector for Linux — bridging the gap between pretty fetch tools and heavy-duty audit frameworks.

Sanitised Windows security lab demonstrating Active Directory administration, host and network detection, and layered mitigation of CVE-2021-34527.

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM