
Onapsis-Mandiant-CVE-2025-31324-Vuln-Compromise-Assessment
CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

Docker-based lab for CVE-2024-27198 TeamCity authentication bypass. Includes exploit reproduction, IoC hunting with Sigma/Suricata rules, and…

Proof-of-concept exploit for CVE-2019-17041, a buffer overflow in rsyslog's parser, demonstrating remote code execution.

A collection of scripts which may come in handy during your freedom fighting activities.

Security gateway for AI agents - credential-isolated API proxying and policy-gated remote execution (conclaves). Reduce the blast radius!

Enhanced SSH client with TUI — manage connections, keys, and sessions

Splunk detection writeup for CVE-2026-54121 (CertiGhost): AD CS certificate chase abuse leading to full domain compromise. Lab-validated detection,…

Modulith runtime with hot deployment, dynamic configuration, JAAS-based RBAC, and centralized logging. Supports REST/API, web, and Spring Boot…

CVE-2016-4999

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

Security research tool for PaperCut CVE-2026-81578 & CVE-2026-82078

Sentinel detection lab for MCP attack chains: CVE-2026-26118 SSRF token theft, tool poisoning, cross-server exfiltration, identity post-exploitation.…

Tool to dive Apache logs for evidence of exploitation of CVE-2018-7600

Kusto query-based detection and analysis tool for CVE-2021-44228 (Log4Shell) vulnerability, enabling rapid log hunting and exploitation…

Extensible Azure Security Tool - Documentation

An Active Defense and EDR software to empower Blue Teams