
wafaray
Enhance your malware detection with WAF + YARA (WAFARAY)

Enhance your malware detection with WAF + YARA (WAFARAY)

This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.

Educational cybersecurity project demonstrating exploitation and mitigation of CVE-2020-25213 (WordPress File Manager Plugin RCE). Includes malware…

Research environment and validation scripts for evaluating deserialization behaviors in MLflow and MLServer.

AV/EDR Lab environment setup references to help in Malware development

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

Creation of multiple Malware tools consisting of evasion, enumeration and exploitation

C++ tool that patches Windows API calls to bypass sandbox RAM size checks, enabling malware to evade detection in isolated analysis environments.

Golang bindings for PE-sieve

User-mode x86_64 binary emulator for malware analysis and reverse engineering. Supports PE, ELF, memory dumps, and raw binaries with syscall tracing,…

Proof-of-concept exploit for CVE-2026-33057, an unauthenticated RCE in Mesop, with accompanying YARA rules for detection.

Curated study notes and interview preparation guide for security engineering roles, covering networking, web security, cryptography, malware…

Curated inventory of cybersecurity tools and resources covering penetration testing, forensics, OSINT, web security, malware analysis, cryptography,…

Collection of quality safety articles. Awesome articles.

Regex-based malicious traffic detection add-on for OWASP ZAP. Flags compromised websites by matching URI and HTML patterns, with color-coded alerts…

Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified web UI

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

Web-based Yara rule debugger with an editor, live match evaluation, matched-string details, and rule dependency visualization for detection…