
Baskerville
Selective protocol extractor from PCAPs or interfaces
incident-responsenetwork-forensicsnetwork-security+1
5

Selective protocol extractor from PCAPs or interfaces

Hands-on lab reproducing CVE-2019-11043 PHP-FPM RCE behind nginx, demonstrating reverse-tunnel persistence, memory forensics, and network traffic…

The Multiplatform Linux Sandbox

Powershell module for VMWare vSphere forensics

Behavioral Malware Analysis of a Simulated Multi-Stage Windows Malware Sample using FLARE-VM and REMnux. Evidence-driven DFIR investigation with IOC…