
Security-101
8 Lessons, Kick-start Your Cybersecurity Learning.

8 Lessons, Kick-start Your Cybersecurity Learning.

Remote Desktop Protocol in Twisted Python

A quick scanner for the CVE-2019-0708 "BlueKeep" vulnerability.

C# post-exploitation tool for abusing Microsoft Configuration Manager (SCCM) to perform lateral movement, credential gathering, and NTLM…

A wireshark plugin to instrument ETW

⭐⭐ Join us at SNIA SDC for the SMB3 IO Lab (September 28 - October 1, 2026), see upcoming Interoperability Events

Proof of concept for CVE-2021-24086, a NULL dereference in tcpip.sys triggered remotely.

CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

CVE-2024-38200 & CVE-2024-43609 - Microsoft Office NTLMv2 Disclosure Vulnerability

NCC Group Template for the Microsoft Threat Modeling Tool 2016 for Automotive Security

CVE-2020-16899 - Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule


A Zeek package to detect CVE-2021-42292, a Microsoft Excel local privilege escalation exploit.

Identifying and Mitigating the CVE-2020–0796 flaw in the fly

基于asyncio(协程)的CVE-2020-0796 速度还是十分可观的,方便运维师傅们对内网做下快速检测。

POC Of CVE-2022-26937

Detection of attempts to exploit Microsoft Windows DNS server via CVE-2020-1350 (AKA SIGRed)