
beacon-hunter
Detects phi-structured C2 beacons that evade RITA and standard regularity-based detectors

Detects phi-structured C2 beacons that evade RITA and standard regularity-based detectors

PoC toolkit that unpacks router firmware, decrypts device secrets, forges JWT tokens, and exploits CVE-2026-71960/71961 to take over Cudy WR3000 mesh…

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

PEAK Baseline Threat Hunt dashboards for Security Onion 3.0 — covering DNS, HTTP, TLS, SMB, Kerberos, SSH, RDP, DCE/RPC, LDAP, Modbus, DNP3,…

SMBeagle - Fileshare auditing tool.

PowerShell toolkit to audit, harden, and hunt for insecure NTLM/SMB usage, addressing CVE-2025-50154 credential leak risks with event log analysis…

Real-time C2 traffic extractor for malware analysts. Hooks Win32 connection APIs to intercept and analyze command-and-control communication,…

CVE-2019-0708, A tool which mass hunts for bluekeep vulnerability for exploitation.

Hunt Open MongoDB instances

Hunt for and Exploit the libSSH Authentication Bypass (CVE-2018-10933)