
MISP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

Educational scripts demonstrating QUIC protocol attacks including CVE-2022-30591 exploitation, flooding, and slowloris techniques against major…

Trusted localhost HTTPS — local CA, /etc/hosts, mDNS LAN sharing, reverse proxy. Maps https://name.local → localhost:port

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

my advisory, poc, slides and scripts related to IoT/protocol security

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such…

Signatures and IoCs from public Volexity blog posts.

DDoS botnet research and indicators of compromise from Nokia Deepfield ERT

Forensic triage toolkit for Citrix NetScaler devices, featuring a Dissect-based IOC scanner for webshells, timestomping, and suspicious binaries,…

Fingerprint SSH clients and servers.

This package extends the Intel package to log more fields

Unofficial Bash IoC checker for SonicWall SMA1000 appliances affected by actively exploited CVE-2026-15409 and CVE-2026-15410.

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts

Scanner de IOCs del ataque de cadena de suministro TeamPCP (CVE-2026-33634).


cve-2025-8088_detection