
quipu
A desktop workbench for writing, validating, compiling, and testing YARA rules.

A desktop workbench for writing, validating, compiling, and testing YARA rules.
Open-source threat intelligence platform for malware and observable analysis. Enriches IPs, domains, URLs, and hashes with external sources, performs…

MCP server integrating IDA Pro with AI agents, featuring a stateless gateway for multi-session management, a relational SQL query engine for binary…

A static + runtime security scanner for MCP (Model Context Protocol) servers

This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

Configuration Extractors for Malware

Config extractor for AgentTesla - Discord/Telegram Variant

Generate bulk YARA rules from YAML input

KrustyLoader Analysis

Read-only WordPress security scanner for HestiaCP servers. Detects wp2shell compromise indicators (CVE-2026-63030 / CVE-2026-60137) across all hosted…

Threat intelligence report repository for CVE-2026-9830, an authentication bypass vulnerability in BookingPress Pro WordPress plugin, with detailed…

Pre-install security for AI agents, npm packages, and MCP servers. Zero-dep local static analysis; normal scans never execute package code.

A doggo that helps look for security issues in your repositories.

Checks projects for compromised packages, suspicious files, and import statements.

Jenkins plugin providing script approval workflows and Groovy sandboxing to enforce secure script execution, with ACL-aware permission checks and…

Log4j Shield - fast ⚡, scalable and easy to use Log4j vulnerability CVE-2021-44228 finder and patcher

Local Bytecode Scanner for the Log4JShell Vulnerability (CVE-2021-44228)

Exploit for CVE-2020-35460 targeting MPXJ project management library, enabling arbitrary code execution via crafted project files in Java, .Net, and…