
auditd-attack
A Linux Auditd rule set mapped to MITRE's Attack Framework

A Linux Auditd rule set mapped to MITRE's Attack Framework

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Latest CVEs with their Proof of Concept exploits.

Gets updates from various clearnet domains and ransomware threat actor domains

Malicious Extension Database

Parses public sandbox detonation reports to produce threat hunting intelligence, organizes findings via MITRE ATT&CK, assembles IOCs, and generates…

Reproducible SOC lab for CVE-2024-4577 detection and response