
reconkg
Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

I-SOON/Anxun leak related stuff

Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan,…



Technical analysis of the cPanel/WHM auth bypass

Read-only Windows forensic scanner for software traces — persistence, execution artifacts (Prefetch, Shimcache, BAM), user activity and Ghost Tasks…

Malicious package & supply-chain intelligence

PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal


Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228


Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.

Hunts out CobaltStrike beacons and logs operator command output


YAML-configurable low-interactive honeypot framework for deploying HTTP/HTTPS-based deception servers with built-in honeytraps and Datadog log…