
reconkg
Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

"Reverse engineering analysis of RedLine Stealer, a .NET-based info-stealer that uses C2 domains (198.46.86.63, tempuri.org), Windows Defender…

AISA-Scanner is an AI-powered autonomous vulnerability scanner that maps CVEs to metasploit exploits, MITRE, CEH, and SANS, delivering intelligent,…

DShield Sensor Log Collection with ELK

CVE-2026-54984 / ZDI-26-543: Windows ICC file parsing out-of-bounds write (CWE-122, CVSS 7.8)

Signatures and IoCs from public Volexity blog posts.

Collection of extracted Microsoft Defender data for security research purposes


This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.

The Sigma command line interface based on pySigma

Rules generated from our investigations.

A repository that maps commonly used attacks using MSRPC protocols to ATT&CK

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Detect Tactics, Techniques & Combat Threats