
mvt
Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

A curated set of NSO Group internal documents, product materials and sworn testimony that entered the public record in WhatsApp Inc. and Meta…

Android Malware Tracker

This is part of a module for the framework that i'm constantly developing. Currently only information of the C2 are disclosed here.

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Detection, analysis, and response strategies for CVE-2024-3400 exploitation attempts targeting Palo Alto PAN-OS GlobalProtect portals. Includes IOCs,…

CVE-2025-21042

Simple honeypot for CVE-2024-3400 Palo Alto PAN-OS Command Injection Vulnerability

Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts

No-root network monitor, firewall and PCAP dumper for Android

Investigation of a PAN-OS CVE-2024-3400 command injection attempt, analyzing payload delivery, internal processing, and execution validation based on…

🔗 Lightweight security orchestrator mobile application for URI vetting, providing a unified, multi-engine interface to aggregate and validate link…


OS-level monitor for AI agents: observes processes, file access, and network activity on the local machine and attributes each event to an agent…

androidqf (Android Quick Forensics) helps quickly gathering forensic evidence from Android devices, in order to identify potential traces of…

Privacy-first Desktop app that routes your traffic through Tor - Anonymous browsing made simple

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Full-stack security OS for AI agents with five-layer defense-in-depth architecture covering foundation scan, input sanitization, cognition…