
Quick-Analysis
Provides rapid triage and summarization of malware samples and threat indicators, highlighting key behavioral and contextual details for analysts.

Provides rapid triage and summarization of malware samples and threat indicators, highlighting key behavioral and contextual details for analysts.

A collection of my yara rules

Public repository of Sigma and YARA rules created by Synacktiv

This is the home of the Expel Intel Team. Here, we will share IOCs and other information that is either not suitable for fitting into other mediums…

This is a mirror of a forked repository. It adds several features to gitrob including GitLab support, commit content searching, in-memory repository…

A collection of scripts for processing network forensics type data and intelligence, mainly into a postgres database.

A short scraper looking for a POC of CVE-2024-49112

Zeek script using the official ICANN Top-Level Domain (TLD) list with the Input Framework to extract the relevant information from a DNS query and…

Tracked impact of MOVEit CVE-2023-34362 with affected organizations, domain discovery via SFTP headers and cookies, and a real-time news ticker.

Curated dataset of IPs, ASNs, and SMTP banners for Exim CVE-2019-10149, with linked advisories and threat actor intelligence for vulnerability…

Analysis and Representation of Graphs of Suspicious Operations (Analyse et Représentation des Graphes des Opérations Suspectes)

Parse citrix netscaler logs to check for signs of CVE-2023-4966 exploitation

Custom YARA rule for detecting artifacts of CVE-2025-32433, an Erlang/OTP SSH pre-authentication RCE vulnerability. Validated against public PoCs and…

ntroducing Search_CVE: Unleash the Power of CVE Searching Search_CVE is a cutting-edge tool designed to simplify and optimize the process of…

Provides mitigation and detection guidance for CVE-2026-8388, including indicators of compromise and remediation steps for security teams.

In the realm of cybersecurity, accurately identifying and characterizing web servers is crucial for threat detection, vulnerability assessment, and…

Daily-updated JSON repository of NVD/CVE vulnerability data, enabling easy retrieval and git-based exploration of CVE modification history for…

Some of my KQL hunting queries