
memOptix
A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

SVG Analysis and generation tools for commonly seen SVG attachment phishing

Indicator of Compromise Scanner for CVE-2019-19781

A Python script that gathers all valid IP addresses from all text files from a directory, and checks them against Whois database, TOR relays and…

Create Basic SSH Honeypot With Python

This opensource project dedicated to implementing Enterprise level AI-SPM. By doing so organizations can proactively protect their AI systems from…

Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, Suricata and…

IBM Security utilitary library in python. Search and query all sources: threat_activities and groups, malware_analysis, industries

Python tool that queries the VirusTotal API to check file hashes against 70+ antivirus engines, schedules recurring scans, and exports detection…

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts,…

Zeek script and Python utility to enrich network security monitoring logs with CVE identifiers for improved threat intelligence and vulnerability…

Real-world attack log analysis of CVE-2025-66478 (Next.js Server Actions RCE) with malware samples, attacker IP tracking, and container security…

Analysis of the ransom demands from Shodan results

Threat intelligence brief on CVE-2026-42208, a critical pre-auth SQL injection in BerriAI LiteLLM exploited within 36 hours of disclosure. Covers…

A hands on lab investigating CVE-2025-39507 from a Tier 1 SOC analyst perspective. Includes log review in Microsoft Sentinel, IP analysis, real world…

SDK for querying the Intelligence X search engine and data archive, supporting selectors like email, domain, IP, and phone. Includes API wrappers in…

Indicator of Compromise Scanner for CVE-2019-19781