
ioc-scanner-CVE-2019-19781
Indicator of Compromise Scanner for CVE-2019-19781

Indicator of Compromise Scanner for CVE-2019-19781

Just my findings of malwares

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

OpenIOC rules to facilitate hunting for indicators of compromise

Detects attempts and successful exploitation of CVE-2022-26809

Portable security rules for the action boundary of AI agents

Welcome to the NCC Group Threat Intelligence Alert repo, here you will find the alerts which we have raised to our customers regarding intelligence…

Simple IP Information Tools for Reputation Data Analysis

ToolShell scanner - CVE-2025-53770 and detection information

Centralized IoC scanner that deploys Loki across endpoints, collects detection results, and parses logs into CSV for incident response and forensic…

Kratos is a high-performance Windows File System Minifilter driver designed to detect, block, and permanently immunize

First public analysis of SoftLanding UEFI bootkit: Ring -2 implant, CVE-2025-7029, 240+ Gigabyte boards, GPU AI evasion, dual C2. YARA + Sigma +…

Custom YARA rule for detecting artifacts of CVE-2025-32433, an Erlang/OTP SSH pre-authentication RCE vulnerability. Validated against public PoCs and…

Technical Analysis of Bibi-Windows Wiper Targeting Israeli Organizations

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

Detection of Manjusaka C2 framework

Some of my KQL hunting queries

** DISPUTED ** 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the…