
SecFlow
AI-driven automated threat analysis pipeline that routes files, URLs, IPs, domains, or images through specialized security analyzers and generates…

AI-driven automated threat analysis pipeline that routes files, URLs, IPs, domains, or images through specialized security analyzers and generates…

YARA Rule Strings Statistics Calculator and Malware Research Helper

Rule-based pattern matching engine for identifying and classifying malware samples using textual and binary patterns, with Python bindings and…

Headless AI agent for deterministic reverse engineering.

YARA rules for detecting CVE-2021-1675 (PrintNightmare) exploitation attempts and related malware artifacts.

A verified map of reverse engineering and malware analysis. Disassemblers, unpacking, exploit dev, fuzzing, DFIR, and the deep-cut writeups other…

Collection of Cyber Threat Intelligence sources from the deep and dark web

🕵️♂️ (2-in-1) Email & Username OSINT suite for deep data extraction just from a single Email/Username. Analyzes 400+ actively maintained scan…

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Comprehensive SOC analysis of Log4Shell (CVE-2021-44228) including technical breakdown, detection indicators, remediation strategies, and incident…

Graph-based insider threat detection using GCN-BiLSTM and attention models on CMU CERT datasets. Includes data preprocessing, feature extraction, and…

A deep dive into CVE-2025-49706 — the SharePoint spoofing flaw now exploited in the wild for stealthy web shell deployment and privilege escalation.

PowerShell-based Windows Server Security Audit Engine by Cyb3rint3l Labs. Measures alignment with the NIS2 directive and maps findings to MITRE…

CVE-2023-34362-IOCs. More information on Deep Instinct's blog site.

Open Source Intelligence Interface for Deep Web Scraping

Extracts network metadata and fingerprints (JA3, HASSH, RDFP) from pcap files or live traffic for honeypot monitoring and forensic analysis.

Wireshark plugin that correlates network traffic with threat intelligence, asset tags, and vulnerability data to accelerate forensic analysis of PCAP…

MITRE ATT&CK mapped queries for SentinelOne Deep Visiblity