
wafaray
Enhance your malware detection with WAF + YARA (WAFARAY)

Enhance your malware detection with WAF + YARA (WAFARAY)

Docker-based lab for CVE-2024-27198 TeamCity authentication bypass. Includes exploit reproduction, IoC hunting with Sigma/Suricata rules, and…

All-source intelligence fusion dashboard — WiFi, cellular, CCTV, ADS-B, orbital & SDR feeds unified into a single tactical map. Security research…

Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings,…

Asymmetric defense against adversarial AI agents. VeilGate evaluates each incoming request, redirects suspected agents into a per-IP-consistent…

SOC investigation of CVE-2024-49138 exploitation alert involving PowerShell, EDRFreeze execution, and defense evasion behavior in a simulated…

An authoritative list of awesome devsecops tools with the help from community experiments and contributions.

Dockerized honeypot for CVE-2021-44228.

Galah: An LLM-powered web honeypot.

YAML-configurable low-interactive honeypot framework for deploying HTTP/HTTPS-based deception servers with built-in honeytraps and Datadog log…

A Rust honeypot that simulates a vulnerable cPanel/WHM instance for CVE-2026-41940

Modern Web Firewall: stop account takeovers, weak passwords, cloud IPs, DoS attacks, disposable emails

Collection of quality safety articles. Awesome articles.

CVE analysis of CVE-2025-40536, SolarWinds Web Help Desk security control bypass (CVSS 8.1). Covers vulnerability mechanics, attack chain with…

Regex-based malicious traffic detection add-on for OWASP ZAP. Flags compromised websites by matching URI and HTML patterns, with color-coded alerts…

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

EXIST is a web application for aggregating and analyzing cyber threat intelligence.