
CVE-2020-16898
CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

A framework for BREACH and other compression-based crypto attacks

Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).

With Wireshark or TCPdump, you can determine whether there is harmful activity on your network traffic that you have recorded on the network you…

Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228

PolarDNS is a specialized authoritative DNS server suitable for penetration testing and vulnerability research.

IPv6Tools is a robust modular framework that enables the ability to visually audit an IPv6 enabled network.

PoC - Remote Unauthenticated Code Execution Vulnerability in OpenSSH server (Scanner and Exploit)

Windows Network File System Crash PoC

Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

Tool for testing mitigations and exposure to Rapid Reset DDoS (CVE-2023-44487)

A low interaction honeypot for the Cisco ASA component capable of detecting CVE-2018-0101, a DoS and remote code execution vulnerability.

Verification tools for CVE-2016-1287

Detects attempts and successful exploitation of CVE-2022-26809

Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support

Identifying and Mitigating the CVE-2020–0796 flaw in the fly

The vulnerability allows an attacker with network access to an Erlang/OTP SSH server to execute arbitrary code without prior authentication.