file-sniff
Malware triage via magic bytes. Detects extension spoofing, Shannon entropy, extracts IOCs, and auto-queries VirusTotal.
Magic Numbers
Shannon Entropy
VirusTotal API
IR / DFIR
reconstr
Timeline-driven attack reconstruction from Linux auth logs. Maps events to MITRE ATT&CK and renders an interactive kill-chain graph.
MITRE ATT&CK
Log Forensics
Kill Chain
SOC / DFIR
instagram-phishing-sim
Phishing simulation for security awareness training. Studies credential harvesting and UI cloning in a controlled lab environment.
Social Engineering
Security Awareness
Lab / Research