Germany

Thomas Patzke

Elite
@thomaspatzke

Loves to build InfoSec-related tools.

elk-detection-lab. An ELK environment containing interesting security datasets.

136

WASE. The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch

115

android-nfc-paycardreader. NFC card reader Android app. Currently reads the german GeldKarte and some credit cards.

111

Log4Pot. A honeypot for the Log4Shell vulnerability (CVE-2021-44228).

94

logstash-linux. Logstash Configuration for Linux Logs (Authentication, Apache, Mail)

92

POODLEAttack. PoC implementation of the POODLE attack

70

EQUEL. An Elasticsearch QUEry Language

58

Burp-SessionAuthTool. Burp plugin which supports in finding privilege escalation vulnerabilities

42

sigma-workshop. Elasticsearch/Kibana environment and log data for Sigma workshop

27

Clickjacking-Exploit. Clickjacking Proof-of-Concept Exploit

26

Burp-MissingScannerChecks. Collection of scanner checks missing in Burp

16

NastyWebHackme. Broken web app intentionally built with pentesting obstacles

16

mordor. Re-play Adversarial Techniques

10

sigma-workshop-operationalization. Workshop "Operationalization of Sigma Rules with Processing Pipelines"

8

BrowserCrasher. Crash browsers with opensource test suites

8

dfirtrack. DFIRTrack - The Incident Response Tracking Application

7

awesome-threat-detection. A curated list of awesome threat detection and hunting resources

7

Demo-ClientsideWebAttacks. Demonstration of some client-side web application vulnerabilities (DOM XSS, Clickjacking) and wrong usage of local storage.

7

HELK. The Hunting ELK

5

CSRF-Multistep. Framework for building multistep CSRF Proof of Concepts

4

Burp-Randomizer. Randomize parts of requests with a session handling rule action.

3

infosec-notebooks. Jupyter notebooks for threat hunting and incident response

2

cycat-taxonomy. CyCAT.org taxonomies

2

APTSimulator. A toolset to make a system look as if it was the victim of an APT attack

2

postfix-grok-patterns. Logstash configuration and grok patterns for parsing postfix logging

2

hashextension. Implementation of the hash extension attack

2

evtx2es. Import Windows Eventlogs(.evtx) to ElasticSearch.

1

PoodleCheck. A standalone check for the POODLE vulnerability based on the PolarSSL library.

1

IntelligentProcessLifecycle. The Intelligent Process Lifecycle of Active Cyber Defenders

1

sleepy-puppy. Blind Cross-site Scripting Collector and Manager

1

misp-objects. Definition, description and relationship types of MISP objects

1

mod0BurpUploadScanner. HTTP file upload scanner for Burp Proxy

1

MISP. MISP (core software) - Open Source Threat Intelligence and Sharing Platform (formely known as Malware Information Sharing Platform)

1

OwnTwitterFilterBubble. Build your Own Twitter Filter Bubble with Deep Learning

1

AVR-RandomStuff. Some tiny programs I coded for Atmel AVR microcontrollers. Sense&pointless, but possibly useful for someone.

1

logstash-mail-log. Logstash patterns and config for postfix, cbpolicyd and spamd.

1

ImageSearch. Script collection that makes my photos searchable

1

testssl.sh. Testing TLS/SSL encryption

1

detection-engineering-with-sigma. Detection Engineering with Sigma workshop (2025)

1
39
Apply