Skip to content
View zeiddata-dev's full-sized avatar

Organizations

@Zeid-Data

Block or report zeiddata-dev

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
zeiddata-dev/README.md

Zeid Data

Typing SVG

Website   Research Lab   Report a Detection Gap


Status

Repo Quality   README Link Check   Latest Release   Last Commit

Repo Latest signal Updated
Research Fix README link checker TOML config 2026-05-16

Research Lab

Area What it gives you
Detections KQL, Sigma, SPL, and signal logic. Deploy them. Tell me what's missing.
Automation Validators, collectors, and helper scripts. PRs welcome.
Workbooks SOC-style dashboard and visual analytics artifacts.
Research Notes Malware research notes and public-safe writeups.
Releases Versioned drops of stable lab content.

Open to contribution. See CONTRIBUTING.md for the ground rules.


What I Build With

Domain Tools
Detection Engineering KQL  ·  Sigma  ·  SPL  ·  YARA
SIEM Platforms Microsoft Sentinel  ·  Elastic  ·  Splunk  ·  Chronicle
Automation Python  ·  Bash  ·  PowerShell  ·  GitHub Actions
Data & Pipelines Pandas  ·  Polars  ·  dbt  ·  REST APIs
Infrastructure Linux  ·  Docker  ·  Cloudflare  ·  AWS

Operating Rules

Rule
Evidence first No claim ships without an artifact, log reference, or reproducible command.
Defensive and authorized All work is scoped to authorized, public-safe security engineering.
No secrets No credentials, private logs, or personal data in any project artifact.
Automation is accountable Scripts explain what they read, what they changed, and what proves it worked.
Disagree? Open a discussion. Evidence required.

Contribution snake

Website   LinkedIn   Security Reports

Built for receipts. The robot is friendly. The owner is not.

Popular repositories Loading

  1. RuView RuView Public

    Forked from ruvnet/RuView

    π RuView: WiFi DensePose turns commodity WiFi signals into real-time human pose estimation, vital sign monitoring, and presence detection — all without a single pixel of video.

    Rust 1

  2. OpenCanary OpenCanary Public

    Forked from thinkst/opencanary

    A deception sensor that generates evidence, not just alerts.

    Python

  3. trackerjacker trackerjacker Public

    Forked from calebmadrigal/trackerjacker

    Like nmap for mapping wifi networks you're not connected to, plus device tracking

    Python

  4. Research Research Public

    Zeid Data Research Labs is where suspicious logs, broken pipelines, and “damn, I'm lost again” engineering come to be judged.

    Python

  5. zeiddata-dev zeiddata-dev Public

    Zeid Data Lead Developer

  6. mui-x mui-x Public

    Forked from mui/mui-x

    MUI X: Build complex and data-rich applications using a growing list of advanced React components, like the Data Grid, Date and Time Pickers, Charts, and more!

    TypeScript