_____ ___ _   _ _  ______   ___  _____ _____
|_   _|_ _| \ | | |/ / ___| / _ \|  ___|_   _|
  | |  | ||  \| | ' /\___ \| | | | |_    | |
  | |  | || |\  | . \ ___) | |_| |  _|   | |
  |_| |___|_| \_|_|\_\____/ \___/|_|     |_|

// building software in public. logs, bugs, small victories. est. 2026


« back to projects

[SHIPPED] Detectsmith

started 2025-11-15 · source


A smithy for detection wards. I built it while working through detection-engineering problems, annoyed at the gap between “write a Sigma rule” and “watch it work in a SIEM.” Detectsmith lives in that gap. You forge the ward against real logs, and only hang it once it catches what it should.

goals

current status

Shipped and used. Detection packs for specific attacker TTPs get added as I forge them.