Building Your Own Falcon MCP: ThreatFox + Cross-Reference Against 6 Million Hosts

I saw a post describing how Falcon MCP is used to track APT C2 infrastructure. Tonight I replicated it with free sources — and found an active Cobalt Strike C2 in my database.

August 6, 2026 · 6 min · Bojemoi

Construire son propre Falcon MCP : ThreatFox + Cross-Référence sur 6 millions d'hôtes

J’ai vu un post sur Dread décrivant l’usage des flux Falcon MCP pour tracker des C2 APT. Ce soir, j’ai reproduit ça avec mes propres sources gratuites — et trouvé un C2 Cobalt Strike actif dans ma base.

August 6, 2026 · 5 min · Bojemoi

Operation Talked: Russia-Nexus APT vs a Homelab Pentest Pipeline — Same Tools, Different Discipline

SOCRadar exposed an active Russian espionage campaign targeting Ukraine’s defense sector. Their C2 stack? Almost identical to my homelab. Here’s the full comparison.

July 31, 2026 · 5 min · Bojemoi

Bojemoi Lab : l'architecture complète d'un homelab offensif/défensif sur Docker Swarm

Tour d’horizon complet de Bojemoi Lab : 4 nœuds Docker Swarm, 43 services, un pipeline de scan réseau massif, de la threat intelligence multi-sources et un stack d’observabilité full.

March 12, 2026 · 10 min · Bojemoi

Bojemoi Lab — Architecture Globale

Schéma complet de Bojemoi Lab : 4 nœuds Swarm, 12 stacks, 43 services — scan internet, threat intel multi-sources, honeypot, IDS/IPS, et intégration MCP/Claude.

March 12, 2026 · 17 min · Bojemoi

Bojemoi Lab sur Docker Hub : 21 images open source pour un homelab red-team

J’ai publié les 21 images Docker de Bojemoi Lab sur Docker Hub. Tour d’horizon de ce que fait chaque composant et comment tout ça s’articule.

March 1, 2026 · 6 min · Bojemoi

OSINT automatique pendant le scan d'IPs : enrichir la base en temps réel

Comment j’ai ajouté un enrichissement OSINT automatique sur chaque IP lors du fingerprinting réseau — détection de menaces en temps réel, 20 minutes de dev avec Claude.

February 26, 2026 · 3 min · Bojemoi

Construire une Plateforme de Threat Intelligence avec ML dans son Homelab

Comment j’ai construit, en partant de zéro, une plateforme de threat intelligence de niveau production qui prédit les attaques DDoS en surveillant les canaux Telegram hacktivistes.

February 24, 2026 · 11 min · Bojemoi

Building a Homelab Threat Intelligence Platform with ML: A Beginner's Journey

How I built, from scratch, a production-grade threat intelligence platform that predicts DDoS attacks by monitoring hacktivist Telegram channels.

February 24, 2026 · 9 min · Bojemoi