#1Tools for creating, managing, and analyzing fake login pages and email campaigns.
Kitploit recommended

Redirect All Traffic Through Tor Network For Kali Linux

Real-time phishing & scam domain blocklist - 208k+ curated threats, 1M+ community, free API, multiple formats

All the deals for InfoSec related software/tools this Black Friday

PowerShell proof-of-concept for CVE-2023-23397 that exploits Outlook's ReminderSoundFile property to intercept Net-NTLMv2 hashes via SMB or WebDAV…

MS Office and Windows HTML RCE (CVE-2023-36884) - PoC and exploit

Technical write-up and proof-of-concept for CVE-2022-44666, a Windows Contacts syslink control href attribute escape vulnerability enabling remote…

Proof of Concept for the NTLM Hash Leak via .library-ms CVE-2025-24054 / CVE-2025-24071

Proof-of-concept exploit for CVE-2018-25031 (Swagger UI XSS) that exfiltrates authorization codes via crafted configUrl/url parameters.

Proof-of-concept exploit for XSS vulnerability in Jamovi <=1.6.18. Demonstrates crafting malicious .omv documents with JavaScript payloads to achieve…

Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC

Phantom Keylogger is an advanced, stealth-enabled keystroke and visual intelligence gathering system.

Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm

Modified CVE-2022-30190 exploit tool for MS-MSDT Office RCE with custom docx template support, binary/command execution modes, and embedded HTTP…

警惕 一种针对红队的新型溯源手段!

PoC (Proof of Concept) de la CVE-2024-4367 - Vulnérabilité RCE dans libwebp. Démonstration complète incluant : création de payloads, scénarios…

Proof-of-concept exploit for stored XSS vulnerability in VanillaForum 2.6.3, demonstrating arbitrary HTML/script injection via insufficient input…

Proof-of-concept exploit for a cross-site scripting (XSS) vulnerability in Microsoft Outlook for iOS, enabling email-based spoofing attacks and…