#1Tools for creating, managing, and analyzing fake login pages and email campaigns.
Kitploit recommended

CMSmadesimple 2.2.18 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed…

Read more at Medium

Cross Site Scripting on sanitization-management-system

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

Creates professional phishing emails with 20+ templates for credential harvesting, including HTML generation and direct email delivery to targets.

WBCE 1.6.1 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will launch…

Contains evilginx phislets, gophish templates, burp suite extensions etc.

This is a SMS And Call Bomber For Linux And Termux

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2,…

The LAZY script will make your life easier, and of course faster.

Advanced Phishing tool

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

📡 A python program to create a fake AP and sniff data.

telegram group scraper tool. fetch all information about group members

A PowerShell based utility for the creation of malicious Office macro documents.

Lockphish it's the first tool (07/04/2020) for phishing attacks on the lock screen, designed to grab Windows credentials, Android PIN and iPhone…

crawls the website and finds broken social media links that can be hijacked

A simple Python CLI to spoof emails.