
auth
A JWT based API for managing users and issuing JWT tokens

A JWT based API for managing users and issuing JWT tokens

A Python package and CLI for parsing aggregate and forensic DMARC reports

Proof-of-concept module for CVE-2026-54121 (Certighost), exploiting AD CS enrollment validation via rogue LDAP/SMB listeners to impersonate a Domain…

Provides distributed enterprise VPN connectivity using OpenVPN, with centralized management, authentication, and encrypted tunnels for cloud and…

Docker-based lab and Python exploit for CVE-2026-18963, a Keycloak reset-credentials flow bypass enabling account takeover via email verification…

Automated Pass-the-Ticket (PtT) attack. Standalone alternative to Rubeus and Mimikatz for this attack. In C#, C++, Crystal, Python, Rust, Golang, Nim…

Dump Kerberos tickets from the KCM database of SSSD

The OUned project automating Active Directory Organizational Units ACL exploitation through gPLink poisoning

This repo is poc of cve-2026-18963. Please use it on legal products (lab, local,...).

Exploit for CVE-2026-18963, a critical unauthenticated account takeover in Keycloak's reset-credentials flow, chaining two bugs to bypass email…

Dockerized mail server suite with Postfix, Dovecot, Rspamd, and ClamAV. Provides secure email hosting with integrated spam filtering, antivirus, and…

Public writeup, PoC, and emulation materials for CVE-2026-8508 affecting Zyxel captive-portal social login.

Modlishka. Reverse Proxy.

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

Zero-Knowledge Credential Sharing

Async BOF to automatically extract or renew Kerberos TGTs on a target system.

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

True P2P Email on top of Yggdrasil Network for Android