
ExchangeRelayX
An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

DifuseHQ Kalmia CMS version 0.2.0 contains an Incorrect Access Control vulnerability in the /kal-api/auth/users API endpoint. Due to insufficient…

Detailed analysis of Fortinet FortiCloud SSO authentication bypass (CVE-2026-24858) including technical breakdown, attack scenarios, detection…

Step-by-step guide for hardening a Linux server, covering SSH security, firewalls, intrusion detection, auditing, and system configuration to reduce…

Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

cupntlm

Modern Web Firewall: stop account takeovers, weak passwords, cloud IPs, DoS attacks, disposable emails

EvilMist is a collection of scripts and utilities designed to support cloud penetration testing & red teaming. The toolkit helps identify…

Proof-of-concept exploit for CVE-2023-27350 targeting authentication bypass in PaperCut MF/NG print management software. Includes Shodan dorks for…

Lightweight Python script to test username/password combinations against Zimbra webmail login pages for security assessments and password auditing.

Detection tool for cPanel/WHM CVE-2026-41940 (CRLF injection auth bypass). Verify vulnerability on servers you own or have permission to test. For…

A tool for checking if MFA is enabled on multiple Microsoft Services

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.

proof-of-concept mass scanner targeting JetBrains TeamCity instances affected by CVE-2024-27198

**CVE-2026-18963** — unauthenticated Keycloak account takeover via the reset-credentials flow.

Weaponizing DCOM for NTLM Authentication Coercions