
BadOutlook
Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Automation to assess the state of your M365 tenant against CISA's baselines

Mail-in-a-Box helps individuals take back control of their email by defining a one-click, easy-to-deploy SMTP+everything else server: a mail server…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Web application that lets you test if your domain is vulnerable to email spoofing

Shell-based vulnerability scanner for CVE-2026-45185 (Dead.Letter) in Exim MTA. Detects use-after-free in GnuTLS builds, checks version, TLS library,…

Zimbra Collaboration Suite Username Enumeration

Proof of Work of CVE-2023-23397 for vulnerable Microsoft Outlook client application.

POC BLH Magelang CSIRT 2026 by babyrootkid

Zimbra CVE-2024-45519 real fix - Official patch is incomplete

mitigation script for MS Exchange server vuln

Modular Java mail server supporting IMAP, SMTP, POP3, and JMAP with Docker deployment, distributed architecture, and CLI management for secure…

Perl scripts for SSL/TLS analysis: check protocol and cipher support, verify certificates, test OCSP, and detect Heartbleed across SMTP, HTTPS, and…

290+ Automated checks across 14 compliance frameworks, interactive HTML report, no data leaves your machine.

PowerShell-based detection and remediation toolkit for CVE-2025-32711 (EchoLeak), a critical zero-click AI command injection vulnerability in…

POC for Roundcube vulnerabilities CVE-2024-42008 and CVE-2024-42010

Proof-of-concept exploit for CVE-2026-73570, demonstrating SMTP command injection via crafted RCPT TO header to trigger service status changes.

PowerShell script to detect and remediate CVE-2023-23397 privilege escalation vulnerability in Microsoft Outlook and Exchange environments.