
frogy2.0
Orbis is an full spectrum automated external attack surface intelligent toolkit.

Orbis is an full spectrum automated external attack surface intelligent toolkit.

Artifacts for the USENIX publication.

PoC and technical write-up for CVE-2025-43920, a remote command injection in GNU Mailman 2.1.39's external archiver allowing unauthenticated code…

Exploit for Outlook 2019 zero-click vulnerability CVE-2020-1349, using MIME header parsing bugs to achieve heap overflow and EIP control via vftable…

Documentation of my hands-on lab Moniker Link (CVE-2024-21413) completed on TryHackMe.

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

Proof of Concept for CVE-2023-23397 in Python

PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

A simple Reverse Shell that can communicate through Gmail SMTP or any other SMTP to evade network restrictions

Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

small python3 tool to check common vulnerabilities in SMTP servers

Proof-of-concept exploit for an actively exploited Zimbra Collaboration Suite vulnerability, designed for authorized penetration testing and…

Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

A tool to abuse Exchange services

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…