
maltrail
Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Open-source network IDS/IPS/NSM engine for real-time traffic inspection, intrusion detection and prevention, protocol analysis, and rule-based threat…

Open-source interactive security awareness training library with 130+ SCORM exercises covering phishing, vishing, BEC, MFA fatigue, and OWASP AI/LLM…

Open-source email filtering framework that detects spam and phishing using content analysis, header checks, Bayesian scoring, and DNS blocklists.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Bash script to check if a domain or list of domains can be spoofed based in DMARC records

A toolkit to attack Office365

Orbis is an full spectrum automated external attack surface intelligent toolkit.

PoC and technical write-up for CVE-2025-43920, a remote command injection in GNU Mailman 2.1.39's external archiver allowing unauthenticated code…

Deploy a phishing infrastructure on the fly.

Exploit for Outlook 2019 zero-click vulnerability CVE-2020-1349, using MIME header parsing bugs to achieve heap overflow and EIP control via vftable…

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

Artifacts for the USENIX publication.

ntlm relay attack to Exchange Web Services

CVE-2024-42009 Proof of Concept

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

A Python package and CLI for parsing aggregate and forensic DMARC reports