
falco
Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Automation to assess the state of your M365 tenant against CISA's baselines

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Identify public-facing Microsoft Exchange servers and determine their software versions

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.


Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

Python tool to exploit CVE-2021-26855 (ProxyLogon) for downloading Exchange mailbox emails via EWS, supporting user enumeration and bulk target…

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

A tool to abuse Exchange services

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

ntlm relay attack to Exchange Web Services

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

small python3 tool to check common vulnerabilities in SMTP servers

HOCig- Automatic HOC Information Gathering Tool V 1.2

Tool to find SMTP servers vulnerable to open relay

E-Mail Header Analyzer

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.