
ics-phishing-toolkit
Open source tooling to stop ICS phishing (malicious calendar invites)

Open source tooling to stop ICS phishing (malicious calendar invites)

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

PoC exploit code for CVE-2021-26855

对Exchange Proxyshell 做了二次修改,精确的拆分、实现辅助性安全测试。



Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - CVE-2024-21413 POC

This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

C# PoC exploit for CVE-2023-23397 that sends malicious Outlook meeting invites with a UNC path trigger for NTLM credential theft.

Proof-of-concept exploit for CVE-2026-73570, demonstrating SMTP command injection via crafted RCPT TO header to trigger service status changes.

POC BLH Magelang CSIRT 2026 by babyrootkid

Purple team project exploiting CVE-2023-23397 Outlook NTLM leak with phishing delivery, plus Sigma/Wazuh detections mapped to MITRE ATT&CK for the…

Documentation of my hands-on lab Moniker Link (CVE-2024-21413) completed on TryHackMe.

Python script to create a message with the vulenrability properties set

Bu betik, Microsoft Outlook'ta keşfedilen ve CVSS değeri 9.8 olan önemli bir güvenlik açığı olan CVE-2024-21413 için bir kavram kanıtı (PoC)…


CVE-2023-23397 - Microsoft Outlook Vulnerability

POC to test CVE-2024-39929 against EXIM mail servers