
IMAPLoginTester
A simple Python script that reads a text file with lots of e-mails and passwords, and tries to check if those credentials are valid by trying to…

A simple Python script that reads a text file with lots of e-mails and passwords, and tries to check if those credentials are valid by trying to…

Tool to find SMTP servers vulnerable to open relay

Automated SPF and DMARC configuration checker that identifies email spoofing vulnerabilities across single or bulk domains using DNS lookups.

mboxShell. Fast terminal viewer for MBOX files of any size. Open, search and export emails from Gmail Takeout backups (50GB+) without loading them…

Web application that lets you test if your domain is vulnerable to email spoofing

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

Zeroday Microsoft Exchange Server checker (Virtual Patching checker)

Scrape Pastebin API to collect daily pastes, setup a wordlist and be alerted by email when you have a match.

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

PoC exploit code for CVE-2021-26855

HOCig- Automatic HOC Information Gathering Tool V 1.2

Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - CVE-2024-21413 POC

The exploit server for out-of-band findings. Point a target at a domain you own. Every HTTP request and every email it sends back lands in a…

Python tool to exploit CVE-2021-26855 (ProxyLogon) for downloading Exchange mailbox emails via EWS, supporting user enumeration and bulk target…

Research repository for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway leading to root RCE, with detection rules, mitigation…

Defensive detection kit for CVE-2026-76461, a critical SQL injection in Cisco Secure Email Gateway, with Sigma and YARA rules, IOCs, and remediation…

Python PoC for CVE-2026-73570, an SMTP command injection in Zimbra. Sends malformed RCPT TO payloads to trigger shell command execution via…