
Microsoft365_devicePhish
A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow
authenticationemail-securitypenetration-testing+4
107

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration