
smtpshell
A simple Reverse Shell that can communicate through Gmail SMTP or any other SMTP to evade network restrictions

A simple Reverse Shell that can communicate through Gmail SMTP or any other SMTP to evade network restrictions

Rust-based pattern matching engine for malware researchers. Create YARA rules with textual/binary patterns, wildcards, and regex to identify and…

Web-based tool for adding shadow users with SHA-512 password hashing and auto-aging detection, featuring multiple write fallback methods for system…

An email spoofing testing tool that aims to bypass SPF/DKIM/DMARC and forge DKIM signatures.🍻

Automated phishing email analysis tool integrating TheHive, Cortex, and MISP to extract observables, run analyzers, calculate verdicts, and notify…

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Spam Scanner is a Node.js anti-spam, email filtering, and phishing prevention tool and service. Built for @ladjs, @forwardemail, @cabinjs, @breejs,…

C# tool for red team operations that extracts contacts, mailbox metadata, and searches emails via Outlook COM object, with built-in Programmatic…

small python3 tool to check common vulnerabilities in SMTP servers

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Research tool that tests Outlook for HTML email leakage, allowing SMB hash hijacking and user tracking via crafted email payloads.

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

Tool to find SMTP servers vulnerable to open relay

Streaming MBOX viewer and email forensics tool for browsing, searching, and exporting large mail archives (50GB+) from Gmail Takeout or any MBOX…

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

HOCig- Automatic HOC Information Gathering Tool V 1.2

Python tool to exploit CVE-2021-26855 (ProxyLogon) for downloading Exchange mailbox emails via EWS, supporting user enumeration and bulk target…

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).