
ruler
A tool to abuse Exchange services

A tool to abuse Exchange services

HOCig- Automatic HOC Information Gathering Tool V 1.2

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Python tool to exploit CVE-2021-26855 (ProxyLogon) for downloading Exchange mailbox emails via EWS, supporting user enumeration and bulk target…

small python3 tool to check common vulnerabilities in SMTP servers

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

Tool to find SMTP servers vulnerable to open relay

An email spoofing testing tool that aims to bypass SPF/DKIM/DMARC and forge DKIM signatures.🍻

This tool helps identify exposure to CVE-2025-20393 by checking for open TCP/6025 ports, responsive Spam Quarantine interfaces, and known…

Shadow Vault – Add shadow users with SHA-512 hash, auto aging match, multiple write fallbacks.

ntlm relay attack to Exchange Web Services

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Automation to assess the state of your M365 tenant against CISA's baselines

C# tool for red team operations that extracts contacts, mailbox metadata, and searches emails via Outlook COM object, with built-in Programmatic…

E-Mail Header Analyzer

Identify public-facing Microsoft Exchange servers and determine their software versions

Spam Scanner is a Node.js anti-spam, email filtering, and phishing prevention tool and service. Built for @ladjs, @forwardemail, @cabinjs, @breejs,…