
mailMeta
An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Automation to assess the state of your M365 tenant against CISA's baselines

small python3 tool to check common vulnerabilities in SMTP servers

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

A tool to abuse Exchange services

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

A simple Reverse Shell that can communicate through Gmail SMTP or any other SMTP to evade network restrictions

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

Detection method for Exim vulnerability CVE-2024-39929

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

POC to test CVE-2024-39929 against EXIM mail servers

This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

Purple team project exploiting CVE-2023-23397 Outlook NTLM leak with phishing delivery, plus Sigma/Wazuh detections mapped to MITRE ATT&CK for the…

Data leak checker & OSINT Tool

Exploit for Outlook 2019 zero-click vulnerability CVE-2020-1349, using MIME header parsing bugs to achieve heap overflow and EIP control via vftable…

Proof-of-concept exploit for CVE-2024-21413 using Moniker Link in HTML email to trigger SMB connection and capture netNTLMv2 hashes via Responder.…

Proof-of-concept exploit for CVE-2013-2977: IBM Lotus Notes PNG integer overflow leading to arbitrary code execution when a malicious email is opened…