
laravel-framework
Fork of laravel/framework 10.50.2 with CVE-2026-48019 (CRLF injection in default email rule) backported into ValidatesAttributes::validateEmail.…

Fork of laravel/framework 10.50.2 with CVE-2026-48019 (CRLF injection in default email rule) backported into ValidatesAttributes::validateEmail.…

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

IP-Biter: The Hacker-friendly E-Mail (but not only) Tracking Framework

Open-source email filtering framework that detects spam and phishing using content analysis, header checks, Bayesian scoring, and DNS blocklists.

Phishing simulation and awareness framework for node-based campaigns, credential capture, SMTP delivery, CAPTCHA, and optional browser credential…

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

This repository contains an exploit for targeting Microsoft Outlook through Exchange Online, leveraging a vulnerability to execute arbitrary code via…

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

Purple team project exploiting CVE-2023-23397 Outlook NTLM leak with phishing delivery, plus Sigma/Wazuh detections mapped to MITRE ATT&CK for the…

Automation to assess the state of your M365 tenant against CISA's baselines

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Exploit for the CVE-2023-23397

The Outlook HTML Leak Test Project

Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.