
KnockOutlook
C# tool for red team operations that extracts contacts, mailbox metadata, and searches emails via Outlook COM object, with built-in Programmatic…

C# tool for red team operations that extracts contacts, mailbox metadata, and searches emails via Outlook COM object, with built-in Programmatic…

Data leak checker & OSINT Tool

Configurable Python PoC for CVE-2026-54433, a stored XSS in Roundcube's plain-text email renderer. Generates crafted .eml, sends via SMTP, and…

Roundcube mail server exploit for CVE-2024-37383 (Stored XSS)

A toolkit to attack Office365

Paperweight scans your inbox to map your digital footprint, then helps you take back control and delete your data. Local-first and open source.

CVE-2024-42009 Proof of Concept

PowerShell script to exploit CVE-2023-23397 by sending or saving malicious Outlook calendar invitations that trigger NTLM credential leakage via the…

The Outlook HTML Leak Test Project

Microsoft Outlook Information Disclosure Vulnerability (leak password hash) - Expect Script POC

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

A temporary email right from your terminal written in POSIX sh

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

Proof-of-concept exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Demonstrates NTLM credential leakage and RCE…

Proof-of-concept exploit for Microsoft Outlook RCE (CVE-2024-21413) with SMTP-based phishing email delivery, malicious RTF attachment generation, and…

Exploit for the CVE-2023-23397