
CVE-2026-18963
Docker-based lab and Python exploit for CVE-2026-18963, a Keycloak reset-credentials flow bypass enabling account takeover via email verification…
authenticationeducationexploitation+6

Docker-based lab and Python exploit for CVE-2026-18963, a Keycloak reset-credentials flow bypass enabling account takeover via email verification…

Free email OSINT tool, 2500+ platforms, identity clustering, breach detection. No API keys required. pip install mailaccess

Repository of attack and defensive information for Business Email Compromise investigations

A JWT based API for managing users and issuing JWT tokens

290+ Automated checks across 14 compliance frameworks, interactive HTML report, no data leaves your machine.

Entra ID user enumeration and auth method discovery via the public GetCredentialType API