
CVE-2026-24031
Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…

C# Tool to interact with MS Exchange based on MS docs

Microsoft Entra ID (Azure AD) Unauthenticated Enumeration

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

OsintNET is a browser-based OSINT platform for domain intelligence, website risk scanning, SERP discovery, image intelligence and AI image detection.

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

OSINT tool researched and designed to hunt down IG handles

This Script will help you to gather information about your victim or friend.

A geolocation OSINT tool. Offers geolocation information gathering through social networking platforms.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

This tool is based on regex with effective standards for detecting phishing sites in real time using certstream and can also detect punycode (IDNA)…

Querytool is an OSINT framework based on Google Spreadsheet. With this tool you can perform complex search of terms, people, email addresses, files…

Generate customized Password/Passphrase wordlist based on target information

Dracula OS is a Linux operating system meticulously designed for OSINT (Open Source Intelligence) and Cyber Intelligence missions.

Tookie is a advanced OSINT information gathering tool that finds social media accounts based on inputs.

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

Enumerate valid users on Office 365 and Exchange via time-based and error-based techniques across multiple exposed services, including OWA,…