
CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability
Proof-of-concept exploit for CVE-2024-21413, a critical Outlook RCE vulnerability that leaks NetNTLMv2 hashes via crafted file:// links, enabling…

Proof-of-concept exploit for CVE-2024-21413, a critical Outlook RCE vulnerability that leaks NetNTLMv2 hashes via crafted file:// links, enabling…

Enumerates valid Microsoft 365 accounts and domains via response analysis, with password spraying support and throttling detection to avoid lockouts.

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

PowerShell module for administering and auditing Azure AD and Office 365, enabling token manipulation, user enumeration, and security assessments of…

Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The built-in…

A PowerShell script that automates the security assessment of Microsoft 365 environments.

Username enumeration and password spraying tool aimed at Microsoft O365.

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow