
CVE-2024-21413-Microsoft-Outlook-Remote-Code-Execution-Vulnerability
exploitationlateral-movementpassword-cracking+3


Serverless AITM Simulation Framework for Entra ID and M365

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

Automates Illicit Consent Grant attacks against Azure/O365 tenants to steal refresh tokens, exfiltrate emails/OneDrive data, and create malicious…