
phishurl-list
Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…

Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

Automated man-in-the-middle attack tool.

A collection of tools for dealing with TrickBot

OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...


Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

Detect visually similar characters (homoglyphs) and hidden data in text to protect against deceptive attacks

New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click

CVE-2024-57428: PHPJabbers Cinema Booking System v2.0 suffers from stored XSS, enabling persistent JavaScript injection for phishing and malware…

The plugin does not prevent HTML files from being uploaded via its form, allowing unauthenticated user to upload a malicious HTML file containing…

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Analysis of state-sponsored WhatsApp phishing infrastructure with real-time QR hijacking and device surveillance

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…