
Antiphishing
Advanced Phishing Protection: Suricata rulesets open and free

Advanced Phishing Protection: Suricata rulesets open and free

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

TryHackMe Moniker Link (CVE-2024-21413) walkthrough: Outlook Protected View bypass leading to NTLMv2 hash capture via a crafted moniker link.

Proof-of-concept for CVE-2026-22005 showing OAuth 2.0 device code phishing via too-short polling interval, with vulnerable Flask server and exploit…

↕️🤫 Stealth redirector for your red team operation security

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Public advisory & PoC for CVE-2026-26897 — Deep Link Bypass in EcoOnline EHS Android (com.airsweb.v10), fixed in 0.2.500

FluxER - The bash script which installs and runs the Fluxion tool inside Termux. The wireless security auditing tool used to perform WPA/WPA2…

Published security research repository featuring academic papers on domain hijacking, 2FA bypass, and large-scale spoofing techniques, authored by…

Technical write-up on CVE-2024-21413 (Moniker Link vulnerability)

Proof-of-concept exploit for Microsoft Office security feature bypass (CVE-2026-21509). Generates malicious DOCX files with embedded OLE objects to…

Serverless AITM Simulation Framework for Entra ID and M365

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

Step-by-step walkthrough of exploiting CVE-2024-21413 in Microsoft Outlook to bypass Protected View and leak NTLM credentials via Moniker Links,…

This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.

Hacking tools pack & backdoors generator.

Documentation of CVE-2024-50964: critical DMARC policy bypass in DonWeb MX server allowing email spoofing, with low attack complexity and no required…