
Flash-player
flash钓鱼源码 中文+英文

flash钓鱼源码 中文+英文

WonderCMS Authenticated RCE - CVE-2023-41425

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

CVE-2019-12949

A python server tool based on flask , this tool can phish some Facebook credentials!

Gophish with Malicious Attachment and HTTP redirect support

Browser extension that warns users about recently registered domains to prevent phishing attacks. Queries RDAP to check domain age and displays…

Analysis of state-sponsored WhatsApp phishing infrastructure with real-time QR hijacking and device surveillance

Addressbar spoofing through blob URL (Firefox browser). An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by…

CVE-2023-23397 PoC

Unauthenticated SSRF and open email relay in Chamilo LMS — CVE-2026-33715 / CVSS 7.2

CVE-2026-77818 - Yordam Kütüphane Otomasyon Sistemi - Üç ayrı noktada yansıtılmış HTML enjeksiyonu, form action ele geçirme ve kimlik bilgisi…

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

Critical Flaws in Traccar GPS System Expose Users to Remote Attacks

HostHeaderInjection-Askey

Proof-of-concept exploit demonstrating OTP bypass in One Identity Cloud Access Manager 8.1.3 via MITM/SSL-strip, SAML response replay, and injected…

The plugin does not sanitise the HTML allowed in the Bio of users, allowing them to use malicious JavaScript code, which will be executed when anyone…