
gophish
Gophish with Malicious Attachment and HTTP redirect support

Gophish with Malicious Attachment and HTTP redirect support

CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.

CVE-2023-23397 PoC

Analysis of state-sponsored WhatsApp phishing infrastructure with real-time QR hijacking and device surveillance

Addressbar spoofing through blob URL (Firefox browser). An attack can use a blob URL and script to spoof an arbitrary addressbar URL prefaced by…

EmailXpose is an open source AI-powered email security system that detects phishing, spam, scams, malware, and social engineering attacks. It goes…

Critical Flaws in Traccar GPS System Expose Users to Remote Attacks

HostHeaderInjection-Askey

Proof-of-concept exploit demonstrating OTP bypass in One Identity Cloud Access Manager 8.1.3 via MITM/SSL-strip, SAML response replay, and injected…

The plugin does not sanitise the HTML allowed in the Bio of users, allowing them to use malicious JavaScript code, which will be executed when anyone…

This is a reproduction of PHP Laravel 8.70.1 - Cross Site Scripting (XSS) to Cross Site Request Forgery (CSRF) vulnerability

In LetterPress plugin <= 1.2.1 is vulnerable to Cookie Stealing Vulnerability. An attacker can able to steal the cookies by injecting the JavaScript…

Public disclosure of TitanFTP 19.X Open Redirection vulnerability

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…

Insecure Direct Object Reference (IDOR vulnerability) in SOGo Webmail Allows a user to send emails on behalf of another user.

CVE-2024-21413 Açığını Kullanarak Giriş Bilgilerini Alma

Cross-Site Scripting vulnerability in Advanced REST Client v.17.0.9 exploit