
Tangled
Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.

Sublime rules for email attack detection, prevention, and threat hunting.

Open source Android, iOS and Web app for learning about and managing digital and physical security. From how to send a secure message to dealing with…

People tracker on the Internet: OSINT analysis and research tool by Jose Pino


Um estudo de caso do CVE-2024-21413. Usado como parâmetro a sala do TryHackMe Moniker Link (CVE-2024-21413). Feito edições com claude code no exploit.

AI-powered threat intelligence platform for automated CVE/ransomware monitoring, domain surveillance, data leak detection, and incident response with…

Open-source URL masking & analysis tool for security research, phishing awareness, and defensive testing. Demonstrates adversary techniques used to…

Open-source interactive security awareness training library with 130+ SCORM exercises covering phishing, vishing, BEC, MFA fatigue, and OWASP AI/LLM…

ShadowPhish is an advanced APT awareness toolkit designed to simulate real-world phishing, malware delivery, deepfakes, smishing/vishing, and command…

Automated phishing simulation tool with 30+ login page templates, URL masking, and multiple tunneling options (Ngrok, Cloudflared, Serveo) for…

Security awareness training tool for authorized phishing simulations and internal IT audits

Proof-of-concept security demo illustrating how PowerShell can create trusted-looking Windows toast notifications chained together with…

A security research tool for simulating targeted phishing campaigns using CVE-2024-21413 (Moniker Link).

Educational cybersecurity project demonstrating exploitation and mitigation of CVE-2020-25213 (WordPress File Manager Plugin RCE). Includes malware…

We are presented with a security alert indicating the detection of the Follina (CVE-2022-30190) vulnerability. A malicious Word document triggered…