
Project-NTLM-Hash-Capture-and-Phishing-Email-Exploitation-for-CVE-2024-21413
The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…

The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…

Automated man-in-the-middle attack tool.

Injects JavaScript keylogger into WebView2 pages to capture keystrokes and exfiltrate cookies from Microsoft authentication sessions via HTTP GET…

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

Grab cam shots & GPS location from target's phone front camera or PC webcam just sending a link.

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

HiddenEye Reborn in better shape than ever, rewritten from scratch and adapted to modern world

Curated dataset of confirmed phishing URLs from JPCERT/CC, including confirmation date, full URL, and spoofed brand for threat intelligence and…

A Python script to collect campaign data from Gophish and generate a report

OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...

A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user

Open source Android, iOS and Web app for learning about and managing digital and physical security. From how to send a secure message to dealing with…

New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click

AI-powered typosquatting and phishing domain detector using NLP and ChatGPT to generate domain permutations and extract contact information from…

Protect your parents from phishing

The plugin does not prevent HTML files from being uploaded via its form, allowing unauthenticated user to upload a malicious HTML file containing…

CVE-2024-57428: PHPJabbers Cinema Booking System v2.0 suffers from stored XSS, enabling persistent JavaScript injection for phishing and malware…