
CVE-2026-64638
Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

Proof-of-concept exploit for CVE-2026-64638: reflected XSS in WordPress login chained with DOM clobbering to achieve admin account takeover and…

A script that helps you understand why your E-Mail ended up in Spam

Repository of attack and defensive information for Business Email Compromise investigations

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)


Phishing with a fake reCAPTCHA

A tool for mapping cyber crime


The Outlook HTML Leak Test Project

Scripts to clone CA certificates for use in HTTPS client attacks.

xll windows reverse shell

SEt framework

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

CVE-2026-XXXX: Atlassian GraphQL Email Enumeration Oracle (CWE-204, CVSS 5.3 MEDIUM)

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

Read more at Medium

WBCE 1.6.1 is affected by File Upload - XSS vulnerability that allows attackers to upload a PDF file with a hidden XSS that when executed will launch…