
CVE-2024-46278-teedy_1.11_account-takeover
【Teedy 1.11】Account Takeover via XSS

【Teedy 1.11】Account Takeover via XSS

All-in-One WP Migration < 7.63 - Unauthenticated Reflected XSS + CSRF

A simple POC (CVE-2018-25031

FiercePhish is a full-fledged phishing framework to manage all phishing engagements. It allows you to track separate phishing campaigns, schedule…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

CVE-2026-XXXX: Atlassian GraphQL Email Enumeration Oracle (CWE-204, CVSS 5.3 MEDIUM)

Creates professional phishing emails with 20+ templates for credential harvesting, including HTML generation and direct email delivery to targets.

Repository of attack and defensive information for Business Email Compromise investigations

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

Roundcube mail server exploit for CVE-2024-37383 (Stored XSS)

A simple Python CLI to spoof emails.

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Phishing Simulation mainly aims to increase phishing awareness by providing an intuitive tutorial and customized assessment