
ExchangeRelayX
An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

Educational guide on CVE-2024-21413, the Outlook zero-click Moniker Link vulnerability, covering attack flow, NTLM credential capture, detection with…

A tool for IDN homograph attacks and detection.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Repository of attack and defensive information for Business Email Compromise investigations

ThePhish: an automated phishing email analysis tool

ntlm relay attack to Exchange Web Services

An automated Wireless RogueAP MITM attack framework.

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

Proof-of-concept exploit for CVE-2024-21413, a Microsoft Outlook remote code execution vulnerability. Demonstrates NTLM credential leakage and RCE…

FragAttacks WiFi penetration framework — CVE-2020-24586/87/88

PowerShell toolkit for remote template injection attacks and defense. Injects malicious links into Office Word documents for phishing, with…

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.

An automated attack chain based on CVE-2022-30190, 163 email backdoor, and image steganography.

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

a CLI for ephemeral penetration testing