
CVE-2020-11022-CVE-2020-11023
Little thing put together quickly to demonstrate this CVE

Little thing put together quickly to demonstrate this CVE

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

An active cyber defense & honeypot system for OpenWrt routers running from a USB drive.

All-in-One WP Migration < 7.63 - Unauthenticated Reflected XSS + CSRF

The Outlook HTML Leak Test Project

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

This Proof of Concept (PoC) demonstrates an exploit for CVE-2024-42009, leveraging a cross-site scripting (XSS) vulnerability to extract emails from…

Script in Go that analyzes a list of passwords based on in its entropy and weak passwords from a dictionary. Useful for penetration tests and…

Spoof emails from any of the +2 Million domains using MailChannels (DEFCON 31 Talk)

A Python script to collect campaign data from Gophish and generate a report

This script can be used to gain access to a victim's Samsung Account if they have a specific version of Samsung Members installed on their Samsung…

macro_pack is a tool by @EmericNasi used to automatize obfuscation and generation of Office documents, VB scripts, shortcuts, and other formats for…

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…


A Social Media Enumeration & Correlation Tool by Jacob Wilkin(Greenwolf)

Track the GPS location of the user's smartphone or PC and capture a picture of the target, along with IP and device information.

