
AzureRedOps
Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Repository for CVE-2023-4549 vulnerability.

Proof-of-concept exploit for CVE-2025-26788 demonstrating WebAuthn credential ID manipulation via JavaScript hooking to bypass authentication in…

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

Rogue Access Point framework for red team engagements and Wi-Fi security testing. Performs Evil Twin, KARMA, and Known Beacons attacks to achieve…

HTML/CSS/JS templates for Browser-In-The-Browser phishing attacks, embedding fake login windows with customizable titles, domains, and phishing links…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

Automates vishing calls via Discord bot and API to intercept SMS one-time passwords, bypassing SMS verification for PayPal, Google, Instagram, and 3D…

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

Emulates a Cisco ASA Anyconnect VPN service for credential harvesting and VBS payload delivery in red team phishing operations.

Frameless Browser‑in‑the‑Browser (BitB) - No iframes, no frame‑busting issues. A single‑script Shadow DOM / MutationObserver library for realistic…

Scripts to clone CA certificates for use in HTTPS client attacks.

SEt framework

real time face swap and one-click video deepfake with only a single image

Modlishka. Reverse Proxy.