
CredSniper
CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.

CredSniper is a phishing framework written with the Python micro-framework Flask and Jinja2 templating which supports capturing 2FA tokens.

PhEmail is a python open source phishing email tool that automates the process of sending phishing emails as part of a social engineering test

Persistent XSS on Comtrend AR-5387un router

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor…

HTML/CSS/JS templates for Browser-In-The-Browser phishing attacks, embedding fake login windows with customizable titles, domains, and phishing links…

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

Microsoft-Outlook-Remote-Code-Execution-Vulnerability

Weaponized Browser-in-the-Middle (BitM) for Penetration Testers

Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.

CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability

cve-2020-0688

The Outlook HTML Leak Test Project

PoC of CVE-2020-16947 (Microsoft Outlook RCE vulnerablility)

Template Injection in Email Templates leads to code execution on Jira Service Management Server

CVE-2023-22621: SSTI to RCE by Exploiting Email Templates affecting Strapi Versions <=4.5.5

CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoC

A python server tool based on flask , this tool can phish some Facebook credentials!

PoC exploit code for CVE-2021-26855