
ThePhish
ThePhish: an automated phishing email analysis tool

ThePhish: an automated phishing email analysis tool

(DOM-based XSS) HTML Injection vulnerability in TOWeb v.12.05 and before allows an attacker to inject HTML/JS code via the _message.html component.

CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

just idea, no cp pls

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

A basic phishing kit scanner for dedicated and semi-dedicated hosting

C# Tool to interact with MS Exchange based on MS docs

Most Powerful Send Fake Mail Using Any Mail I'd undetectable

Script in Go that analyzes a list of passwords based on in its entropy and weak passwords from a dictionary. Useful for penetration tests and…

XLL Phishing Tradecraft

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

Weaponizes Selenium to automate credential theft, cookie dumping, email exfiltration, and file extraction from Chromium browsers for red team…

Bash script to check if a domain or list of domains can be spoofed based in DMARC records

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

Osint tool based on namechk.com for checking usernames on more than 100 websites, forums and social networks.

Proof-of-concept C# tool that reads Outlook emails via COM interface, extracts base64-encoded shellcode from trigger subject lines, and executes…

A python server tool based on flask , this tool can phish some Facebook credentials!