365-Stealer

Phishing simulator

A phishing simulation tool that automates illicit consent grant attacks on Azure AD using Python3 and PHP.

365-Stealer is a phishing simualtion tool written in python3. It can be used to execute Illicit Consent Grant Attack.

GitHub

453 stars
14 watching
88 forks
Language: PHP
last commit: 6 months ago
azureazureadpentestingphishingredteam

Related projects:

Repository Description Stars
mdsecactivebreach/o365-attack-toolkit A toolkit for simulating phishing attacks on Office 365 accounts 1,037
sebastian-mora/awsssome_phish A tool for simulating phishing attacks on AWS SSO using a serverless architecture and automated deployment. 29
xiecat/goblin A tool for simulating phishing attacks in red teaming exercises. 1,444
optiv/microsoft365_devicephish A tool designed to demonstrate a vulnerability in Microsoft's OAuth Authorization Flow for phishing attacks 92
gemgeorge/sniperphish A web-based phishing toolkit designed to simulate real-world attacks for security testing and awareness training. 540
curtbraz/phishapi A tool for creating and deploying fake web pages to steal credentials 372
pentestgeek/phishing-frenzy A Ruby on Rails tool used to simulate phishing attacks and test email security vulnerabilities 794
mandiant/reelphish A tool designed to test the effectiveness of phishing defenses by simulating real-time two-factor phishing attacks. 507
zerofox-oss/phishpond A tool for analyzing phishing kits in a contained environment 43
uber-common/metta An adversarial simulation tool to test information security preparedness by simulating network-based attacks on various systems. 1,102
azure/simuland A collaboration to create realistic test environments for simulating real-world attacks and improving detection strategies. 703
yaxser/sharpphish This tool creates convincing phishing emails using Outlook COM objects to test an O365 module 152
raikia/fiercephish A tool for managing phishing campaigns and simulating email attacks. 1,324
muraenateam/muraena Automates interactions with targeted websites to mimic user behavior and gather data 927
amv42/sshd-honeypot An intrusion detection system designed to capture and analyze ssh interactions between an attacker and a modified OpenSSH deamon 26