SMTP server testing script released on ISAudits github has been released on our public Github account. Check out the repo at

The script is designed to automate testing of SMTP servers for penetration testing:

  • Runs nmap script scans against a target email server
  • Runs smtp server checks against a target email server
  • Tests ability to spoof emails to a target organization
    • external smtp server (spam filters should reject emails coming from outside the email organization that appear to come from inside the organization)
    • target smtp server (smtp servers should require authentication)