Create a script that uses a small list of test accounts (created by you) with weak passwords to see if your lockout policies work.
Here is the ethical counterpart. If you are a system administrator, you should perform the exact same actions as a "Hackus Mail Access Checker" would—but on your own infrastructure. This is called credential stuffing simulation. hackus mail access checkerzip
Simulate the checker and then inspect your mail server logs for: Create a script that uses a small list