

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

A PoC for demonstrating CVE-2026-25604


honeyλ - a simple, serverless application designed to create and monitor fake HTTP endpoints (i.e. URL honeytokens) automatically, on top of AWS…

Authenticated SSRF in Grafana

Cryptographically verifiable web archiving. Playwright capture → SHA-256 Merkle hash → Bitcoin-anchored OpenTimestamps → permanent Arweave storage.
