
robin
AI-powered dark web OSINT tool that uses LLMs to refine queries, filter search results, and generate investigation summaries with a web UI and Docker…

AI-powered dark web OSINT tool that uses LLMs to refine queries, filter search results, and generate investigation summaries with a web UI and Docker…

Collection of patches for puppeteer and playwright to avoid automation detection and leaks. Helps to avoid Cloudflare and DataDome CAPTCHA pages.…

Browser automation framework with a single API for Chromium, Firefox, and WebKit. Supports web testing, scraping, screenshots, and network…

Telegram OSINT, scraping and archival as a local web app. Multi-account collection, profile lookup with historic photos and change diffs, ten export…

OSINT tool that finds domains, subdomains, directories, endpoints and files for a given seed URL.

A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.

HTTrack Website Copier, copy websites to your computer (Official repository)

Emat: An email scraper that will scrape any website for Gmail, Yahoo, Hotmail and government email accounts.

A nice web-crawler written in Bash that will look for login pages/admin-panels for you on any given website.

parsing search results from startpage search engine (based on google.com results)


Keyless active-probe security auditor for Directus CMS. Proves public-role data exposure, user enumeration, unauthenticated version/schema leaks,…

Next generation web scanner

WordPress security scanner that detects vulnerabilities, enumerates plugins/themes/users, and checks for weak passwords. Integrates with the WPScan…

CLI to download websites' actual JS/CSS/assets (not flattened HTML)

Proof-of-concept exploit demonstrating SSRF vulnerabilities in Firecrawl web scraper (CVE-2024-56800, CVE-2025-57818) with self-hosted setup and…

Attack surface discovery and AI-assisted triage for security researchers. Endpoint & parameter mapping with actionable testing hints.

Google search crawler that collects URLs vulnerable to Apache Struts2 S2-045 (CVE-2017-5638) using configurable keywords and proxy support.