
liffy
Local file inclusion exploitation tool

Local file inclusion exploitation tool

Automates HTTP 403 access control bypass techniques using header manipulation, path obfuscation, and HTTP method conversion for web application…

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast. Precise.…

Automated Web Application Firewall fingerprinting tool that identifies and detects over 200 WAF products by analyzing HTTP responses to normal and…

Automated All-in-One OS Command Injection Exploitation Tool

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Undetected version of the Playwright testing and automation library.

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

Detect and bypass web application firewalls and protection systems

CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications

High Fidelity Detection Mechanism for RSC/Next.js RCE (CVE-2025-55182 & CVE-2025-66478)

A simple script just made for self use for bypassing 403

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Burpsuite Extension to bypass 403 restricted directory

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

403/401 Bypass Methods + Bash Automation + Your Support ;)