
CF-Hero
Uncovers origin IPs of Cloudflare-protected web apps using DNS records, historical DNS, Shodan/Censys/ZoomEye OSINT, and related-domain correlation…

Uncovers origin IPs of Cloudflare-protected web apps using DNS records, historical DNS, Shodan/Censys/ZoomEye OSINT, and related-domain correlation…

A local MITM proxy that lets you control TLS fingerprints (JA3/JA4), HTTP/2 fingerprints, HTTP header order, and User-Agent — all from a single YAML…

Exploit for CVE-2022-4539 that spoofs X-Forwarded-For headers to bypass WordPress WAF IP-based login and logging restrictions. Includes scalable…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

Undetected version of the Playwright testing and automation library.

Successor of Undetected-Chromedriver. Providing a blazing fast framework for web automation, webscraping, bots and any other creative ideas which are…

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

Authorized WAF bypass proxy that rotates TCP/TLS/HTTP2 fingerprints, hunts origin IPs behind firewalls, and scans WAF defenses across 10 layers for…

A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.

Like curl, but it gets past Anubis and Cloudflare bot-walls.

Stop getting 403 Forbidden. A specialized httpx-like toolkit for WAF evasion.

A Python module to bypass Cloudflare's anti-bot page.

Custom Selenium Chromedriver | Zero-Config | Passes ALL bot mitigation systems (like Distil / Imperva/ Datadadome / CloudFlare IUAM)