
widevine-l3-decryptor
A Chrome extension that demonstrates bypassing Widevine L3 DRM

A Chrome extension that demonstrates bypassing Widevine L3 DRM

Shodan Dorks

Automates HTTP 403 access control bypass techniques using header manipulation, path obfuscation, and HTTP method conversion for web application…


CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

A curated list of CTF frameworks, libraries, resources and softwares

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS



Striker is an offensive information and vulnerability scanner.

A simple script just made for self use for bypassing 403

Martian is a library for building custom HTTP/S proxies

A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets

Detect potentially malicious PHP files

This tool can be used to brute discover GET and POST parameters

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could…