Bypass 4xx HTTP response status codes and more. The tool is based on Python Requests, PycURL, and HTTP Client.
☆257Feb 25, 2026Updated 6 months ago
Alternatives and similar repositories for forbidden
Users that are interested in forbidden are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 🐚ᴠʟᴀɴɢ ʀᴇᴠᴇʀsᴇ sʜᴇʟʟ🐚☆11Apr 28, 2022Updated 4 years ago
- Yet another content discovery tool☆118Nov 16, 2024Updated last year
- A script for automatize boolean-based blind SQL injections (MVP).☆54Aug 29, 2022Updated 4 years ago
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hac…☆1,206Jan 21, 2026Updated 8 months ago
- ☆15May 6, 2023Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- web application pentesting tools for docker☆19Aug 9, 2022Updated 4 years ago
- WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.☆24Jun 5, 2026Updated 3 months ago
- Jeeves SQLI Finder☆214May 13, 2022Updated 4 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Sep 22, 2024Updated last year
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆1,106Aug 5, 2026Updated last month
- Small python script to look for common vulnerabilities on SMTP server.☆46Dec 17, 2023Updated 2 years ago
- Information Gathering tool - DNS / Subdomains / Ports / Directories enumeration☆1,272Sep 14, 2026Updated last week
- Automated Recon Tool Installer☆16Jun 29, 2022Updated 4 years ago
- CLI tool for discovering related base domains using WhoisXMLAPI's reverse Whois endpoints☆12Jun 15, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violati…☆413May 28, 2026Updated 3 months ago
- 40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...☆1,894Jul 3, 2023Updated 3 years ago
- ⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)☆1,029May 21, 2025Updated last year
- There is my vuln POC and EXP. Some of POC were collected, most of POC and EXP were written by myself.☆13May 28, 2022Updated 4 years ago
- wsvuls - website vulnerability scanner detect issues [ outdated server software and insecure HTTP headers.]☆57Mar 26, 2022Updated 4 years ago
- Perform OSINT on external targets using Shodan☆24Feb 7, 2024Updated 2 years ago
- Burpsuite Extension to bypass 403 restricted directory☆1,708Jun 29, 2023Updated 3 years ago
- An XSS exploitation command-line interface and payload generator.☆1,445Jan 19, 2025Updated last year
- Nuclei Templates to reproduce Cracking the lens's Research☆132Jan 8, 2022Updated 4 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆448Sep 14, 2026Updated last week
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,880Jun 21, 2026Updated 3 months ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,532Jan 8, 2026Updated 8 months ago
- ☆384May 17, 2023Updated 3 years ago
- Discover new target domains using Content Security Policy☆527Sep 14, 2026Updated last week
- A simple script just made for self use for bypassing 403☆2,189May 30, 2024Updated 2 years ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)☆1,670Jun 6, 2022Updated 4 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆453Jan 9, 2024Updated 2 years ago
- Subdomain takeover vulnerability checker☆1,596Sep 10, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A fully automated, reliable, and accurate scanner for finding Spring4Shell and Spring Cloud RCE vulnerabilities☆656Apr 7, 2022Updated 4 years ago
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆103Sep 9, 2024Updated 2 years ago
- Useful "Match and Replace" burpsuite rules☆375Sep 26, 2023Updated 2 years ago
- WebStor efficiently enumerates all websites across your organization’s networks and those in your DNS records - including cloud-hosted se…☆157Mar 31, 2024Updated 2 years ago
- S3 bucket enumerator☆30Apr 7, 2019Updated 7 years ago
- Site fast fuzzing with chorme extension.☆24Feb 4, 2022Updated 4 years ago
- This tool is useful to find a particular string in a list of URLs using tesseract's OCR (Optical Character Recognition) capabilities☆31Jan 17, 2022Updated 4 years ago