Bucharest, RO

Mihnea-Octavian Manolache

Expert
@mihneamanolache

<image/src/onerror=alert(document.cookie)>

antibot-detector. Detects the presence of anti-bot and fingerprinting technologies on websites by analyzing requests, headers, cookies, and more. Built on the detection logic of the original Wappalyzer, this tool identifies systems like Cloudflare, Akamai, reCAPTCHA, and others that protect against bots.

54

credit-card-generator. A Node.js package that generates valid credit card numbers, expiry dates, and CVV2 codes. The credit card numbers are valid with respect to the Luhn algorithm, and the CVV2 codes are generated using the Tripple-DES algorithm with double length keys.

33

recaptcha-solver. RektCaptcha is an automated solution for solving audio-based Google reCAPTCHA challenges using Puppeteer and Playwright. It leverages the Vosk speech-to-text model to transcribe the audio challenges and fill in the reCAPTCHA response field automatically.

33

simple-sw-test. Simple tool to test service worker fingerprint leaks in headless browser with puppeteer-extra-plugin-stealth

19

puppeteer-extra-amazon-captcha. A puppeteer-extra plugin to solve Amazon captchas using Tessaract.JS.

15

WebChecker. WebChecker is a simple tool used in pentesting to detect what CMS a website is running & more.

13

cert-cli. An OSINT tool for discovering domains, organizations, and addresses from SSL/TLS certificates using crt.sh. Supports proxy configurations, JSON output, and robust error handling for large-scale certificate analysis.

12

Simple-Python-Ransomware. Simple Python Ransomware is a simple implementation of a ransomware in Python.

7

rn-audio-player. A simple audio player built with React Native and Expo.

6

wpLockPicker. A CLI tool used for bruteforcing WordPress by exploiting the XMLRPC interfaces.

6

vinChecker. A command line tool to gather information about Romanian registered vehicles.

5

MockAPI. A lightweight mock data API built with Express and Faker for generating fake data.

4

netcup-webservice. Unofficial Python client for Netcup Webservice API

3

scorpio-crawler. A modular penetration testing framework designed to automate common security testing tasks using a headless browser.

3

zeppelin.nvim. A Neovim plugin that allows users to interact with Apache Zeppelin notebooks directly from Neovim.

3

webscraper. A robust web scraping library using Playwright for Node.js. This library provides an easy-to-use API for automating web interactions, extracting data, and handling various web scraping tasks efficiently.

2

redis-exploit. A proof of concept illustrating the risks of unauthenticated Redis servers. Learn about potential data theft from openly accessible Redis installations. Educational use only. Use responsibly.

2

hektCaptcha-extension. Automatically solve hCaptcha using AI. 100% Free and Unsustainable™️.

2

zeppelin-mcp. MCP (Model Context Protocol) server for Apache Zeppelin. Gives Claude Code direct access to the Zeppelin REST API for AI-assisted data engineering workflows

2

url-harvester. A web crawling tool that collects URLs from a given domain and stores them in Parquet format.

1

docker-headful-chrome. A simple docker image to test headful chrome.

1

MongoDB-Exploit. Some MongoDB clusters have no authentication and can therefor be accessed without credentials

1

hcaptcha_hsw_encryption. Python

1

keylogger.js. A lightweight JavaScript keylogger for ethical hacking, penetration testing, and security research

1

ip-to-domain. A hosted reverse IP lookup tool that processes newly registered domains, resolves their IPv4 addresses, stores them in a MongoDB database, and provides a publicly accessible API to retrieve domains associated with specific IP addresses.

1

curl-to-sqlmap. A simple web-based tool that converts curl commands to sqlmap commands for SQL injection testing.

1
26
Apply