- [2026.06.24]cpanel_cracker
Misnamed config grabber — no brute-force logic exists despite the name. Malaysian scene (Donnazmi / AnonGhost, 2014). Default page load returns /etc/passwd without authentication. Stealth-404 evasion blocks search engine crawlers. Symlink grabber targets ~120 CMS and billing config paths.
- [2026.06.24]DamaneDz Config Grabber
Symlink-based config grabber from the Algerian scene (DamaneDz, 2013). Zero authentication. Creates a permissive directory with .htaccess override, then symlinks ~120 well-known CMS and billing config paths to harvest credentials across shared-hosting tenants.
- [2026.06.24]mails_grabber
Database email harvester from the Algerian scene. Two authors in one 8 KB file: SparkyDz (UI) and G-B (engine). Zero authentication. Walks every database, table, and column on the server, regex-matches email addresses, validates and deduplicates, then appends to file. Bulk mode accepts pasted lists of MySQL credentials.