AsaiKen / dom-based-xss-finder
Chrome extension that finds DOM based XSS vulnerabilities
☆71Updated 2 years ago
Alternatives and similar repositories for dom-based-xss-finder:
Users that are interested in dom-based-xss-finder are comparing it to the libraries listed below
- Authenticated SSRF in Grafana☆79Updated 7 months ago
- ☆55Updated 2 years ago
- Burp Extension for a passive scanning JS files for endpoint links.☆53Updated 2 months ago
- Nuclei Templates to reproduce Cracking the lens's Research☆124Updated 3 years ago
- This tool is just after the first refactoring pushed. Original is from Will Vandevanter (BuffaloWill). Only rearrange the code which will…☆32Updated 8 years ago
- Burp Bounty profiles☆82Updated 3 years ago
- This is a burp plugin that extracts keywords from response using regexes and test for reflected XSS on the target scope.☆76Updated 4 years ago
- Tool to searching sentry config on page or in javascript files and check blind SSRF☆69Updated 8 months ago
- Tool is to check for Cache Deception Attack Both For Authenticated and UnAuthenticated Pages☆43Updated 3 years ago
- ☆14Updated 2 years ago
- ☆10Updated 6 months ago
- Parse HPROF files from the Spring Boot Heapdump Actuator☆26Updated 7 months ago
- Same Origin XSS challenge☆56Updated 2 years ago
- Spring4Shell Burp Scanner☆71Updated 2 years ago
- WordPress Plugin Update Confusion☆67Updated 3 years ago
- Modified Nuclei Templates Version to FUZZ Host Header☆49Updated 3 years ago
- ☆33Updated 2 years ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆61Updated 6 years ago
- SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist☆29Updated 4 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆103Updated 5 years ago
- Burp Suite's extension to scan and crawl Single Page Applications☆100Updated last year
- A burp-suite plugin that extract all parameter names from in-scope requests☆29Updated 3 years ago
- Burp Suite Extension - Trigger actions and reshape HTTP request/response and WebSocket traffic using configurable rules☆96Updated 2 months ago
- ☆52Updated 2 years ago
- Gopher Tomcat Deployer☆47Updated 6 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆162Updated 3 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆106Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆117Updated last year
- Improve automated and semi-automated active scanning in Burp Pro☆60Updated 2 years ago