Danladi / HttpPwnly

"Repeater" style XSS post-exploitation tool for mass browser control. Primarily a PoC to show why HttpOnly flag isn't a complete protection against session hijacking via XSS
135Updated 7 years ago

Alternatives and similar repositories for HttpPwnly:

Users that are interested in HttpPwnly are comparing it to the libraries listed below