Encryptor-Sec / XSSearchLinks
XSSearch is a comprehensive reflected XSS tool built on selenium framework in python language. It contains more than 3000 payloads for automating XSS attacks and validating XSS endpoint
☆60Updated 3 years ago
Alternatives and similar repositories for XSSearch
Users that are interested in XSSearch are comparing it to the libraries listed below
Sorting:
- Automated Web Recon Shell Scripts☆53Updated 3 years ago
- Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack…☆55Updated 3 years ago
- ☆44Updated 4 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 3 years ago
- Enhanced 403 bypass header☆21Updated 3 years ago
- ☆67Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆93Updated 3 years ago
- I collected it to help the bug hunter get a reward☆58Updated 3 years ago
- Script for Bug Bounty☆29Updated 4 years ago
- ☆84Updated 3 years ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated 2 years ago
- Ultimate Package Of 50 Bug Bounty Hunting Tools☆46Updated 3 weeks ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- ☆40Updated 3 years ago
- A list of threat sinks used in the manual security source code review for application security☆73Updated 2 years ago
- Some of the gf patterns which i use☆45Updated 3 years ago
- Bug Bounty & Other Stuff☆58Updated 3 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆34Updated 3 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆45Updated 4 years ago
- XSS Finder Via SSTI☆57Updated 2 years ago
- Script that download 37+ open source nuclei templates☆44Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 4 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 2 years ago
- A solid recon tool I use personally.☆30Updated 2 years ago
- This repository contains proof of concept for zero days and CVEs that were found by Omar Hashem through Security Research☆45Updated 2 years ago
- basic bbtools , buggy , not recommended to use☆35Updated 9 months ago
- ☆89Updated 4 years ago
- ☆37Updated last year
- Tool for testing reflections in the HTTP responses☆60Updated 2 years ago