HackCommander / PHP-info-cookie-stealerLinks
Payload generator to exfiltrate user cookies through the PHP info page bypassing the HttpOnly flag during XSS exploitation.
☆20Updated last year
Alternatives and similar repositories for PHP-info-cookie-stealer
Users that are interested in PHP-info-cookie-stealer are comparing it to the libraries listed below
Sorting:
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆34Updated last year
- A simple automation tool to detect lfi, rce and ssti vulnerability☆56Updated 3 years ago
- A tool for Subdomain takeovers detection☆26Updated 3 years ago
- Filter URLs to save your time.☆60Updated 3 years ago
- ☆18Updated 4 months ago
- DNS resolution tracing tool☆36Updated 4 years ago
- A Collection of Wordlists for Penetration Testing☆30Updated 2 weeks ago
- Archived Please go to https://github.com/adamjsturge/xsshunter-go☆31Updated last year
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆33Updated 3 years ago
- This tool allows you to find ssti vulnerability with ease!☆21Updated 3 years ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- Subtron is a professional grade subdomain enumeration toolkit designed for security researchers, penetration testers, and bug bounty hunt…☆24Updated last week
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆36Updated 2 years ago
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆26Updated 2 years ago
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated last year
- ☆19Updated 2 years ago
- bash script for automating subdomain enumeration process either passive or active☆29Updated 10 months ago
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆59Updated 2 years ago
- WebApp intentionally made vulnerable to Race Condition for practicing Race Condition☆25Updated 3 years ago
- Python tool for detecting subdomain takeover vulnerabilities by resolving CNAME records and checking for known error messages. It support…☆16Updated 9 months ago
- My personal collection of nuclei templates made for fuzzing.☆29Updated last year
- Continuous Reconnaissance and Vulnerability Scanning for Bug Bounties☆18Updated last year
- A Burp Suite extension that helps track and manage multiple sessions simultaneously by color-coding HTTP requests based on custom pattern…☆28Updated 11 months ago
- convert case style of words☆54Updated last year
- I collected it to help the bug hunter get a reward☆58Updated 3 years ago
- Testing default web credentials☆34Updated last year
- Sub-Domain TakeOver Vulnerability Scanner (edoardottt fork)☆72Updated 9 months ago
- A powerful Go tool for finding origin IPs of domains by querying multiple security APIs and validating results with built-in HTTP client.☆28Updated this week
- Your subdomains are free for the taking - no API key, no mistaking! 🕺☆36Updated 2 years ago