HackCommander / PHP-info-cookie-stealerLinks
Payload generator to exfiltrate user cookies through the PHP info page bypassing the HttpOnly flag during XSS exploitation.
☆20Updated 2 years ago
Alternatives and similar repositories for PHP-info-cookie-stealer
Users that are interested in PHP-info-cookie-stealer are comparing it to the libraries listed below
Sorting:
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆35Updated 2 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆56Updated 3 years ago
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆36Updated 2 years ago
- ☆19Updated 2 months ago
- Brute Force subdomains with a list of custom DNS records.☆13Updated 2 years ago
- XSS Finder Via SSTI☆56Updated 2 years ago
- A Collection of Wordlists for Penetration Testing☆32Updated 2 months ago
- bash script for automating subdomain enumeration process either passive or active☆29Updated last year
- ☆19Updated 2 years ago
- DNS resolution tracing tool☆36Updated 4 years ago
- Filter URLs to save your time.☆60Updated 3 years ago
- Resolvers updated daily for reconftw☆47Updated 3 years ago
- Nuclei template for CVE-2024-23897 (Jenkins LFI Vulnerability)☆21Updated 2 years ago
- WebApp intentionally made vulnerable to Race Condition for practicing Race Condition☆25Updated 3 years ago
- Archived Please go to https://github.com/adamjsturge/xsshunter-go☆31Updated last year
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆22Updated 3 years ago
- Alternative to XSS Hunter for blind XSS.☆51Updated 3 years ago
- Subtron is a professional grade subdomain enumeration toolkit designed for security researchers, penetration testers, and bug bounty hunt…☆24Updated 3 months ago
- Check if domain has bug bounty program or not☆28Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆33Updated 3 years ago
- ☆21Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆17Updated 5 years ago
- Combined and sorted cybersecurity collection of all high quality seclists and wordlists from the internet☆23Updated 9 months ago
- I collected it to help the bug hunter get a reward☆57Updated 3 years ago
- 「🐞」Bug Bounty Tricks☆41Updated 2 years ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆42Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated last year
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆25Updated 2 years ago
- Offensive Security MISC Annotations and Payloads for Ethical Hackers / Security Researchers☆30Updated last year
- Your subdomains are free for the taking - no API key, no mistaking! 🕺☆36Updated 2 years ago