HackCommander / PHP-info-cookie-stealerLinks
Payload generator to exfiltrate user cookies through the PHP info page bypassing the HttpOnly flag during XSS exploitation.
☆19Updated last year
Alternatives and similar repositories for PHP-info-cookie-stealer
Users that are interested in PHP-info-cookie-stealer are comparing it to the libraries listed below
Sorting:
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- ☆17Updated last year
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆35Updated last year
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- Check if domain has bug bounty program or not☆27Updated last year
- "🔍 Subtron: Bash-driven subdomain seeker. Utilizes Subfinder, Amass, Assetfinder, and HTTPX to swiftly uncover live domains. Results sto…☆23Updated last year
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆23Updated 3 years ago
- XSS Finder Via SSTI☆56Updated last year
- This tool allows you to find ssti vulnerability with ease!☆20Updated 2 years ago
- DNS resolution tracing tool☆34Updated 3 years ago
- Find CVEs that don't have a Detectify modules.☆22Updated 2 years ago
- Continuous Reconnaissance and Vulnerability Scanning for Bug Bounties☆18Updated last year
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆37Updated 2 years ago
- A solid recon tool I use personally.☆30Updated 2 years ago
- ☆21Updated 2 years ago
- Filter URLs to save your time.☆60Updated 2 years ago
- Archived Please go to https://github.com/adamjsturge/xsshunter-go☆31Updated last year
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆44Updated last year
- Host Header Vulnerability Scanner Automated Tool☆23Updated last month
- Brute Force subdomains with a list of custom DNS records.☆13Updated 2 years ago
- A browser bookmark to show hidden fields and enable disabled fields on a web page☆20Updated last year
- convert case style of words☆40Updated last year
- WebApp intentionally made vulnerable to Race Condition for practicing Race Condition☆25Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆17Updated 4 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆24Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated 7 months ago
- BurpSiute - BurpBounty Profiles☆19Updated 2 years ago
- IIS shortname scanner + bruteforce☆52Updated last year
- ElasticSearch exploit and Pentesting guide for penetration tester☆27Updated 2 years ago