HackCommander / PHP-info-cookie-stealer
Payload generator to exfiltrate user cookies through the PHP info page bypassing the HttpOnly flag during XSS exploitation.
☆18Updated 11 months ago
Related projects ⓘ
Alternatives and complementary repositories for PHP-info-cookie-stealer
- Check if domain has bug bounty program or not☆29Updated last year
- ☆13Updated 7 months ago
- XSS Finder Via SSTI☆54Updated last year
- This tool allows you to find ssti vulnerability with ease!☆19Updated 2 years ago
- "🔍 Subtron: Bash-driven subdomain seeker. Utilizes Subfinder, Amass, Assetfinder, and HTTPX to swiftly uncover live domains. Results sto…☆22Updated 9 months ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆31Updated 11 months ago
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- ☆16Updated last year
- ☆13Updated last year
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 3 years ago
- ☆21Updated 2 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆31Updated 2 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆18Updated last year
- All in one subdomain Enumeration tool☆22Updated last year
- your bestfried for finding LinkedIn Employees on github☆16Updated last year
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆16Updated 3 weeks ago
- my own 2fa bypass methodolgy☆22Updated last year
- A solid recon tool I use personally.☆30Updated last year
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆21Updated 3 months ago
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆22Updated 2 years ago
- A tool for Subdomain takeovers detection☆26Updated 2 years ago
- Mini recon script to identify the links and sensitive information from a particular link☆19Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 3 years ago
- Host Header Vulnerability Scanner Automated Tool☆23Updated last year
- Brute Force subdomains with a list of custom DNS records.☆13Updated last year
- ☆20Updated last year
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆23Updated last year
- A Burp Extension that makes it easier to view all script code on a Response.☆12Updated last year
- convert case style of words☆25Updated 10 months ago