HackCommander / PHP-info-cookie-stealer
Payload generator to exfiltrate user cookies through the PHP info page bypassing the HttpOnly flag during XSS exploitation.
☆19Updated last year
Alternatives and similar repositories for PHP-info-cookie-stealer:
Users that are interested in PHP-info-cookie-stealer are comparing it to the libraries listed below
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆35Updated last year
- A tool for Subdomain takeovers detection☆26Updated 2 years ago
- convert case style of words☆35Updated last year
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- This tool allows you to find ssti vulnerability with ease!☆20Updated 2 years ago
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆23Updated 3 years ago
- ☆15Updated last year
- Check if domain has bug bounty program or not☆27Updated last year
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- Offensive Security MISC Annotations and Payloads for Ethical Hackers / Security Researchers☆26Updated 4 months ago
- Brute Force subdomains with a list of custom DNS records.☆13Updated 2 years ago
- XSS Finder Via SSTI☆55Updated last year
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆24Updated 2 years ago
- Automated tool for domains & Subdomains Gathering☆13Updated last year
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆19Updated 2 years ago
- "🔍 Subtron: Bash-driven subdomain seeker. Utilizes Subfinder, Amass, Assetfinder, and HTTPX to swiftly uncover live domains. Results sto…☆23Updated last year
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- Host Header Vulnerability Scanner Automated Tool☆22Updated last week
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆37Updated last year
- ☆21Updated 2 years ago
- All in one subdomain Enumeration tool☆21Updated 2 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆27Updated 2 years ago
- ☆17Updated last year
- PathBuster - multiple hosts Web path scanner☆22Updated 10 months ago
- xdebug 2.5.5 RCE exploit☆30Updated 3 months ago
- regex Hunter- Fast website endpoint sensitive data and Leaks JS files endpoint API Key Scraper☆10Updated 10 months ago
- your bestfried for finding LinkedIn Employees on github☆16Updated 2 years ago
- CVE-2024-24919 [Check Point Security Gateway Information Disclosure]☆31Updated 10 months ago