JakobKallin / Excess-XSS
A comprehensive tutorial on cross-site scripting
☆88Updated 7 years ago
Alternatives and similar repositories for Excess-XSS:
Users that are interested in Excess-XSS are comparing it to the libraries listed below
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆87Updated 6 years ago
- PoC for an adaptive parallelised DNS prober☆44Updated 7 years ago
- Allows you to trace where inputs are reflected back to the user.☆37Updated 7 years ago
- This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks☆19Updated 9 years ago
- The Unofficial Burp Extension for DNSDumpster.com☆70Updated 6 years ago
- Scans crossdomain.xml policies for expired domain names.☆25Updated 9 years ago
- Hackerone disclosed report URL Aggregator☆29Updated 6 years ago
- Protect your parents from phishing☆39Updated 7 years ago
- The OWASP AppSec Browser Bundle is an open source Linux based penetration testing browser bundle built over Mozilla Firefox. It comes pre…☆96Updated 11 years ago
- A talk+workshop on Accelerating Your Security Learning in 2017 given at null Bangalore 2017☆13Updated 8 years ago
- The databases, API's and managers behind https://websecweekly.org☆50Updated 9 years ago
- CSV injection Vulnerable Script.☆29Updated 7 years ago
- Extreme Vulnerable Node Application☆93Updated 6 years ago
- Reflective/DOM XSS scanner built on casperJS☆81Updated 10 years ago
- A collection of the solutions people wrote for the H1-212 Capture The Flag event☆95Updated 6 years ago
- Stealing CSRF tokens with CSS injection (without iFrames)☆319Updated 7 years ago
- A mass subdomain (Subbrute) + poodle vulnerability scanner☆74Updated 6 years ago
- Project "Flashbang" - An open-source Flash-security helper☆205Updated 9 years ago
- Duncan - Blind SQL injector skeleton☆56Updated 3 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Exploits and research stuffs☆54Updated last year
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆25Updated 7 years ago
- automato should help with automating some of the user-focused enumeration tasks during an internal penetration test.☆72Updated 5 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 8 years ago
- ☆61Updated 7 years ago
- A public list of URLs generally useful to webapp testers and pentesters☆112Updated 7 years ago
- Shell-style script to search exploit-db.com exploits.☆60Updated 5 months ago
- Write JavaScript alert(1) with Katakana characters only☆143Updated 7 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 7 years ago