Jewel591 / xssmap
XSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具
☆261Updated 4 years ago
Alternatives and similar repositories for xssmap:
Users that are interested in xssmap are comparing it to the libraries listed below
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆566Updated 4 years ago
- jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).☆267Updated last month
- SSRFuzz is a tool to find Server Side Request Forgery vulnerabilities, with CRLF chaining capabilities☆182Updated 3 years ago
- Small Tool written based on chaos from projectdiscovery.io☆170Updated 4 months ago
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆360Updated 4 months ago
- essential templates for kenzer [DEPRECATED]☆111Updated last year
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆722Updated 3 years ago
- ☆181Updated last year
- PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus☆173Updated 9 months ago
- Scan Victim Backup Directories & Backup Files☆178Updated last year
- Burp Extension for a passive scanning JS files for endpoint links.☆764Updated 10 months ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆233Updated 2 months ago
- HTTP file upload scanner for Burp Proxy☆486Updated last year
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆580Updated last year
- this repository is a docker containing some "XSS vulnerability" challenges and bypass examples.☆115Updated 2 years ago
- Burp Extension for a passive scanning JS files for endpoint links.☆164Updated 5 years ago
- Python based scanner to find potential SSRF parameters☆309Updated 10 months ago
- Log4j jndi injects the Payload generator☆487Updated 3 years ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆276Updated 4 years ago
- ☆281Updated 3 years ago
- HTTP Request Smuggling Detection Tool☆485Updated last year
- Afuzz is an automated web path fuzzing tool for the Bug Bounty projects.☆303Updated last year
- Nuclei plugin for BurpSuite☆1,215Updated 5 months ago
- A cli for cracking, testing vulnerabilities on Json Web Token(JWT)☆131Updated this week
- Another version of katana, more automated but less stable. the purpose of this small tool is to run a Google based passive recon against …☆225Updated 3 years ago
- Totally Insecure Web Application Project (TIWAP)☆170Updated last year
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆295Updated 5 years ago
- Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.☆190Updated 8 months ago
- Tool to help exploit XXE vulnerabilities☆553Updated 2 years ago
- Nuclei templates written by us.☆266Updated 3 years ago