SecarmaLabs / HttpPwnly

"Repeater" style XSS post-exploitation tool for mass browser control. Primarily a PoC to show why HttpOnly flag isn't a complete protection against session hijacking via XSS
16Updated 8 years ago

Alternatives and similar repositories for HttpPwnly:

Users that are interested in HttpPwnly are comparing it to the libraries listed below