The-XSS-Rat / XSS-FreakLinks
XSS-Freak is an xss scanner fully written in python3 from scratch. it is one of its kind since it crawls the website for all possible links and directories to expand its attack scope. then it searches them for inputs tags and then launches a bunch of xss payloads. if an inputs is not sanitized and vulnerable to xss attacks, the tool will discov…
☆22Updated 5 years ago
Alternatives and similar repositories for XSS-Freak
Users that are interested in XSS-Freak are comparing it to the libraries listed below
Sorting:
- Here Are Some Bug Bounty Resource From Twitter☆101Updated 3 months ago
- Checks for SSRF using built-in custom Payloads after fetching URLs from Multiple Passive Sources & applying complex patterns aimed at SSR…☆125Updated last year
- "XSS automation tool helps hackers identify and exploit cross-site scripting vulnerabilities in web apps. Tests for reflected and persist…☆92Updated last year
- This repository contains some of the most exhaustive wordlists for enumeration, gathered from a lot of wordlists available on the Interne…☆104Updated 11 months ago
- AutoRecon-XSS is a script designed for automated reconnaissance of XSS vulnerabilities. It crawls the target URL or alive domains, extrac…☆134Updated last year
- Sub-Domain TakeOver Vulnerability Scanner (edoardottt fork)☆69Updated 7 months ago
- Scripts and other stuff.☆132Updated last year
- A proper approach to pentest a Web application with the mixture of all useful payloads and complete testing guidance of attacks. Designed…☆76Updated 7 months ago
- ScopeHunter is a command-line tool for finding in scope targets for bug bounty programs.☆70Updated last year
- smartrecon is a powerful shell script to automate the recon and finding common vulnerabilities for bug hunter☆155Updated last year
- Dnsbruter is a powerful tool designed to perform active subdomain enumeration and discovery. It uses DNS resolution to efficiently brutef…☆123Updated 9 months ago
- ☆111Updated 2 years ago
- Calculate favicon hash for SHODAN☆87Updated 11 months ago
- ☆69Updated 3 months ago
- Here are some cool and some unpublished Dorks☆76Updated 8 months ago
- convert case style of words☆49Updated last year
- Streamline your recon and vulnerability detection process with SCRIPTKIDDI3, A recon and initial vulnerability detection tool built using…☆152Updated last year
- ☆44Updated 3 years ago
- Automated Subdomain Enumeration and Scanning Tool☆116Updated last year
- A curated list wordlists for bruteforcing and fuzzing☆83Updated 2 years ago
- Web Crawler for Identifying Entry Points☆11Updated last year
- My useful files for penetration tests, security assessments, bug bounty and other security related stuff☆183Updated this week
- Nodesub is a command-line tool for finding subdomains in bug bounty programs☆148Updated last year
- Cross Injector — A Python Script for Cross-Site Scripting (XSS) Detection☆40Updated 2 weeks ago
- A powerful and sophisticated tool for detecting and exploiting open redirect vulnerabilities using the sed utility and a selected list of…☆48Updated last year
- XSSRocket it is a tool designed for offensive security and XSS (Cross-Site Scripting) attacks.☆146Updated 11 months ago
- Postman OSINT tool to extract creds, token, username, email & more from Postman Public Workspaces☆163Updated 4 months ago
- Nuclei (https://github.com/projectdiscovery/nuclei) templates for extracting juicy info from web pages☆190Updated 2 years ago
- Welcome to the Bug Hunter's Wordlists repository! 🐛🔍 This repository serves as a comprehensive collection of essential wordlists utiliz…☆149Updated last year
- ☆64Updated last year