Xss payload for bypassing waf
☆18Apr 18, 2020Updated 6 years ago
Alternatives and similar repositories for noobstuffs
Users that are interested in noobstuffs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- XSS payloads for bypassing WAF. This repository is updating continuously.☆271Mar 15, 2024Updated 2 years ago
- Nuclei Templates☆25Oct 17, 2024Updated last year
- Describe how to use ffuf different options with examples☆14Jun 13, 2022Updated 3 years ago
- Get 10k subdomains in securitytrails using cookie without apikey.☆39Oct 23, 2025Updated 5 months ago
- Cool HackerOne Reports☆22Nov 16, 2022Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Process URLs and remove duplicate query parameters.☆27Mar 19, 2024Updated 2 years ago
- A lightweight Python tool to analyze PCAP files and generate network traffic reports. It detects traffic patterns, security concerns, and…☆18Sep 25, 2024Updated last year
- LogSnare: A playground for testing, preventing, and logging IDOR vulnerabilities.☆33Mar 4, 2024Updated 2 years ago
- A list of notes that I've compiled over time to help with CTF's and the OSCP exam.☆10Dec 29, 2020Updated 5 years ago
- Shared wordlists used for common subdomains , directory bruteforcing etc.☆10May 26, 2025Updated 10 months ago
- ☆29Dec 13, 2023Updated 2 years ago
- A domain recon tool to help detect DNS based vulnerabilities, such as zone transfers and subdomain takeovers.☆11Mar 25, 2022Updated 4 years ago
- 判断是不是CDN IP,用于收缩目标资产范围☆10Mar 9, 2022Updated 4 years ago
- Passively check for XSS character encodings☆18Mar 9, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆13Sep 8, 2024Updated last year
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆143Jun 27, 2023Updated 2 years ago
- Extract metadata with SSRF (Server-Side Request Forgery)☆16Jul 23, 2022Updated 3 years ago
- BurpSiute - BurpBounty Profiles☆20Feb 10, 2023Updated 3 years ago
- Simple Automation script for juniper cve-2023-36845☆19Jan 30, 2024Updated 2 years ago
- this repo contains all nuclei templates for particular vulnerability that i used mosty while hunting..☆11Aug 15, 2024Updated last year
- A solid recon tool I use personally.☆30May 12, 2023Updated 2 years ago
- Cross-Site Scripting (XSS) is one of the most well known web application vulnerabilities. It even has a dedicated chapter in the OWASP To…☆12Jan 30, 2023Updated 3 years ago
- ☆13Mar 12, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 申明:仅供教学演示,禁用非法、未授权等进行钓鱼,后果自负。☆12May 21, 2024Updated last year
- Webarchive is a Go package for pentesters and developers to interacting with the Wayback Machine's CDX API and integrate web archive util…☆11Feb 25, 2024Updated 2 years ago
- Chameleon Wordlists☆15Sep 13, 2022Updated 3 years ago
- gh0str3con is a All in one cloud based web Recon tool.☆24Jul 8, 2024Updated last year
- CVE-2023-7028☆58Jan 12, 2024Updated 2 years ago
- A Firefox Web Extension to improve the discovery of DOM XSS.☆290Nov 13, 2024Updated last year
- Ultimate Wordlist for Web Content Discovery☆70Apr 28, 2025Updated 11 months ago
- Switch between two running operating systems without losing their state.☆58Jan 2, 2026Updated 3 months ago
- XXE漏洞检测 Payload大全☆13Apr 28, 2019Updated 6 years ago
- Deploy open-source AI quickly and easily - Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆17Jan 31, 2021Updated 5 years ago
- Master Thick Client Penetration Testing: Explore practical methodologies, uncover vulnerabilities, and enhance security.☆20Apr 6, 2024Updated 2 years ago
- ☆47Apr 18, 2023Updated 3 years ago
- My Private Bug Hunting Methodology☆317Nov 27, 2024Updated last year
- Example: Client-Side Template Injection with Vue☆25Feb 20, 2023Updated 3 years ago
- This is an UNOFFICIAL guide and general list of cheatsheets, references, and walkthroughs aligned with the OffSec OSCP exam process☆33Dec 12, 2025Updated 4 months ago
- All Shell In One. Generate Reverse Shells and/or generate single code that runs all the payloads.☆10Mar 25, 2021Updated 5 years ago