beescuit / crosssiteshellLinks
A websocket-based reverse (javascript) shell for XSS attacks.
☆29Updated 2 years ago
Alternatives and similar repositories for crosssiteshell
Users that are interested in crosssiteshell are comparing it to the libraries listed below
Sorting:
- A better way of querying certificate transparency logs☆87Updated 3 months ago
- WPXStrike is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticals…☆66Updated last year
- 😛 Golang project to exploit an EL Injection vulnerability (CVE-2017-1000486) that affects the Primefaces 5.X versions. This project supp…☆18Updated 2 years ago
- ☆7Updated last year
- Easily gather all routes related to a NextJs application through parsing of _buildManifest.js☆65Updated 2 years ago
- burp extension for brazilian stuff☆27Updated last year
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆75Updated last year
- Session Hijacking Visual Exploitation☆201Updated last year
- ☆26Updated 4 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆77Updated last year
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆87Updated last year
- Drupalwned is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆40Updated last year
- Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability☆84Updated last year
- This extension is meticulously crafted to safeguard users from phishing attempts that replicate the Office365 login interface, particular…☆11Updated last year
- CLI tool for discovering related base domains using WhoisXMLAPI's reverse Whois endpoints☆11Updated last year
- Tool to enable blind sql injection attacks against websockets using sqlmap☆62Updated 2 months ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆69Updated 2 years ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆108Updated last year
- A powerful pentesting tool for proactive detection and exploitation of dependency confusion vulnerabilities in Node.js projects. Enhance …☆11Updated last year
- Colored Cat is a syntax highlighter file reader.☆16Updated last year
- ☆140Updated last year
- PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22☆30Updated 2 years ago
- ☆87Updated 3 months ago
- ☆68Updated 2 years ago
- Script to retrieve the master password of a keepass database <= 2.53.1☆105Updated last year
- Some tips for Bug Bounty using LibreOffice☆47Updated 4 months ago
- ☆70Updated 3 weeks ago
- An MS Sharepoint and Frontpage Auditing Tool☆50Updated 7 months ago
- A couple of different scripts, made to automate attacks against NoSQL databases.☆65Updated last year
- SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions…☆66Updated 9 months ago