beescuit / crosssiteshell
A websocket-based reverse (javascript) shell for XSS attacks.
☆29Updated 2 years ago
Alternatives and similar repositories for crosssiteshell:
Users that are interested in crosssiteshell are comparing it to the libraries listed below
- WPXStrike is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticals…☆65Updated last year
- ☆7Updated last year
- A better way of querying certificate transparency logs☆82Updated last month
- 😛 Primefaces 5.X EL Injection Exploit (CVE-2017-1000486)☆19Updated last year
- ☆23Updated 9 months ago
- Easily gather all routes related to a NextJs application through parsing of _buildManifest.js☆57Updated 2 years ago
- ☆44Updated 2 years ago
- burp extension for brazilian stuff☆26Updated last year
- Pipe nmap verbose output to a usable format for httpx or host:port notation.☆16Updated 2 years ago
- PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)☆87Updated 2 years ago
- Drupalwned is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆40Updated last year
- Quickly find all identities someone has used on their Github commits☆15Updated 6 months ago
- Some Useful Tricks for Pentest Android and iOS Apps☆84Updated 2 months ago
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆52Updated 2 years ago
- Colored Cat is a syntax highlighter file reader.☆16Updated 7 months ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆13Updated 2 years ago
- A powerful pentesting tool for proactive detection and exploitation of dependency confusion vulnerabilities in Node.js projects. Enhance …☆13Updated last year
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆33Updated 2 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆74Updated last year
- Some tips for Bug Bounty using LibreOffice☆36Updated 2 weeks ago
- ☆78Updated 6 months ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆52Updated 3 months ago
- crtdumper is a Go application designed to interact directly with Certificate Transparency (CT) logs servers and extract domain names fro…☆24Updated 7 months ago
- BurpSuite extension to convert requests into bcheck scripts☆30Updated last year
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- ☆51Updated 2 years ago
- ☆137Updated 9 months ago
- Wolfy AV Bypasser☆28Updated last year
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆113Updated last month
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆120Updated 6 months ago