A repository of JavaScript XSS attacks against client browsers
☆108Jul 29, 2020Updated 6 years ago
Alternatives and similar repositories for XSS-Clientside-Attacks
Users that are interested in XSS-Clientside-Attacks are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Reflected Cross-Site Scripting (XSS) vulnerability in 'index.php' login-portal webpage of SourceCodesters Stock Management System v1.0 al…☆21Mar 30, 2021Updated 5 years ago
- GetSimple CMS Custom JS Plugin Exploit RCE Chain☆11Mar 8, 2023Updated 3 years ago
- My eJPT exam cheatSheet☆13Nov 9, 2021Updated 4 years ago
- Caido's passive workflow to find potential leaked secrets, PII, and sensitive fields.☆29Jan 13, 2025Updated last year
- ☆14Mar 8, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A small pentesting lab for Azure☆10Apr 19, 2019Updated 7 years ago
- Some files for bruteforcing certain things.☆28Jul 12, 2021Updated 5 years ago
- Windows Stack Based Auto Buffer Overflow Exploiter☆21Feb 19, 2021Updated 5 years ago
- Mimikatz embedded as classes☆27Oct 25, 2021Updated 4 years ago
- Mini recon script to identify the links and sensitive information from a particular link☆23Mar 9, 2021Updated 5 years ago
- Python 3 demo of Command and Control (C&C) bot☆12May 3, 2020Updated 6 years ago
- Some Pentesters, Security Researchers, Red Teamers which i learned from them a lot...☆115Jan 25, 2024Updated 2 years ago
- ☆66Jun 5, 2021Updated 5 years ago
- ☆44Apr 30, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- web application pentesting tools for docker☆19Aug 9, 2022Updated 4 years ago
- Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly☆55Mar 15, 2026Updated 5 months ago
- Exploit Research & Development - Ported Exploits☆12Jul 22, 2017Updated 9 years ago
- Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing…☆11Oct 6, 2020Updated 5 years ago
- Reconflow is all in one tool for gathering reconnaissance information about a target in a penetration test☆13Jul 18, 2021Updated 5 years ago
- all manner of wordlists☆24Jan 19, 2022Updated 4 years ago
- The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down her…☆15May 15, 2025Updated last year
- Kubernetes, Clusters and Dockers Enumeration in GCP and AWS environments☆12Nov 23, 2023Updated 2 years ago
- ☆18Jun 24, 2021Updated 5 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- All known and unknown public POC's for wordpress themes and plugins☆79Jun 23, 2021Updated 5 years ago
- Guide to SSRF☆77Oct 10, 2023Updated 2 years ago
- 🎯 SQL Injection Payload List☆12Jun 6, 2021Updated 5 years ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆35Dec 13, 2023Updated 2 years ago
- Reflected Cross-Site Scripting (XSS) vulnerability in 'index.php' login-portal webpage of SourceCodesters Tailor Management System v1.0 a…☆25Sep 2, 2020Updated 5 years ago
- ☆87May 27, 2021Updated 5 years ago
- c# reverse shell poc☆26Dec 22, 2025Updated 7 months ago
- ☆19Sep 2, 2021Updated 4 years ago
- URL-encode data streams via commandline☆14Oct 26, 2019Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automatic SQL injection and database takeover tool☆45Nov 27, 2025Updated 8 months ago
- ☆11Oct 7, 2022Updated 3 years ago
- You don't need wires to be connected☆43Apr 8, 2020Updated 6 years ago
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆37Feb 16, 2020Updated 6 years ago
- some bare tooling for interacting with Blazor Server☆14Aug 5, 2022Updated 4 years ago
- This is a lazy enumeration script made to make bug bounty enum & pentest flyovers easy as cake!☆13Jun 13, 2020Updated 6 years ago
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆30Jul 21, 2024Updated 2 years ago