boku7 / XSS-Clientside-Attacks
A repository of JavaScript XSS attacks against client browsers
☆96Updated 4 years ago
Alternatives and similar repositories for XSS-Clientside-Attacks:
Users that are interested in XSS-Clientside-Attacks are comparing it to the libraries listed below
- A combined wordlists for files and directory discovery☆117Updated 3 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆68Updated 4 years ago
- ☆74Updated 9 months ago
- A one liner Bash command which finds CORS in every possible endpoint.☆118Updated 4 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆85Updated 7 months ago
- HTTP parameter discovery suite.☆61Updated 4 years ago
- Notes for CRTP☆39Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 3 years ago
- AWS S3 open bucket poc automated script.☆55Updated 3 years ago
- Simple fork from degoogle original project with bug hunting purposes☆88Updated 2 years ago
- ☆67Updated last year
- PenTest Methodology☆14Updated 2 months ago
- HTTP verb tampering & methods enumeration☆55Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆64Updated 2 years ago
- ☆45Updated 7 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆95Updated 2 years ago
- OSWE Preparation☆37Updated 5 years ago
- Awesome cloud enumerator☆36Updated 4 years ago
- Vulnerable SAML infrastructure training applicaiton☆50Updated last year
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆90Updated 10 months ago
- ☆71Updated 4 years ago
- ASN reconnaissance script☆124Updated last year
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆50Updated 4 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆113Updated last year
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- A reverse whois tool based on Whoxy API.☆161Updated 9 months ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆60Updated last year
- A docker image which will enumerate, sort, unique and resolve the results of various subdomains enumeration tools.☆70Updated 6 months ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 4 years ago