gabemarshall / casperXSS
Reflective/DOM XSS scanner built on casperJS
☆81Updated 10 years ago
Alternatives and similar repositories for casperXSS:
Users that are interested in casperXSS are comparing it to the libraries listed below
- Hackerone disclosed report URL Aggregator☆29Updated 6 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- Damn Small FI Scanner☆60Updated 5 years ago
- Allows you to trace where inputs are reflected back to the user.☆37Updated 7 years ago
- ☆32Updated 9 years ago
- Advanced virtual host bruteforcer☆31Updated 9 years ago
- Tainted PhantomJS☆53Updated 9 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- ☆13Updated 2 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- Scans crossdomain.xml policies for expired domain names.☆25Updated 9 years ago
- REST/JSON interface to Burp Suite☆33Updated 4 years ago
- Basic gui to run and display nmap scan results. Just a POC so far.☆31Updated 11 years ago
- Study about HQL injection exploitation.☆50Updated 8 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆39Updated 8 years ago
- Exploits and research stuffs☆54Updated last year
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Repository aimed to compile scripts and tools that can be used during penetration tests to assess the security of different flash related…☆10Updated 10 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 7 years ago
- Duncan - Blind SQL injector skeleton☆56Updated 3 years ago
- A dashboard for interesting DOM tricks/techniques.☆36Updated 4 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 2 years ago