hackvertor / clickbandit
A JavaScript clickjacking PoC generator
☆22Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for clickbandit
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 2 years ago
- ☆13Updated 7 years ago
- Web Application Security related tools. Includes backdoors, proof of concepts and tricks☆36Updated 10 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 8 years ago
- XSSB is a proactive DOM sanitizer, defending against client-side injection attacks!☆38Updated 6 years ago
- Scans crossdomain.xml policies for expired domain names.☆25Updated 9 years ago
- Send notifications if a new program is published on HackerOne using Pushbullet☆25Updated 7 years ago
- A Burp plugin to dump HTTP(S) requests/responses to a file system☆24Updated 7 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- PHP tool to test XSS☆23Updated 5 years ago
- A wrap up script to auto perform nmap scan from the result of dnsrecon, then output result with filename as hostname and ip☆10Updated 6 years ago
- ☆13Updated 2 years ago
- Clickjacking Proof-of-Concept Exploit☆25Updated 4 years ago
- Burp Intruder File Payload Generator☆18Updated 5 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 7 years ago
- Burp Suite extension to help make Graphql request more readable☆30Updated 6 years ago
- PDF report generator for basic recon☆9Updated 6 years ago
- All-in-one AWS S3 bucket tool for pentesters.☆70Updated 5 years ago
- Actarus is a custom tool for bug bounty☆75Updated 5 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- Automated XSS Finder☆60Updated 11 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- ☆35Updated 5 years ago
- Clickjacking PoC Generator☆35Updated 4 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated last year
- Hunt Open MongoDB instances☆78Updated 5 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago