hahwul / XSS-Payload-without-AnythingLinks
XSS Payload without Anything.
☆106Updated 6 years ago
Alternatives and similar repositories for XSS-Payload-without-Anything
Users that are interested in XSS-Payload-without-Anything are comparing it to the libraries listed below
Sorting:
- Misc bounty and vulndisc things☆86Updated 4 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆61Updated last year
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 4 years ago
- A combined wordlists for files and directory discovery☆125Updated 4 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆60Updated 6 years ago
- ☆58Updated 4 years ago
- Finds the End-Points in JavaScript files☆97Updated 3 years ago
- CRLF and open redirect fuzzer☆111Updated 4 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆52Updated 4 years ago
- ☆76Updated 4 years ago
- Hacked together script for feeding urls into Burp's Sitemap☆93Updated 5 months ago
- XSSor is a semi-automatic reflected and persistent XSS detector extension for Burp Suite. The tool was written in Python by Barak Tawily,…☆60Updated 4 years ago
- ☆194Updated 6 years ago
- Clientside vulnerability / reflected xss fuzzer☆149Updated 2 years ago
- ☆31Updated 4 years ago
- SQLi Query Tampering extends and adds custom Payload Generator/Processor in Burp Suite's Intruder. This extension gives you the flexibil…☆155Updated 5 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆131Updated 4 years ago
- ☆61Updated last year
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆112Updated 2 years ago
- ☆72Updated 5 years ago
- Some of my bug bounty tools☆52Updated 5 years ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆103Updated 5 years ago
- Command line tool for testing CRLF injection on a list of domains.☆164Updated last year
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆68Updated 5 years ago
- s3 brute force tool☆45Updated 4 years ago
- Takeover subdomains using AWS dangling elastic ips and have a working POC for Subdomain Takeover.☆93Updated 2 months ago
- ASN reconnaissance script☆132Updated last year
- Simple script to get your private/public or both programs using the Hackerone graphql.☆22Updated 5 years ago
- Match and Replace script used to automatically generate JSON option file to BurpSuite☆215Updated 6 years ago