hoodoer / XSS-Data-ExfilView external linksLinks
Sample code for exfiltrating data through an XSS vulnerability. XSS Payload retrieves sensitive data in victim's browser, then breaks it into chunks. Sends those chunks out as image requests (data in image filename). Example commands and python script to put the original data back together.
☆20May 11, 2021Updated 4 years ago
Alternatives and similar repositories for XSS-Data-Exfil
Users that are interested in XSS-Data-Exfil are comparing it to the libraries listed below
Sorting:
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆25Sep 21, 2023Updated 2 years ago
- A python script for automating the collection of web pages with Hunchly.☆11Jan 11, 2021Updated 5 years ago
- Les réflexions menées au cours du 404CTF 2023 pour résoudre les challenges proposés☆10Dec 16, 2023Updated 2 years ago
- A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.☆10Apr 8, 2024Updated last year
- A detailed guide to setting up a QEMU/KVM for gaming.☆13Nov 24, 2023Updated 2 years ago
- The OWASP Testing Guide v4.2 Checlist [2023]☆13Jan 15, 2023Updated 3 years ago
- A PHP tool to brute force vhost configured on a server.☆89Dec 2, 2022Updated 3 years ago
- ☆13Oct 14, 2016Updated 9 years ago
- Get notified instantly when your users of interest speak about something.☆10Mar 24, 2020Updated 5 years ago
- Resolve Skype accounts by phone number with API interface☆13Jul 16, 2023Updated 2 years ago
- Useful scripts for tampermonkey that I used during bug hunting. Will be updated "au fil de l'eau"☆17Jun 2, 2025Updated 8 months ago
- For finding secrets, tokens and other common mistakes made by developers.☆12Oct 21, 2025Updated 3 months ago
- A Web Browser for Wii.☆14Aug 17, 2025Updated 5 months ago
- Fuzzer for finding Open Mail Relays☆14Oct 21, 2020Updated 5 years ago
- An OSINT tool to find data leaks on a targeted website☆17Mar 30, 2021Updated 4 years ago
- This project includes a Python script for fine-tuning a text-to-speech (TTS) model. The script utilizes custom datasets and use CUDA for …☆13Oct 4, 2024Updated last year
- Simple tool to analyze and split the words contained in your code to check your DDD approach.☆14May 13, 2024Updated last year
- RootMe Challenges Writeups☆12Jun 1, 2019Updated 6 years ago
- Gathering All Nuclei Fuzzing Templates in a Single Repo.☆11Apr 23, 2024Updated last year
- ☆14Sep 1, 2024Updated last year
- ☆10Nov 26, 2024Updated last year
- IP-Finder is an Open Source Intelligence (OSINT) tool that helps collect IPs of Companies, Servers, Operating Systems and much more. It a…☆15May 2, 2022Updated 3 years ago
- Simple checker for ok.ru partial private data disclosure☆13Oct 5, 2023Updated 2 years ago
- Passive subdomains and web directories recon using Bing.☆13Apr 30, 2018Updated 7 years ago
- Extension to Keyboard.h to allow non-US keyboards and Unicode characters☆15Oct 19, 2021Updated 4 years ago
- Identify vulnerabilities in your API's using the OpenAPI Security Scanner☆12Dec 6, 2018Updated 7 years ago
- A handy plugin for copying requests/responses directly from Burp, some extra magic included.☆13Oct 15, 2021Updated 4 years ago
- ☆12Nov 17, 2023Updated 2 years ago
- -notes and scripts for online course OffIOT☆12Jan 19, 2026Updated 3 weeks ago
- A simple tool to convert network traffic directly into sound.☆14Aug 29, 2023Updated 2 years ago
- Real-time tracking of LoL (League of Legends) players activities☆17Feb 7, 2026Updated last week
- Gets Ads from the Facebook Ads Library☆12Jul 2, 2023Updated 2 years ago
- Update the IP address of a given domain using cPanel 2 API☆13Dec 3, 2018Updated 7 years ago
- An open-source knowledge base for security researchers.☆17Jan 8, 2025Updated last year
- certstream + analytics☆11Jan 17, 2020Updated 6 years ago
- A simple script to check for insecurely exposed git repositories.☆12Mar 17, 2019Updated 6 years ago
- ☆13Jul 25, 2023Updated 2 years ago
- OSINT Platform - Provides image analysis, digital footprints, video transcription and more. Retrieval Augmented Generation (RAG) capable …☆11Jun 25, 2024Updated last year
- pArAnoIA - Tiny "Secure" Browser☆12Nov 2, 2024Updated last year