ihebski / XSS-Payloads
Collection of XSS Payloads for fun and profit
☆177Updated 4 years ago
Alternatives and similar repositories for XSS-Payloads:
Users that are interested in XSS-Payloads are comparing it to the libraries listed below
- Burp extension to create target specific and tailored wordlist from burp history.☆238Updated 3 years ago
- List of reporting templates I have used since I started doing BBH.☆297Updated 7 months ago
- ☆140Updated 2 years ago
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...☆147Updated 4 years ago
- Build your own reconnaissance system with Osmedeus Next Generation☆189Updated 2 weeks ago
- ☆113Updated 2 years ago
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆247Updated 9 months ago
- Unofficial documentation for the great tool Param Miner☆178Updated 2 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆362Updated 4 years ago
- Simple tool to gather domains from crt.sh using the organization name☆100Updated 3 years ago
- Customisable and automated HTTP header injection☆245Updated 10 months ago
- Burpsuite plugin for Interact.sh☆221Updated 10 months ago
- Automated tool for domains & subdomains gathering☆186Updated last year
- ☆97Updated 3 years ago
- Finding XSS during recon☆258Updated 2 years ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆221Updated 3 years ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- Nuclei templates written by us.☆270Updated 3 years ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- ☆154Updated 2 years ago
- The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down her…☆192Updated 2 months ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆294Updated 7 months ago
- LFI Payloads List coolected from github repos☆78Updated 5 years ago
- Advanced Reconnaissance and Web Application Discovery☆81Updated 3 years ago
- ☆293Updated 2 years ago
- ☆50Updated 3 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆123Updated last month
- Automation of tokens/api keys testing.☆127Updated 2 years ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago