ihebski / XSS-Payloads
Collection of XSS Payloads for fun and profit
☆175Updated 4 years ago
Alternatives and similar repositories for XSS-Payloads:
Users that are interested in XSS-Payloads are comparing it to the libraries listed below
- LFI Payloads List coolected from github repos☆77Updated 4 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆352Updated 4 years ago
- ☆152Updated 2 years ago
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...☆146Updated 4 years ago
- Js File Scanner☆167Updated 3 years ago
- ☆287Updated 2 years ago
- List of reporting templates I have used since I started doing BBH.☆289Updated 6 months ago
- Automated tool for domains & subdomains gathering☆184Updated last year
- Python tool to find potential SSRF parameters☆315Updated last month
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆243Updated 7 months ago
- Nuclei templates written by us.☆267Updated 3 years ago
- The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down her…☆191Updated 3 weeks ago
- Burp extension to create target specific and tailored wordlist from burp history.☆237Updated 3 years ago
- Random utilities from my security projects that might be useful to others☆179Updated 2 months ago
- Finding XSS during recon☆255Updated 2 years ago
- ☆156Updated last year
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆255Updated 2 weeks ago
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- ☆237Updated 3 years ago
- Advanced Reconnaissance and Web Application Discovery☆79Updated 3 years ago
- Automating XSS using Bash☆353Updated last year
- 🎯 Directory Payload List☆159Updated 8 months ago
- Burpsuite plugin for Interact.sh☆217Updated 9 months ago
- A collection of notes, checklists, writeups on bug bounty hunting and web application security.☆146Updated 2 years ago
- ☆97Updated 2 years ago
- Enumerate Subdomains Through Google Dorks☆123Updated last week
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆272Updated 8 months ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆496Updated 3 weeks ago
- A reverse whois tool based on Whoxy API.☆164Updated 11 months ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago