koto / mosquito
XSS exploitation tool - access victims through HTTP proxy
☆158Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for mosquito
- A very simple bridge for performing Flash HTTP requests with JavaScript☆78Updated 9 years ago
- A small python script to check for Cross-Site Tracing (XST)☆136Updated 8 years ago
- ☆77Updated 8 years ago
- Static DOM XSS Scanner is a Static Analysis tool written in python that will iterate through all the JavaScript and HTML files under the …☆118Updated 9 years ago
- A Burp Plugin for Detecting Weaknesses in Content Security Policies☆163Updated last year
- A regex based source code scanner.☆128Updated 7 years ago
- Reflective/DOM XSS scanner built on casperJS☆81Updated 10 years ago
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆156Updated 5 years ago
- XSS Tunnel is a standard HTTP proxy which sits on an attacker’s system. XSS Shell is a powerful XSS backdoor, in XSS Shell one can inter…☆87Updated 9 years ago
- Burp Suite JS Beautifier☆94Updated 10 years ago
- LNHG - Mass Web Fingerprinter☆61Updated 8 years ago
- Collection of tools for web recon and enumeration.☆56Updated 9 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 7 years ago
- Image size issues plugin for Burp Suite☆93Updated 6 years ago
- Everything you need to exploit overly permissive crossdomain.xml files☆87Updated 10 years ago
- ☆52Updated 8 years ago
- ☆179Updated 11 years ago
- Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created d…☆67Updated 6 months ago
- An automated XSS payload generator written in python.☆316Updated 8 years ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromgif()☆121Updated 9 years ago
- A JBoss script for obtaining remote shell access☆170Updated 4 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- [depreciated] Terminal dashboard for bug bounty hunters that use HackerOne and Bugcrowd☆189Updated 8 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 5 years ago
- DNS Sub-domain brute forcer, in Python + gevent☆50Updated 7 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆135Updated 3 years ago
- ImaegMagick Code Execution (CVE-2016-3714)☆68Updated 8 years ago
- 🔥🔥🔥 Out of the Browser into the Fire - Cross platform XSS worm framework 🔥🔥🔥☆133Updated 8 years ago