paralax / xss-labsLinks
small set of scripts to practice exploit XSS and CSRF vulnerabilities
☆64Updated 7 years ago
Alternatives and similar repositories for xss-labs
Users that are interested in xss-labs are comparing it to the libraries listed below
Sorting:
- Happy Hunting☆138Updated 6 years ago
- Web Fuzzing Discovery and Attack Pattern Database☆113Updated 7 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- XSS Scan☆102Updated 12 years ago
- ☆79Updated 11 years ago
- ☆184Updated 2 years ago
- NagaScan is a distributed passive scanner for Web application.☆90Updated 8 years ago
- Java serialization brute force attack tool.☆123Updated 8 years ago
- Weblogic Upload Vuln(Need username password)-CVE-2019-2618☆173Updated 6 years ago
- Easy Fast recon script☆30Updated 6 years ago
- sqliv modified by Ali0th☆14Updated 7 years ago
- YSOSERIAL Integration with burp suite☆166Updated 2 years ago
- Vulnerable web application☆80Updated 2 years ago
- A collection of open source and commercial tools that aid in red team operations.☆36Updated 7 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 5 years ago
- WAF Bypass Cheatsheet☆214Updated 8 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆140Updated 7 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆75Updated 4 years ago
- Lab for exploring SSRF vulnerabilities☆248Updated 4 years ago
- WSDL Parser extension for Burp☆263Updated 7 years ago
- A set of XSS vulnerable PHP scripts for testing☆39Updated 12 years ago
- Apache Tomcat Remote Code Execution on Windows☆188Updated 6 years ago
- PHP代码审计分段讲解☆26Updated 8 years ago
- JBoss JMXInvokerServlet JMXInvoker 0.3 - Remote Command Execution 漏洞批量检测☆67Updated 10 years ago
- A collection of penetration testing related sites☆289Updated 5 years ago
- CVE-2018-7600 - Drupal 7.x RCE☆72Updated 7 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆107Updated 6 years ago
- Struts2-045 Scanner☆75Updated 8 years ago
- Deemon is a tool to detect CSRF in web applications. Deemon has been used for the paper "Deemon: Detecting CSRF with Dynamic Analysis and…☆75Updated 7 years ago
- Cheetah GUI☆128Updated 7 years ago