paralax / xss-labsLinks
small set of scripts to practice exploit XSS and CSRF vulnerabilities
☆64Updated 8 years ago
Alternatives and similar repositories for xss-labs
Users that are interested in xss-labs are comparing it to the libraries listed below
Sorting:
- Happy Hunting☆138Updated 6 years ago
- Web Fuzzing Discovery and Attack Pattern Database☆114Updated 7 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- Lab for exploring SSRF vulnerabilities☆247Updated 4 years ago
- ☆79Updated 11 years ago
- Java serialization brute force attack tool.☆123Updated 8 years ago
- Easy Fast recon script☆30Updated 6 years ago
- Vulnerable web application☆81Updated 3 years ago
- XSS Scan☆102Updated 12 years ago
- YSOSERIAL Integration with burp suite☆166Updated 3 years ago
- An Exploit framework for Web Vulnerabilities written in Python☆169Updated 5 years ago
- WSDL Parser extension for Burp☆265Updated 7 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆74Updated 4 years ago
- WAF Bypass Cheatsheet☆214Updated 8 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆107Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 5 years ago
- ☆56Updated 6 years ago
- NagaScan is a distributed passive scanner for Web application.☆90Updated 8 years ago
- Weblogic Upload Vuln(Need username password)-CVE-2019-2618☆174Updated 6 years ago
- A collection of penetration testing related sites☆289Updated 5 years ago
- A set of XSS vulnerable PHP scripts for testing☆39Updated 12 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆140Updated 7 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 3 years ago
- Bypassing WAF by abusing SSL/TLS Ciphers☆319Updated 4 years ago
- CVE-2018-7600 - Drupal 7.x RCE☆72Updated 7 years ago
- ☆184Updated 2 years ago
- Apache Tomcat Remote Code Execution on Windows☆189Updated 6 years ago
- A tool finding sub-domains for penetesters☆59Updated 5 years ago
- A list of useful payloads for Web Application Security and Pentest/CTF☆308Updated last year
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆171Updated 6 years ago