paralax / xss-labsLinks
small set of scripts to practice exploit XSS and CSRF vulnerabilities
☆62Updated 7 years ago
Alternatives and similar repositories for xss-labs
Users that are interested in xss-labs are comparing it to the libraries listed below
Sorting:
- Happy Hunting☆136Updated 6 years ago
- ☆79Updated 10 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Easy Fast recon script☆30Updated 5 years ago
- An Exploit framework for Web Vulnerabilities written in Python☆170Updated 4 years ago
- Vulnerable web application☆79Updated 2 years ago
- XSS Scan☆105Updated 11 years ago
- Web Fuzzing Discovery and Attack Pattern Database☆114Updated 7 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆112Updated 2 years ago
- Apache Tomcat Remote Code Execution on Windows☆187Updated 5 years ago
- Lab for exploring SSRF vulnerabilities☆247Updated 4 years ago
- A set of XSS vulnerable PHP scripts for testing☆39Updated 12 years ago
- A simple PoC for WordPress RCE (author priviledge), refer to CVE-2019-8942 and CVE-2019-8943.☆74Updated 6 years ago
- WAF Bypass Cheatsheet☆214Updated 7 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆75Updated 3 years ago
- ☆56Updated 6 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆110Updated 6 years ago
- NagaScan is a distributed passive scanner for Web application.☆90Updated 8 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- Apache Tomcat Remote Code Execution on Windows - CGI-BIN☆78Updated 6 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆139Updated 6 years ago
- SqlMap_BurpSuite☆50Updated 5 years ago
- Decode the cookies set by balancer F5, and disclousure all pool ip☆77Updated 5 years ago
- A tool finding sub-domains for penetesters☆59Updated 4 years ago
- JBoss JMXInvokerServlet JMXInvoker 0.3 - Remote Command Execution 漏洞批量检测☆67Updated 9 years ago
- ☆184Updated 2 years ago
- 网上收集的一些利用工具☆18Updated 2 years ago
- sqliv modified by Ali0th☆13Updated 7 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago