paralax / xss-labsLinks
small set of scripts to practice exploit XSS and CSRF vulnerabilities
☆62Updated 7 years ago
Alternatives and similar repositories for xss-labs
Users that are interested in xss-labs are comparing it to the libraries listed below
Sorting:
- Happy Hunting☆138Updated 6 years ago
- Web Fuzzing Discovery and Attack Pattern Database☆114Updated 7 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- Vulnerable web application☆79Updated 2 years ago
- Java serialization brute force attack tool.☆123Updated 8 years ago
- ☆56Updated 6 years ago
- Lab for exploring SSRF vulnerabilities☆248Updated 4 years ago
- Easy Fast recon script☆30Updated 6 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆75Updated 4 years ago
- ☆79Updated 11 years ago
- ☆184Updated 2 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆108Updated 6 years ago
- XSS Scan☆104Updated 12 years ago
- Apache Tomcat Remote Code Execution on Windows☆187Updated 5 years ago
- Weblogic Upload Vuln(Need username password)-CVE-2019-2618☆173Updated 6 years ago
- WAF Bypass Cheatsheet☆214Updated 8 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 3 years ago
- An Exploit framework for Web Vulnerabilities written in Python☆169Updated 5 years ago
- A list of useful payloads for Web Application Security and Pentest/CTF☆310Updated last year
- ☆126Updated 4 years ago
- YSOSERIAL Integration with burp suite☆166Updated 2 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆139Updated 7 years ago
- A simple PoC for WordPress RCE (author priviledge), refer to CVE-2019-8942 and CVE-2019-8943.☆74Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 5 years ago
- A set of XSS vulnerable PHP scripts for testing☆39Updated 12 years ago
- Cross Site Scripting Payloads -- Variations☆72Updated 6 months ago
- NagaScan is a distributed passive scanner for Web application.☆90Updated 8 years ago
- 本脚本旨在生成各类畸形URL链接,进行探测使用的payload,尝试绕过服务端ssrf限制。☆28Updated 6 years ago
- Bypassing WAF by abusing SSL/TLS Ciphers☆316Updated 4 years ago
- SqlMap_BurpSuite☆50Updated 6 years ago