pgaijin66 / XSS-PayloadsLinks
This repository holds all the list of advanced XSS payloads that can be used in penetration testing. These payloads can be loaded into XSS scanners as well.
☆1,088Updated last year
Alternatives and similar repositories for XSS-Payloads
Users that are interested in XSS-Payloads are comparing it to the libraries listed below
Sorting:
- A script to set up a quick Ubuntu 17.10 x64 box with tools I use.☆1,227Updated last year
 - List of XSS Vectors/Payloads☆1,335Updated 10 months ago
 - ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,167Updated last week
 - Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,756Updated last year
 - 🔱 Powerfull XSS Scanning and Parameter analysis tool&gem☆1,320Updated 3 years ago
 - Hacker101 CTF Writeup☆523Updated 3 years ago
 - Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,879Updated 3 years ago
 - This script is intended to automate your reconnaissance process in an organized fashion☆1,999Updated 4 years ago
 - SSRF (Server Side Request Forgery) testing resources☆2,440Updated last year
 - The XSS Hunter service - a portable version of XSSHunter.com☆1,534Updated 2 years ago
 - 🎯 XML External Entity (XXE) Injection Payload List☆1,255Updated last year
 - ☆2,289Updated last year
 - This is a collection of writeups, cheatsheets, videos, books related to SSRF in one single location☆1,337Updated 4 years ago
 - Automatic SSRF fuzzer and exploitation tool☆3,378Updated last month
 - Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications…☆1,373Updated last year
 - XSS payloads designed to turn alert(1) into P1☆1,379Updated 2 years ago
 - BBT - Bug Bounty Tools (examples💡)☆1,851Updated last year
 - The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.☆1,244Updated 8 months ago
 - A container repository for my public web hacks!☆2,013Updated 3 years ago
 - Quick SQLMap Tamper Suggester☆1,387Updated 3 years ago
 - A python script that finds endpoints in JavaScript files☆4,154Updated last year
 - Browser's XSS Filter Bypass Cheat Sheet☆1,141Updated 8 years ago
 - Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,180Updated 4 years ago
 - Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,025Updated last year
 - This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆740Updated 2 years ago
 - ☆829Updated last year
 - Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,684Updated 11 months ago
 - A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,861Updated 4 years ago
 - Open Redirect Payloads☆638Updated last year
 - A curated list of amazingly awesome Burp Extensions☆3,301Updated 8 months ago