r0oth3x49 / XpathLinks
A python based cross-platform tool that automates the process of detecting and exploiting error-based injection security flaws.
☆140Updated 2 years ago
Alternatives and similar repositories for Xpath
Users that are interested in Xpath are comparing it to the libraries listed below
Sorting:
- Bypassing-Web-Application-Firewalls-And-XSS-Filters A series of python scripts for generating weird character combinations and lists for…☆147Updated 4 years ago
- Toolset for detecting reflected xss in websites☆112Updated 6 years ago
- Wordlist for content(directory) bruteforce discovering with Burp or dirsearch☆214Updated 8 months ago
- Local File Inclusion Exploitation Tool (mirror)☆127Updated 8 years ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆256Updated last month
- Bypassing WAF by abusing SSL/TLS Ciphers☆317Updated 3 years ago
- This python script is developed to show, how many vulnerables websites, which are laying around on the web. 1) Scan net for urls prone to…☆54Updated 8 years ago
- Web Crawler, Scanner, and Analyzer Framework (Shell-Script based)☆100Updated 6 years ago
- subdomain bruteforce list☆101Updated 8 months ago
- Burp Suite extension to discover assets from HTTP response.☆227Updated 5 months ago
- CVE-2017-9506 - SSRF☆188Updated 3 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- A simple XSS finding tool☆109Updated 6 years ago
- Resolve and quickly portscan a list of (sub)domains.☆86Updated 8 years ago
- Server-side request forgery detector☆164Updated 8 years ago
- Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).☆389Updated 6 years ago
- Analysing parameters with all payloads' bypass methods, aiming at benchmarking security solutions like WAF.☆222Updated last year
- A series of python scripts for generating weird character combinations for bypassing web application firewalls (WAF) and XSS blockers☆279Updated 6 years ago
- Command line tool for testing CRLF injection on a list of domains.☆163Updated last year
- BugBounty Tool☆40Updated 5 years ago
- A CRLF ( Carriage Return Line Feed ) Injection attack occurs when a user manages to submit a CRLF into an application. This is most commo…☆47Updated 3 years ago
- Automated blind-xss search for Burp Suite☆284Updated 5 years ago
- Exploits by 1N3 @CrowdShield @xer0dayz @XeroSecurity☆203Updated 3 years ago
- Powerful Visual Subdomain Enumeration at the Click of a Mouse☆139Updated 6 years ago
- A blind SQL injection module that uses bitshfting to calculate characters.☆123Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆139Updated 4 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆274Updated 4 years ago
- Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.☆318Updated 3 years ago
- Payloads for CRLF Injection☆225Updated 8 months ago
- A script to extract domain names from Content Security Policy(CSP) headers☆112Updated 6 years ago