rastating / xss-chef
A web application for generating custom XSS payloads
☆77Updated 5 years ago
Alternatives and similar repositories for xss-chef:
Users that are interested in xss-chef are comparing it to the libraries listed below
- BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolu…☆60Updated 7 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- Actarus is a custom tool for bug bounty☆76Updated 5 years ago
- A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.☆98Updated 6 years ago
- Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆92Updated 6 years ago
- An interactive OOB XXE data exfiltration tool☆90Updated 7 years ago
- Automatic remote/local file inclusion vulnerability analysis and exploit tool☆60Updated 5 years ago
- Automatically forward HTTP GET & POST requests to SQLMap's API to test for SQLi and XSS☆83Updated 2 years ago
- XSS explot kit/Blind XSS framework/BurpSuite extension☆49Updated 4 years ago
- Burp Suite Importer - Connect to multiple web servers while populating the sitemap.☆48Updated 4 years ago
- Advanced XPath Injection Tool☆34Updated 10 years ago
- Simple Server Side Request Forgery services enumeration tool.☆55Updated 6 years ago
- Automating Jenkins Hacking using Shodan API☆94Updated 7 years ago
- WhiteBox CMS analysis☆69Updated last year
- A python script that filters, checks the validity, generates clickable link(s) of subdomain(s), and reports their status☆89Updated 4 years ago
- Everything you need to exploit overly permissive crossdomain.xml files☆87Updated 10 years ago
- A dockerized, improved version of the Impacket smbserver.py☆39Updated 5 years ago
- Provide a shell-like interface for exploiting Remote File Inclusion vulnerabilities.☆46Updated 8 years ago
- Pillage a git repo found in an accessible web root☆61Updated 13 years ago
- A CRLF ( Carriage Return Line Feed ) Injection attack occurs when a user manages to submit a CRLF into an application. This is most commo…☆46Updated 3 years ago
- Samba, NFS shares spider and grepper☆71Updated 6 years ago
- ☆21Updated 8 years ago
- Burp Suite plugin that allow to deserialize Java objects and convert them in an XML format. Unpack also gzip responses. Based on BurpJDSe…☆20Updated last year
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- ☆59Updated 4 years ago
- Convert your masscan/subdomain-scan results (80,443,8080) into screenshots for better analysis☆36Updated 6 years ago
- Powerful Visual Subdomain Enumeration at the Click of a Mouse☆139Updated 5 years ago
- XSS Hunter Burp Plugin☆149Updated 6 years ago
- GitBackdorizer (bad name, I know!) Is a proof of concept from Ulisses Castro's talk - 50 ton of backdoors (https://www.slideshare.net/uli…☆49Updated 6 years ago
- Burp Commander written in Go☆58Updated 6 years ago