xsschecker tests endpoints for reflected XSS by injecting payloads and checking responses. It prints vulnerable if the payload is reflected, otherwise not vulnerable.
☆38Nov 3, 2025Updated 8 months ago
Alternatives and similar repositories for xsschecker
Users that are interested in xsschecker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A powerful URL parameter and request fuzzing tool that processes URLs or Burp Suite raw requests, replacing values with custom payloads w…☆21Apr 12, 2026Updated 3 months ago
- A high-performance command-line utility for processing and managing unique lines from input streams. Combining the functionality of sort,…☆15Jan 7, 2026Updated 6 months ago
- Simple XSS vulnerability checker tool very useful with xsschecker.☆28Nov 21, 2025Updated 8 months ago
- A powerful subdomain enumeration tool that aggregates data from multiple sources to create comprehensive lists of root subdomains.☆51May 2, 2026Updated 2 months ago
- OpenRedirector is a powerful automation tool for detecting Open Redirect vulnerabilities in web applications☆21Oct 30, 2025Updated 8 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Graphql introspection query analyzer.☆18Mar 28, 2023Updated 3 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆403Jun 17, 2020Updated 6 years ago
- Dig through the Wayback Machine and find sensitive or forgotten files exposed by web servers over time.☆31Mar 27, 2025Updated last year
- my nuclei templates #new☆10Jun 24, 2024Updated 2 years ago
- Looks for parameters in urls☆35Oct 14, 2024Updated last year
- Python script that generates Visual Basic Script (VBS) stagers for executing PowerShell scripts directly from specified URLs. It provides…☆15May 19, 2024Updated 2 years ago
- Analyze Content-Security-Policy header of a given URL.☆34Jan 10, 2024Updated 2 years ago
- Scanner for Log4j RCE CVE-2021-44228☆11Jul 6, 2022Updated 4 years ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆34Aug 21, 2024Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- List of Fresh DNS resolvers updates every 1 hour☆22Updated this week
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆264Mar 28, 2026Updated 3 months ago
- CVE-2024-32640 | Automated SQLi Exploitation PoC☆78May 16, 2024Updated 2 years ago
- Automatically look for paramater reflections in the HTTP response☆17Apr 30, 2025Updated last year
- Extract endpoints from source files.☆25Mar 28, 2023Updated 3 years ago
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆21Feb 26, 2021Updated 5 years ago
- ASNPepper - Recon in ASN - Extracting CIDR's - Fast and efficient scanning☆19Oct 27, 2024Updated last year
- Template Nuclei SSTI☆34Nov 18, 2025Updated 8 months ago
- ☆14Nov 8, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- This Repositories contains list of One Liners with Descriptions and Installation requirements☆511Jun 28, 2025Updated last year
- Gampung tools for find nuclei template from github☆12Sep 6, 2023Updated 2 years ago
- Automated enumeration for red teamers☆11Nov 22, 2022Updated 3 years ago
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆257Feb 10, 2025Updated last year
- Some oneliners with descriptions and Regex that I frequently use while doing bug hunting. More to come 🚀🚀☆25Dec 24, 2022Updated 3 years ago
- Hidden input parameters finder☆19Jul 10, 2023Updated 3 years ago
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆314Mar 31, 2024Updated 2 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆37Jul 27, 2025Updated 11 months ago
- Custom wordlist, updated regularly☆151Jun 26, 2026Updated 3 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A tool to check a bunch of URLs that contain reflecting params.☆602Aug 4, 2024Updated last year
- ☆178Nov 20, 2025Updated 8 months ago
- XSSRecon automates the process of testing URL parameters for reflection of a test payload rix4uni and further checks how special characte…☆54Jun 26, 2026Updated 3 weeks ago
- Subdosec is a fast, accurate subdomain takeover scanner with no false positives. It also offers a database of sites vulnerable to subdoma…☆64May 28, 2026Updated last month
- declutters url lists for crawling/pentesting☆1,583Feb 23, 2025Updated last year
- ☆31Jun 26, 2026Updated 3 weeks ago
- web cache deception detect☆43May 14, 2026Updated 2 months ago