rohit-sonii / Escalating-Self-XSS-to-Account-Takeover
This repository contains complete source code for setting up the environment and exploit code for the vulnerability.
☆18Updated 2 years ago
Alternatives and similar repositories for Escalating-Self-XSS-to-Account-Takeover:
Users that are interested in Escalating-Self-XSS-to-Account-Takeover are comparing it to the libraries listed below
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- Xss payload for bypassing waf☆15Updated 4 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- ☆21Updated 4 years ago
- ☆10Updated 2 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- ☆20Updated last year
- Funny Fuzzing Wordlist☆12Updated 2 years ago
- A simple tool that aims to efficiently and quickly parse the outputs of web scraping tools like gau☆13Updated 3 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆56Updated 3 years ago
- Cool HackerOne Reports☆20Updated 2 years ago
- ☆12Updated 3 years ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆21Updated 4 years ago
- ☆18Updated 2 years ago
- My Custom made Nuceli-Templates☆23Updated last year
- A solid recon tool I use personally.☆30Updated last year
- Python Script to Print the name of the companies that are acquired by a Target Company and the Time of Acquisition.☆24Updated 3 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 4 years ago
- All The Notes And Tips I FOund In Github And Twitter I Put Them Here☆34Updated 4 years ago
- Ultimate Package Of 50 Bug Bounty Hunting Tools☆42Updated 2 years ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆27Updated 4 years ago
- XSS Finder Via SSTI☆54Updated last year
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- ☆21Updated 3 years ago
- Converts a hostname (or URI) to IP address using your local resolver☆24Updated last year
- Python script implementing the favicon hash trick to find subdomains.☆30Updated 2 years ago