secdec / xssmap
Intelligent XSS detection tool that uses human techniques for looking for reflected cross-site scripting (XSS) vulnerabilities
☆145Updated last year
Related projects ⓘ
Alternatives and complementary repositories for xssmap
- a .js scanner, built in php. designed to scrape urls and other info☆210Updated 7 years ago
- CRLF and open redirect fuzzer☆109Updated 3 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆266Updated 3 years ago
- Command line tool for testing CRLF injection on a list of domains.☆159Updated 7 months ago
- Reconnaissance tool which scans javascript files for subdomains and then iterates over all javascript files hosted on subsequent subdomai…☆221Updated 4 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆201Updated last year
- Payloads for CRLF Injection☆216Updated last month
- A script that can resolve an input file of domains and scan them with masscan☆155Updated 4 years ago
- The tools I have programmed to help me with bugbounty's☆115Updated 5 years ago
- My Recon Automation☆194Updated 3 years ago
- You can read the writeup on this script here☆267Updated 4 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SS…☆166Updated 4 years ago
- A tool to find sensitive keys and passwords in Travis logs☆142Updated 3 years ago
- Wordlist for content(directory) bruteforce discovering with Burp or dirsearch☆212Updated last month
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆296Updated last year
- Python based scanner to find potential SSRF parameters☆283Updated 7 months ago
- Various Payload wordlists☆235Updated 4 years ago
- ☆235Updated 6 years ago
- Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures t…☆205Updated 4 years ago
- Trying to make automated recon for bug bounties☆250Updated 3 years ago
- Create your Custom Wordlist For Fuzzing☆189Updated last month
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆169Updated 3 years ago
- ☆185Updated 5 years ago
- SSRF testing tool☆241Updated last year
- The project contains multiple shell scripts for automating the tasks during recon.☆173Updated last year
- Python library and CLI for the Bug Bounty Recon API☆220Updated 3 years ago