swoops / eval_villainLinks
A Firefox Web Extension to improve the discovery of DOM XSS.
☆273Updated 8 months ago
Alternatives and similar repositories for eval_villain
Users that are interested in eval_villain are comparing it to the libraries listed below
Sorting:
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆314Updated last week
- Burp extension to create target specific and tailored wordlist from burp history.☆243Updated 3 years ago
- Prototype pollution scanner using headless chrome☆219Updated 2 years ago
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆248Updated 11 months ago
- IIS shortname scanner written in Go☆336Updated 2 years ago
- Customisable and automated HTTP header injection☆253Updated last year
- Unofficial documentation for the great tool Param Miner☆179Updated 2 years ago
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆231Updated 3 years ago
- ☆156Updated 2 years ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆193Updated 11 months ago
- xss development frameworks, with the goal of making payload writing easier.☆143Updated 11 months ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆292Updated 2 years ago
- Useful "Match and Replace" burpsuite rules☆348Updated last year
- A tool to inspect and attack version 1 GUIDs☆227Updated 2 years ago
- Burpsuite plugin for Interact.sh☆223Updated last year
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆519Updated 4 months ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆228Updated 3 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆370Updated 5 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆296Updated 9 months ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆210Updated last year
- De-clutter a list of URLs☆343Updated 7 months ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆271Updated last year
- List of reporting templates I have used since I started doing BBH.☆307Updated 9 months ago
- This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests a…☆337Updated 4 years ago
- List of fresh DNS resolvers updated daily☆108Updated 2 years ago
- Secret and/or credential patterns used for gf.☆241Updated 2 years ago
- A blind XSS detection and XSS data capture framework☆171Updated last week
- EvenBetter is a frontend Caido plugin that makes the Caido experience even better 😎☆150Updated last week
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆274Updated last month
- Get related domains / subdomains by looking at Google Analytics IDs☆246Updated 3 years ago