vavkamil / xss2png
PNG IDAT chunks XSS payload generator
☆170Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for xss2png
- Python based scanner to find potential SSRF parameters☆283Updated 8 months ago
- Payloads for CRLF Injection☆217Updated last month
- You can read the writeup on this script here☆267Updated 4 years ago
- Turbo Intruder Scripts☆216Updated 4 years ago
- Common Web Managers Fuzz Wordlists☆172Updated 2 weeks ago
- Command line tool for testing CRLF injection on a list of domains.☆159Updated 7 months ago
- Various Payload wordlists☆235Updated 4 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆296Updated last year
- Bugbounty scope tool☆318Updated last month
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- SSRF testing tool☆241Updated last year
- Random utilities from my security projects that might be useful to others☆175Updated 3 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆175Updated 3 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆266Updated 3 years ago
- The Serverless Blind XSS App☆329Updated 7 months ago
- You can read the writeup on this script here☆191Updated 3 years ago
- Trying to make automated recon for bug bounties☆251Updated 3 years ago
- Automated blind-xss search for Burp Suite☆277Updated 5 years ago
- Default signature for Jaeles Scanner☆319Updated 2 years ago
- Bucky (An automatic S3 bucket discovery tool)☆192Updated 2 years ago
- ☆225Updated 5 months ago
- A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily rep…☆249Updated last year
- A list of useful payloads and Bypass for Web Application Security and Bug Bounty/CTF☆162Updated 4 years ago
- An hourly updated list of subdomains gathered from certificate transparency logs☆341Updated 3 years ago
- X-Forwarded-For [403 forbidden] enumeration☆88Updated 6 months ago
- Simple shell script for automated domain recognition with some tools☆300Updated 4 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆150Updated last year
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆354Updated last year
- A script that can resolve an input file of domains and scan them with masscan☆155Updated 4 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆201Updated last year