vavkamil / xss2png
PNG IDAT chunks XSS payload generator
☆187Updated 2 years ago
Alternatives and similar repositories for xss2png:
Users that are interested in xss2png are comparing it to the libraries listed below
- Turbo Intruder Scripts☆222Updated 4 years ago
- Python tool to find potential SSRF parameters☆314Updated last month
- Bucky (An automatic S3 bucket discovery tool)☆194Updated 3 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆176Updated 4 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Updated 2 years ago
- The Serverless Blind XSS App☆340Updated last month
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆274Updated 4 years ago
- HTTP file upload scanner for Burp Proxy☆401Updated last year
- Various Payload wordlists☆235Updated 4 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆205Updated last year
- Common Web Managers Fuzz Wordlists☆173Updated last week
- You can read the writeup on this script here☆270Updated 4 years ago
- SSRF testing tool☆244Updated 2 years ago
- You can read the writeup on this script here☆193Updated 3 years ago
- CRLF and open redirect fuzzer☆112Updated 3 years ago
- A blind XSS detection and XSS data capture framework☆169Updated last month
- Payloads for CRLF Injection☆224Updated 5 months ago
- Unofficial documentation for the great tool Param Miner☆178Updated 2 years ago
- Trying to make automated recon for bug bounties☆253Updated 3 years ago
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- Random utilities from my security projects that might be useful to others☆179Updated last month
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆295Updated 5 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆449Updated last year
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆503Updated 2 years ago
- ☆287Updated 2 years ago
- Bugbounty scope tool☆325Updated 2 weeks ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- Collection of XSS Payloads for fun and profit☆174Updated 4 years ago
- Burpsuite plugin for Interact.sh☆216Updated 8 months ago
- A tool which scrapes public github repositories for common naming conventions in variables, folders and files☆286Updated 9 months ago