PNG IDAT chunks XSS payload generator
☆216Oct 11, 2022Updated 3 years ago
Alternatives and similar repositories for xss2png
Users that are interested in xss2png are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- X-Forwarded-For [403 forbidden] enumeration☆99May 3, 2024Updated 2 years ago
- Get all possible href | src | url from target url or domain☆40Aug 5, 2020Updated 6 years ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆277Feb 11, 2021Updated 5 years ago
- ☆202Jun 6, 2019Updated 7 years ago
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆124May 12, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- tool that generates bypasses for open redirects☆49Apr 18, 2022Updated 4 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆685Jan 28, 2024Updated 2 years ago
- Boxer: A fast directory bruteforce tool written in Python with concurrency.☆14Feb 26, 2021Updated 5 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆61Aug 30, 2019Updated 6 years ago
- ☆39Jul 3, 2020Updated 6 years ago
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆345Aug 23, 2019Updated 6 years ago
- autoreport generates bug report templates for security researchers☆21Aug 4, 2023Updated 3 years ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆26May 26, 2020Updated 6 years ago
- DOM XSS scanner for Single Page Applications☆420Nov 15, 2025Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching☆12Jun 4, 2022Updated 4 years ago
- ShoLister is a tool that collects all available subdomains for specific hostname or organization from Shodan. The tool is designed to be …☆13May 10, 2022Updated 4 years ago
- AgentTesla botnet C&C RCE exploit.☆16Aug 13, 2019Updated 6 years ago
- ☆16Oct 24, 2018Updated 7 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆64Apr 17, 2020Updated 6 years ago
- Endpoint monitor tool☆21Sep 16, 2020Updated 5 years ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆387May 19, 2023Updated 3 years ago
- A fast DOM based XSS vulnerability scanner with simplicity.☆864Sep 30, 2022Updated 3 years ago
- Automated blind-xss search for Burp Suite☆283Oct 10, 2019Updated 6 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Command line tool for testing CRLF injection on a list of domains.☆164Apr 14, 2024Updated 2 years ago
- DNS Rebinding Exploitation Framework☆494Apr 27, 2021Updated 5 years ago
- Match and Replace script used to automatically generate JSON option file to BurpSuite☆213May 13, 2019Updated 7 years ago
- A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomain…☆906May 3, 2023Updated 3 years ago
- Automatic tool for DNS rebinding-based SSRF attacks☆307Aug 21, 2020Updated 5 years ago
- bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.☆577Mar 4, 2023Updated 3 years ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,091Jan 2, 2024Updated 2 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆134Feb 19, 2021Updated 5 years ago
- Multithreaded Host Header Redirection Scanner☆14Nov 10, 2020Updated 5 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Broken Link Hijacking Burp Extension☆59Sep 13, 2019Updated 6 years ago
- declutters url lists for crawling/pentesting☆1,583Feb 23, 2025Updated last year
- Collection of content discovery wordlists in one wordlist.☆37Jan 18, 2022Updated 4 years ago
- Collect XSS vulnerable parameters from entire domain.☆155Jul 29, 2022Updated 4 years ago
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,325Jul 8, 2026Updated last month
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Sep 12, 2020Updated 5 years ago
- ☆17Sep 15, 2023Updated 2 years ago