Xss Payload List🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
Stars: ✭ 2,617 (+7377.14%)
Cheatsheet GodPenetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
Stars: ✭ 3,521 (+9960%)
APSoft-Web-Scanner-v2Powerful dork searcher and vulnerability scanner for windows platform
Stars: ✭ 96 (+174.29%)
safe-svgSimple and lightweight library that helps to validate SVG files in security manners.
Stars: ✭ 25 (-28.57%)
SuperXSSMake XSS Great Again
Stars: ✭ 57 (+62.86%)
Cerberus一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自动切换代理Ip进行扫描,Waf信息收集(国内外100+款waf信息)包括安全狗,云锁,阿里云,云盾,腾讯云等,提供部分已知waf bypass 方案,中间件漏洞检测(Thinkphp,weblogic等 CVE-2018-5955,CVE-2018-12613,CVE-2018-11759等),支持SQL注入, XSS, 命令执行,文件包含, ssrf 漏洞扫描, 支持自定义漏洞邮箱推送功能
Stars: ✭ 389 (+1011.43%)
XsstrikeMost advanced XSS scanner.
Stars: ✭ 9,822 (+27962.86%)
BrutusBotnet targeting Windows machines written entirely in Python & open source security project.
Stars: ✭ 37 (+5.71%)
AwesomexssAwesome XSS stuff
Stars: ✭ 3,664 (+10368.57%)
xss-chefA web application for generating custom XSS payloads
Stars: ✭ 70 (+100%)
Xssor2XSS'OR - Hack with JavaScript.
Stars: ✭ 1,969 (+5525.71%)
toolsTools used for Penetration testing / Red Teaming
Stars: ✭ 63 (+80%)
fluxionWiFi Cracking Tool (Using Evil Twin Attack) With Some Modification. (Only For Legal Purposes)
Stars: ✭ 115 (+228.57%)
symfony-lts-docker-starter🐳 Dockerized your Symfony project using a complete stack (Makefile, Docker-Compose, CI, bunch of quality insurance tools, tests ...) with a base according to up-to-date components and best practices.
Stars: ✭ 39 (+11.43%)
osint-notesGood info about DeepWeb and OSINT
Stars: ✭ 24 (-31.43%)
vm-automationVirtualBox automation using Python
Stars: ✭ 1 (-97.14%)
wifite2-requirementsThis bash script will install wifite2 and its other tools Pyrit, bully, wireshark, hcxtools, hcxdumptool, macchanger
Stars: ✭ 20 (-42.86%)
sushiThe SUSHI test case generator
Stars: ✭ 19 (-45.71%)
Misterchef🍳 The most delicious pentesting tool
Stars: ✭ 35 (+0%)
CDSpaceA HTTP interface test tool. CDSpace can send HTTP request and mock HTTP server.
Stars: ✭ 30 (-14.29%)
analog🔎 Flexible web-based real-time log viewer
Stars: ✭ 15 (-57.14%)
hide-meMac and hostname random changer
Stars: ✭ 33 (-5.71%)
ttt-extChrome extension to aid in finding DOMXSS by simple taint analysis of string values.
Stars: ✭ 81 (+131.43%)
combinateCombinatorics generator for JavaScript and Typescript.
Stars: ✭ 20 (-42.86%)
ObsidianSailboatNmap and NSE command line wrapper in the style of Metasploit
Stars: ✭ 36 (+2.86%)
three-musketeersA simple module to introspect, debug and test any THREE.js application.
Stars: ✭ 30 (-14.29%)
VirusX5The Most Powerful Fake Page Redirecting tool...
Stars: ✭ 15 (-57.14%)
qiniutestQiniu httptest tool: qiniutest
Stars: ✭ 36 (+2.86%)
rtfRegression testing framework
Stars: ✭ 35 (+0%)
ShotScreenshot testing library for Android
Stars: ✭ 951 (+2617.14%)
NachtWalReinforced Mitigation Security Filter
Stars: ✭ 17 (-51.43%)
diwaA Deliberately Insecure Web Application
Stars: ✭ 32 (-8.57%)
IO-TESTERA functional test framework
Stars: ✭ 32 (-8.57%)
retoxFor running a local continuous testing environment with tox
Stars: ✭ 77 (+120%)
anubisCaptive wifi hotspot bypass tool for Linux
Stars: ✭ 46 (+31.43%)
bentoBento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.
Stars: ✭ 74 (+111.43%)
JARJust Another Repo
Stars: ✭ 53 (+51.43%)
security-wrapper对springSecurity进行二次开发,提供OAuth2授权(支持跨域名,多应用授权)、JWT、SSO、文件上传、权限系统无障碍接入、接口防刷、XSS、CSRF、SQL注入、三方登录(绑定,解绑)、加密通信等一系列安全场景的解决方案
Stars: ✭ 21 (-40%)
nero-phishing-serverAn full HTTP server for Phishing. Downloads recursively the entire webpage.
Stars: ✭ 108 (+208.57%)
RecorderA browser extension that generates Cypress, Playwright and Puppeteer test scripts from your interactions 🖱 ⌨
Stars: ✭ 277 (+691.43%)
dubbo-mockdubbo mock web server
Stars: ✭ 62 (+77.14%)
pytest-watcherRerun pytest when your code changes
Stars: ✭ 60 (+71.43%)
xray-action... a GitHub action to import test results into "Xray" - A complete Test Management tool for Jira.
Stars: ✭ 16 (-54.29%)
SCANNER-INURLBRAdvanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation junction for each target / url found.
Stars: ✭ 90 (+157.14%)
rfswarmRobot Framework Swarm
Stars: ✭ 68 (+94.29%)
probablyTo probe what we can't prove, so the unprovable may become probable
Stars: ✭ 58 (+65.71%)
Telegraf-TestTelegraf Test - Simple Test ToolKit of Telegram Bots
Stars: ✭ 22 (-37.14%)
awesome-pentest-toolsList of Security Archives Tools and software, generally for facilitate security & penetration research. Opening it up to everyone will facilitate a knowledge transfer. Hopefully the initial set will grow and expand.
Stars: ✭ 34 (-2.86%)
BaseUrlManager⛵ BaseUrlManager的设计初衷主要用于开发时,有多个环境需要打包APK的场景,通过BaseUrlManager提供的BaseUrl动态设置入口,只需打一次包,即可轻松随意的切换不同的开发环境或测试环境。在打生产环境包时,关闭BaseUrl动态设置入口即可。
Stars: ✭ 43 (+22.86%)
extrapolategeneralize counter-examples of property-based testing
Stars: ✭ 13 (-62.86%)
TimeBombStops app usage after a period of time has passed starting from app build date.
Stars: ✭ 22 (-37.14%)
api-test🌿 A simple bash script to test JSON API from terminal in a structured and organized way.
Stars: ✭ 53 (+51.43%)