Skip to content

Entry

XSStrike

Appears in 5 awesome lists

XSStrike is a program which can fuzz and bruteforce parameters for XSS. It can also detect and bypass WAFs by @s0md3v.

Open github.coms0md3v/xsstrike

Found in these lists

Awesome Bug Bounty Tools

Section: XSS Injection · Most advanced XSS scanner.

FreshScore 89

SOCIAL MEDIA

Section: Web Security Testing · Advanced XSS detection and exploitation suite.

FreshScore 86

Awesome Termux Hacking

Section: General · Most advanced XSS scanner..

StaleScore 47

Awesome Web Security

Section: Offensive · XSStrike is a program which can fuzz and bruteforce parameters for XSS. It can also detect and bypass WAFs by @s0md3v.

FreshScore 87

awesome-python

Section: Other · Most advanced XSS scanner.

FreshScore 81

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more..

In 14 listsDetails

mitmproxy

A Python tool used for intercepting, viewing and modifying network traffic. Invaluable in troubleshooting certain problems. (Source Code) MIT Python

In 10 listsDetails

sqlmap

Tamper scripts in SQLMap obfuscate payloads which might evade some WAFs.

In 10 listsDetails

mitmproxy

An interactive HTTPS proxy that allows inspection, modification, and debugging of network traffic, useful for video streaming analysis.

In 10 listsDetails

Volatility

Python based memory extraction and analysis framework.

In 8 listsDetails

gobuster

Lean multipurpose brute force search/fuzzing tool for Web (and DNS) reconnaissance.

In 7 listsDetails

Sublist3r

Sublist3r is a multi-threaded sub-domain enumeration tool for penetration testers by @aboul3la.

In 7 listsDetails

commix

Automated All-in-One OS command injection and exploitation tool by @commixproject.

In 7 listsDetails