GitHub topics: xss-exploitation
xpl0ited1/postMessageFinderBurpSuite
This extension allows you to detect implementations of postMessage function, addEventListener("message",function) event handler and onMessage function.
Language: Python - Size: 174 KB - Last synced at: about 1 year ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

miazga-git/OTWA-Offensive-Web-Application-Testing
Report from Juice Shop Security Testing and notes from OTWA training
Language: HTML - Size: 5.47 MB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 4 - Forks: 0

R3DHULK/xss-vulnerability-finder-in-ruby
XSS Vulnerability Tool In Ruby
Language: Ruby - Size: 43.9 KB - Last synced at: 15 days ago - Pushed at: over 2 years ago - Stars: 4 - Forks: 0

fagun18/web-vulnerability
Web Vulnerability Scanning and Exploitation Script
Language: Python - Size: 11.7 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

natekali/HydraXSS
HydraXSS is a brand new XSS scanner. It crawl all the page on the target website to find some user inputs and inject payloads automatically
Language: Python - Size: 7.81 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

DextroSec/letsupload-XSS
A simple xss, simmlar to the anonfiles xss but its letsupload.cc XSS ( for educational purposes only)
Language: JavaScript - Size: 20.5 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

NextSecurity/XSSBypass
XSS Bypass techniquies
Size: 5.86 KB - Last synced at: over 1 year ago - Pushed at: almost 7 years ago - Stars: 4 - Forks: 4

ananya-singh-baghel/SITE-BRAKE
Cross Site Scripting using CyberSecurity principles
Language: CSS - Size: 13.7 KB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

natekali/DVI-XSS
Detector of Vulnerable Input - XSS Cross Site Scripting - Payload Automation - Exploit Vulnerable Input
Language: JavaScript - Size: 46.9 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/WebSecurityVision
WebSecurityVision is a tool for checking XSS vulnerabilities and security headers in web applications, displaying browser information if vulnerabilities are found.
Size: 126 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/PhpCookieStealer
The PHP cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: PHP - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/NodeJsCookieStealer
The NodeJs cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: JavaScript - Size: 9.77 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/PythonCookieStealer
The Python cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: Python - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

usr2r00t/xsshunter-express Fork of mandatoryprogrammer/xsshunter-express
An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!
Size: 3.73 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

timekadel/PNSMN
Pose ta Node Sur Mon Network
Language: HTML - Size: 2.56 MB - Last synced at: about 2 months ago - Pushed at: about 8 years ago - Stars: 3 - Forks: 1

ener1-s3c/AutomationXSS
Spray Blind XSS on Header
Size: 21.5 KB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TcherB31/Wingman_Cracked_1.0.6
Wingman- Toolkit for XSS Attacking
Size: 4.55 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 3 - Forks: 0

R3DHULK/xss-vul-scanner-in-r
XSS Vulnerability In R language
Language: R - Size: 1.95 KB - Last synced at: 3 months ago - Pushed at: about 2 years ago - Stars: 3 - Forks: 0

omurugur/XSS_Payload_List
Cross Site Scripting ( XSS ) Vulnerability Payload List
Size: 33.2 KB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 18 - Forks: 9

KDot227/Anonfiles-XSS
Runs js on users computer then sends it to discord webhook
Language: Python - Size: 28.3 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 4 - Forks: 1

JonathanWilbur/CVE-2018-19131
Proof-of-Concept exploit of CVE-2018-19131: Squid Proxy XSS via X.509 Certificate
Language: Dockerfile - Size: 4.17 MB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 19 - Forks: 2

DarkPurple141/xss-test
A utility to test the success of xss payloads on a target website. Use responsibly.
Language: Python - Size: 14.6 KB - Last synced at: 2 months ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

reinforchu/Charset-basedXSS
An XSS attack technique caused by switching the character encoding of web browser rendering.
Language: PHP - Size: 7.73 MB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

R3DHULK/xss-vulnerability-finder-in-perl
XSS Vulnerability Tool In Perl
Language: Perl - Size: 43.9 KB - Last synced at: 2 months ago - Pushed at: over 2 years ago - Stars: 2 - Forks: 0

dogukankurnaz/xsscookie
XSS ATTACK COOKIE INFO
Language: JavaScript - Size: 8.79 KB - Last synced at: almost 2 years ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 0

thenurhabib/scancss
automatically crawl every URL and find cross site scripting (XSS)
Language: Python - Size: 805 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 33 - Forks: 6

akalankauk/Foxss-XSS-Penetration-Testing-Tool
Foxss is a simple php based penetration Testing Tool.Currently it will help to find XSS vulnerability in websites.
Language: JavaScript - Size: 44.9 KB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 36 - Forks: 16

Am0stafa/XSS-revese-shell
An XSS reverse shell to control any website remotely using web sockets, along with an HTTP server to capture data
Language: JavaScript - Size: 18.6 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

eduardosantoshf/exploration-of-vulnerabilities 📦
First SIO Project - This project aims to explore the concepts related with the assessment of vulnerabilities, and to acknowledge the risk and impact of exploring common vulnerabilities.
Size: 8.9 MB - Last synced at: 4 days ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

AXDOOMER/easy-xss-cookie-stealer
XSS cookie stealer using JavaScript and PHP
Language: HTML - Size: 1.95 KB - Last synced at: about 2 years ago - Pushed at: about 6 years ago - Stars: 46 - Forks: 28

UbuntuStrike/CookieStealer.php
A PHP script to run on your server to grab cookies through xss
Language: PHP - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: about 6 years ago - Stars: 21 - Forks: 4

canbolatos/xss-scanner-tool-by-vural
xss scanner created by vural
Language: Python - Size: 12.7 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 0

MashafZaman/xsswebsite
A simple JavaScript+HTML website to demonstrate Cross-Site Scripting
Language: CSS - Size: 4.88 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

tcbutler320/BananaCannon
BananaCannon is a series of exploit proof of concepts for MonkeyType.com, a popular typing test web application with a growing community. This repository contains XSS exploits and a python PoC to spoof leaderboard scores
Size: 50.7 MB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 6 - Forks: 1

0xshahriar/sudo.co.il
This is a repo of my solution of one XSS challenge website (http://sudo.co.il/xss/) . This challenges may have different types of solutions. My solutions are not the only one. So, keep searching & keep sharing.
Size: 10.7 KB - Last synced at: about 1 year ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 1

shubham-rooter/Paylods-Bugbounty
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Language: Python - Size: 10.5 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

DaveBitter/csp-trusted-type
Demo website showcasing Trusted Types for CSP
Language: HTML - Size: 764 KB - Last synced at: 2 months ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

MichaelSDavid/XSS_Code_Injector
An XSS code injector script that generates an alert popup box in the browser, part of the Python and Ethical Hacking course by ZSecurity (requires HTTP only, all caches cleared)
Language: Python - Size: 7.81 KB - Last synced at: 2 months ago - Pushed at: almost 4 years ago - Stars: 1 - Forks: 0

BrodieInfoSec/BIG_XSS
This repository is a collection of Awesome XSS Payloads in 1 txt file
Size: 324 KB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 11 - Forks: 3

0x1CA3/AnonStress-Stored-XSS-Exploit
An exploit and demonstration on how to exploit a Stored XSS vulnerability in https://anonstress.com.
Language: Python - Size: 3.67 MB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 5 - Forks: 2

akalankauk/XSS-SQL-Master-Payloads
My Payload Collection (XSS,SQL ...)
Size: 8.79 KB - Last synced at: about 2 years ago - Pushed at: almost 7 years ago - Stars: 13 - Forks: 12

g33xter/CVE-2021-28079
POC Jamovi <=1.6.18 is affected by a cross-site scripting (XSS) vulnerability. The column-name is vulnerable to XSS in the ElectronJS Framework. An attacker can make a .omv (Jamovi) document containing a payload. When opened by victim, the payload is triggered.
Size: 2.93 KB - Last synced at: about 1 year ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 1

omurugur/IBM_Maximo_XSS_Exploit
IBM Maximo XSS Exploit
Size: 6.84 KB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 1

omurugur/Oracle_Operational_Decision_Support_System_XSS_Stored
Oracle Operational Decision Support System XSS Stored
Size: 4.88 KB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 0

omurugur/Oracle_Siebel_XSS_Stored_Exploit
Oracle Siebel XSS Stored Exploit
Size: 14.6 KB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 1

Wh1t3Fox/xss.page
XSS Testing Page
Language: JavaScript - Size: 68.4 KB - Last synced at: about 2 months ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

Ak-wa/XSSRecon
XSSRecon - Reflected XSS Scanner
Language: Python - Size: 875 KB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 19 - Forks: 10

sohailahmedkhan/Simple-SQL-XSS-Fuzzing-Tool-PYTHON-
Language: Python - Size: 6.84 KB - Last synced at: about 2 years ago - Pushed at: about 6 years ago - Stars: 2 - Forks: 1

ItamarAlves/Login Fork of eziolemes/Login
Simples tela de login para treinar conceitos sobre sqlinjection e sqlmap
Language: Java - Size: 1.89 MB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 1

Subangkar/Computer-Security-CSE-406-BUET
Demonstration of some attacks exploiting security vulnerabilities of websites and OSs as tasks of Computer Security LAB, CSE 406 in Level-4, Term-1 of CSE, BUET
Language: Python - Size: 9.58 MB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 2 - Forks: 0

bmvantunes/youtube-2021-may-security-attack
Language: TypeScript - Size: 5.11 MB - Last synced at: 22 days ago - Pushed at: almost 4 years ago - Stars: 2 - Forks: 0

AntonUden/XSS-Example
xss vulnerable chat used to learn how to perform and protect against xss attacks
Language: JavaScript - Size: 71.3 KB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 2 - Forks: 0

anyaschukin/Darkly
Cyber security intro project covering SQL-injection, XSS, password hacking, etc.
Language: Shell - Size: 3.03 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 1

utfpr-cesc/csrf-xss-rogue-website
Rogue website to demonstrate CSRF and XSS attacks.
Language: HTML - Size: 8.79 KB - Last synced at: about 1 month ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 0

kyaEH/NodeJS-BasicXSSClientServer
Language: JavaScript - Size: 18.6 KB - Last synced at: 23 days ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

0xt4req/Automatic_XSS
This is a simple Automatic XSS script written in Python. It's a dynamic script. It means you have to change the xapth every time as well as the domain.
Language: Python - Size: 5.36 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

o2bomb/xss-demo
A web application demonstrating the three types of XSS attacks (DOM, Persistent, Reflective) and how to prevent them
Language: JavaScript - Size: 549 KB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 0 - Forks: 0

lethanhnhan-dev/demo-xss
Demonstration examples of XSS attacks
Language: HTML - Size: 27.6 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

Arinerron/case-insensitive-xss
Automatic uppercase/lowercase XSS payload conversion
Language: HTML - Size: 7.81 KB - Last synced at: about 23 hours ago - Pushed at: almost 5 years ago - Stars: 0 - Forks: 2

HannahMayer10/wsearch
Angular tutorial
Language: TypeScript - Size: 450 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 0

cthpw103/xss_tests
test
Language: JavaScript - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: almost 8 years ago - Stars: 0 - Forks: 0
