Topic: "xss-exploitation"
nicolabovolato/PHPirla
Displaying some xss vulnerabilities on the average PHP website.
Language: PHP - Size: 30.3 KB - Last synced at: about 1 year ago - Pushed at: about 2 years ago - Stars: 1 - Forks: 0

SkyN9ne/PyInjectX Fork of nedbat/injectx
💥 Small, easy-to-use Automated XSS (Cross-Site Scripting) detector / injector built with Python
Language: Python - Size: 4.88 KB - Last synced at: about 1 year ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

MashafZaman/xsswebsite
A simple JavaScript+HTML website to demonstrate Cross-Site Scripting
Language: CSS - Size: 4.88 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

DarkPurple141/xss-test
A utility to test the success of xss payloads on a target website. Use responsibly.
Language: Python - Size: 14.6 KB - Last synced at: 3 months ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

canbolatos/xss-scanner-tool-by-vural
xss scanner created by vural
Language: Python - Size: 12.7 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 0

readloud/XSS-HTTP-Inject0r
XSS HTTP Inject0r is a proof of concept tool that shows how XSS (Cross Site Scripting) flags can be exploited easily.
Language: Python - Size: 45.7 MB - Last synced at: about 1 year ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

Wh1t3Fox/xss.page
XSS Testing Page
Language: JavaScript - Size: 68.4 KB - Last synced at: 3 months ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

xpl0ited1/postMessageFinderBurpSuite
This extension allows you to detect implementations of postMessage function, addEventListener("message",function) event handler and onMessage function.
Language: Python - Size: 174 KB - Last synced at: about 1 year ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

MichaelSDavid/XSS_Code_Injector
An XSS code injector script that generates an alert popup box in the browser, part of the Python and Ethical Hacking course by ZSecurity (requires HTTP only, all caches cleared)
Language: Python - Size: 7.81 KB - Last synced at: 3 months ago - Pushed at: almost 4 years ago - Stars: 1 - Forks: 0

omurugur/Oracle_Siebel_XSS_Stored_Exploit
Oracle Siebel XSS Stored Exploit
Size: 14.6 KB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 1 - Forks: 1

omurugur/Oracle_Operational_Decision_Support_System_XSS_Stored
Oracle Operational Decision Support System XSS Stored
Size: 4.88 KB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 1 - Forks: 0

omurugur/IBM_Maximo_XSS_Exploit
IBM Maximo XSS Exploit
Size: 6.84 KB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 1 - Forks: 1

brono4/XSS-challenges
About This is a repo of my solution of one XSS challenge website (http://sudo.co.il/xss/) . This challenges may have different types of solutions. My solutions are not the only one. So, keep searching & keep sharing.
Language: HTML - Size: 41 KB - Last synced at: 15 days ago - Pushed at: 16 days ago - Stars: 0 - Forks: 0

yogsec/xss-test
A simple XSS payload host for testing and demonstrating stored/reflected XSS using GitHub Pages. Useful for bug bounty & security research.
Language: HTML - Size: 56.6 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

usethisname1419/XSS-Obsfuscator
Applies obfuscation techniques to XSS payloads
Language: Python - Size: 12.7 KB - Last synced at: 3 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

zaidalissawi/ecommerce-website-php
An intentionally vulnerable ecommerce website project built with PHP and MySQL for educational and ethical hacking purposes. This project is designed to help security enthusiasts and penetration testers learn and practice web application security testing in a safe and legal environment.
Language: PHP - Size: 36.1 KB - Last synced at: 4 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

asadinto/autotest
This web scan will show automated vulnerability.
Language: Python - Size: 261 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

progprnv/XssPrnv
XssPrnv is a versatile tool designed for Cross-Site Scripting (XSS) vulnerability testing, available in both GUI and terminal interfaces. It simplifies manual testing, addressing the limitations of automated scans that may miss certain triggers.
Language: Python - Size: 56.6 KB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

Subhashis360/PayloadsAll
Size: 6.79 MB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 0 - Forks: 0

Cappricio-Securities/aem-xss
Adobe Experience Manager Childlist Selector - Cross-Site Scripting
Language: Python - Size: 22.5 KB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

Kygostarboy/Scannax-lite
a XSS scanning and injection tool made from shell then converted into powershell
Language: PowerShell - Size: 12.7 KB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

MrGames4Life/xss
This is only for educational purposes. We won't take responsibility for any kind of damage made using these tools. We recommend using a VPN.
Size: 14.6 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

Seva41/CTF_Injection
CTF challenge based on the IT Security course of the Adolfo Ibáñez University 2024/1. Mix of SQL Injection, XSS, Cryptography and Session Cookie hijacking.
Language: JavaScript - Size: 30.3 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

solo2-0/CTF-tools
Several scrpts for solving CTF's & descriptions of several tools
Language: Python - Size: 513 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

lrluque/blixss
Simple Go tool for Blind XSS detection. Very useful on HTB machines and CTFs.
Language: Go - Size: 27.3 KB - Last synced at: about 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 1

xamiron/CSRF-Vulnerability
In this repository, I discuss the CSRF vulnerability and how to do execute a CSRF attack.
Language: HTML - Size: 104 KB - Last synced at: 3 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

laztname/xss
simple implementasion of social engineering from xss
Language: JavaScript - Size: 911 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 5

mamba-9mm/mamba-ddos
This script is written in Python to simulate Distributed Denial of Service attacks or DDoS attack in single port to any network.
Language: Python - Size: 46.9 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

GeorgeVasilakopoulos/eclass-pentest
Penetration testing of an old and vulnerable version of our university's web portal. Threats considered were XSS attacks, CSRF's, RFI's and SQLi's.
Language: PHP - Size: 15 MB - Last synced at: 3 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 1

0x240x23elu/XSS_Random
XSS Finder
Language: Python - Size: 144 KB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

GH0STH4CKER/HijackSessionCookie
Steal Document.cookie
Size: 3.91 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

fagun18/web-vulnerability
Web Vulnerability Scanning and Exploitation Script
Language: Python - Size: 11.7 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

natekali/HydraXSS
HydraXSS is a brand new XSS scanner. It crawl all the page on the target website to find some user inputs and inject payloads automatically
Language: Python - Size: 7.81 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

DextroSec/letsupload-XSS
A simple xss, simmlar to the anonfiles xss but its letsupload.cc XSS ( for educational purposes only)
Language: JavaScript - Size: 20.5 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

natekali/DVI-XSS
Detector of Vulnerable Input - XSS Cross Site Scripting - Payload Automation - Exploit Vulnerable Input
Language: JavaScript - Size: 46.9 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/PythonCookieStealer
The Python cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: Python - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/PhpCookieStealer
The PHP cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: PHP - Size: 2.93 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/NodeJsCookieStealer
The NodeJs cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.
Language: JavaScript - Size: 9.77 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

TheWation/WebSecurityVision
WebSecurityVision is a tool for checking XSS vulnerabilities and security headers in web applications, displaying browser information if vulnerabilities are found.
Size: 126 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

ener1-s3c/AutomationXSS
Spray Blind XSS on Header
Size: 21.5 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

ananya-singh-baghel/SITE-BRAKE
Cross Site Scripting using CyberSecurity principles
Language: CSS - Size: 13.7 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

TheHackerWitch-Official/CTF-Writeups
Writeups for CTF problems
Language: Python - Size: 27.3 KB - Last synced at: about 1 year ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

reinforchu/Charset-basedXSS
An XSS attack technique caused by switching the character encoding of web browser rendering.
Language: PHP - Size: 7.73 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

Am0stafa/XSS-revese-shell
An XSS reverse shell to control any website remotely using web sockets, along with an HTTP server to capture data
Language: JavaScript - Size: 18.6 KB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

shubham-rooter/Paylods-Bugbounty
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Language: Python - Size: 10.5 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

DaveBitter/csp-trusted-type
Demo website showcasing Trusted Types for CSP
Language: HTML - Size: 764 KB - Last synced at: 3 months ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

eduardosantoshf/exploration-of-vulnerabilities 📦
First SIO Project - This project aims to explore the concepts related with the assessment of vulnerabilities, and to acknowledge the risk and impact of exploring common vulnerabilities.
Size: 8.9 MB - Last synced at: 2 days ago - Pushed at: almost 3 years ago - Stars: 0 - Forks: 0

HannahMayer10/wsearch
Angular tutorial
Language: TypeScript - Size: 450 KB - Last synced at: over 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

ItamarAlves/Login Fork of eziolemes/Login
Simples tela de login para treinar conceitos sobre sqlinjection e sqlmap
Language: Java - Size: 1.89 MB - Last synced at: over 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 1

defensahacker/nodexss
Simple and vulnerable NodeJS app prone to Cross-Site Scripting (XSS)
Language: JavaScript - Size: 11.7 KB - Last synced at: over 1 year ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 1

anyaschukin/Darkly
Cyber security intro project covering SQL-injection, XSS, password hacking, etc.
Language: Shell - Size: 3.03 MB - Last synced at: over 2 years ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 1

utfpr-cesc/csrf-xss-rogue-website
Rogue website to demonstrate CSRF and XSS attacks.
Language: HTML - Size: 8.79 KB - Last synced at: 8 days ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

kyaEH/NodeJS-BasicXSSClientServer
Language: JavaScript - Size: 18.6 KB - Last synced at: 24 days ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

0xt4req/Automatic_XSS
This is a simple Automatic XSS script written in Python. It's a dynamic script. It means you have to change the xapth every time as well as the domain.
Language: Python - Size: 5.36 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

lethanhnhan-dev/demo-xss
Demonstration examples of XSS attacks
Language: HTML - Size: 27.6 MB - Last synced at: over 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

joaomota59/siteSeguro
🔐 Site seguro à ataques SQL INJECTION e XSS
Language: PHP - Size: 26.4 KB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

sarah-lishin/Rakhat
Rakhat - a set of deliberately exploitable VM’s designed to provide practice for web exploits for penetration testing.
Size: 12.7 KB - Last synced at: over 1 year ago - Pushed at: almost 5 years ago - Stars: 0 - Forks: 0

o2bomb/xss-demo
A web application demonstrating the three types of XSS attacks (DOM, Persistent, Reflective) and how to prevent them
Language: JavaScript - Size: 549 KB - Last synced at: over 2 years ago - Pushed at: about 5 years ago - Stars: 0 - Forks: 0

Arinerron/case-insensitive-xss
Automatic uppercase/lowercase XSS payload conversion
Language: HTML - Size: 7.81 KB - Last synced at: 7 days ago - Pushed at: about 5 years ago - Stars: 0 - Forks: 2

jainsarthak277/Computer-Security-Fundamentals
Language: C++ - Size: 308 KB - Last synced at: almost 2 years ago - Pushed at: about 5 years ago - Stars: 0 - Forks: 0

snackk/SSOF
SSOF Project
Language: Java - Size: 70.3 KB - Last synced at: almost 2 years ago - Pushed at: about 7 years ago - Stars: 0 - Forks: 0

adityapattani/MalwareDetection
This chrome extension aims at attacking different websites using SQL injection or XSS by selecting the text fields on the webpage using the extension and selecting the type of attack.
Language: JavaScript - Size: 12.7 KB - Last synced at: over 1 year ago - Pushed at: over 7 years ago - Stars: 0 - Forks: 0

cthpw103/xss_tests
test
Language: JavaScript - Size: 2.93 KB - Last synced at: over 2 years ago - Pushed at: almost 8 years ago - Stars: 0 - Forks: 0

0xSamy/snitchyScript
A malicious JavaScript script that exploit XSS vulnerabilities in a modern way using steganography technique and Telegram.
Last synced at: over 1 year ago - Stars: 0 - Forks: 0