xss-payload-list
Kirby
xss-payload-list | Kirby | |
---|---|---|
6 | 56 | |
5,661 | 1,202 | |
3.1% | 1.4% | |
0.0 | 9.9 | |
5 months ago | 3 days ago | |
PHP | ||
MIT License | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
xss-payload-list
-
XSS example
Like an example XSS payload? Go nuts: https://github.com/payloadbox/xss-payload-list
-
Go with PHP
Otherwise, only vague and unsubstantiated claims, which does not help PHP nor any other programming language or framework.
[] https://github.com/payloadbox/xss-payload-list
- SC
- A Summary of Fuzzing Tools and Dictionaries For Bug Bounty Hunters
- Cross Site Scripting ( XSS ) Vulnerability Payload List
-
Password protected website (no username) - best way in?
Tried it now, with the https://github.com/payloadbox/xss-payload-list/tree/master/Intruder list.
Kirby
-
Show HN: Primo – a visual CMS with Svelte blocks, a code editor, and SSG
Not sure if this is what you’re after but give https://getkirby.com/ a try
- Kirby: Simple Flat-File CMS
-
Grav is a modern open-source flat-file CMS
Personally think https://getkirby.com is the entry to beat but I guess it’s just because I’m used to it and it works incredibly well for my use case.
-
What kind of CMS for custom website?
Check out KirbyCMS. A PHP based files-only CMS. Can also be used as headless CMS. Works on most shared hosts and doesn't need a database. You'll have to do some basic PHP for the templates, though.
- What technology do you use to build websites these days?
-
WP20 and Audrey Scholars – Matt Mullenweg
I guess it depends what you need to build. I used to use Wordpress for all my personal and client projects but I then moved to Kirby[0] and I couldn’t be happier.
But I think it highly depends on what kind of projects you work on.
[0] https://getkirby.com/
-
Ask HN: How do I make a website in 2023?
I can recommend Kirby (https://getkirby.com/), a flat file PHP CMS. It’s fast, has a panel to update data and can be hosted on any basically any PHP host. Just use the quite simple PHP-templates and add CSS & JS like you already know how to do. No need to complicate things.
-
Go with PHP
PHP has a lot of top tier CMSes. IMHO bunch of them are even better than Statamic. Craft CMS (https://craftcms.com/) is a lot more mature database based CMS. Kirby (https://getkirby.com/) is better at flat-file and has a lot better admin interface. Twill (https://twillcms.com/) is better integrated in Laravel and is fully open-source. Statamic mostly feels like it's sitting besides Laravel and they call themselves Laravel based for marketing.
- Feedback call for Tailkits ✨
- Headless CMS with the best documentation for vue/nuxt.js
What are some alternatives?
ssti-payloads - 🎯 Server Side Template Injection Payloads
Grav - Modern, Crazy Fast, Ridiculously Easy and Amazingly Powerful Flat-File CMS powered by PHP, Markdown, Twig, and Symfony
XSStrike - Most advanced XSS scanner.
WordPress - WordPress, Git-ified. This repository is just a mirror of the WordPress subversion repository. Please do not send pull requests. Submit pull requests to https://github.com/WordPress/wordpress-develop and patches to https://core.trac.wordpress.org/ instead.
sql-injection-payload-list - 🎯 SQL Injection Payload List
Next.js - The React Framework
OWASP-Xenotix-XSS-Exploit-Framework - OWASP Xenotix XSS Exploit Framework is an advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework.
ProcessWire - ProcessWire 3.x is a friendly and powerful open source CMS with a strong API.
plugin-cloud-storage - The official cloud storage plugin for Payload
Textpattern - A flexible, elegant, fast and easy-to-use content management system written in PHP.
ppmap - A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.
Bludit - Simple, Fast, Secure, Flat-File CMS