xss-payload-list
ppmap
xss-payload-list | ppmap | |
---|---|---|
6 | 3 | |
5,661 | 446 | |
3.1% | - | |
0.0 | 0.0 | |
5 months ago | almost 2 years ago | |
Go | ||
MIT License | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
xss-payload-list
-
XSS example
Like an example XSS payload? Go nuts: https://github.com/payloadbox/xss-payload-list
-
Go with PHP
Otherwise, only vague and unsubstantiated claims, which does not help PHP nor any other programming language or framework.
[] https://github.com/payloadbox/xss-payload-list
- SC
- A Summary of Fuzzing Tools and Dictionaries For Bug Bounty Hunters
- Cross Site Scripting ( XSS ) Vulnerability Payload List
-
Password protected website (no username) - best way in?
Tried it now, with the https://github.com/payloadbox/xss-payload-list/tree/master/Intruder list.
ppmap
- How do I get the ppmap to fuzz test vulerable website with custom xss json payload to exploit client side prototype pollution cross site script?
- How do I get the ppmap to fuzz test vulerable website with custom xss json payload to exploit prototype pollution cross site script?
- A simple scanner/exploitation tool written in GO which automatically exploits known and existing gadgets (checks for specific variables in the global context) to perform XSS via Prototype Pollution.
What are some alternatives?
ssti-payloads - 🎯 Server Side Template Injection Payloads
ppfuzz - A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀
XSStrike - Most advanced XSS scanner.
hetty - An HTTP toolkit for security research.
sql-injection-payload-list - 🎯 SQL Injection Payload List
interactsh - An OOB interaction gathering server and client library
OWASP-Xenotix-XSS-Exploit-Framework - OWASP Xenotix XSS Exploit Framework is an advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework.
go-dork - The fastest dork scanner written in Go.
plugin-cloud-storage - The official cloud storage plugin for Payload
urlhunter - a recon tool that allows searching on URLs that are exposed via shortener services
fuzzdb - Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
dalfox - 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.