Xss

Top 23 Xss Open-Source Projects

  • hacker101

    Source code for Hacker101.com - a free online web and mobile security class.

  • Project mention: How to start hacking ? | /r/Hacking_Tutorials | 2023-05-17
  • DOMPurify

    DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

  • Project mention: JavaScript Libraries for Implementing Trendy Technologies in Web Apps in 2024 | dev.to | 2024-04-09

    DOMPurify

  • SurveyJS

    Open-Source JSON Form Builder to Create Dynamic Forms Right in Your App. With SurveyJS form UI libraries, you can build and style forms in a fully-integrated drag & drop form builder, render them in your JS app, and store form submission data in any backend, inc. PHP, ASP.NET Core, and Node.js.

    SurveyJS logo
  • XSStrike

    Most advanced XSS scanner.

  • Project mention: I'm not sure what tool I can even use for my assignment? | /r/tryhackme | 2023-05-31

    For XSS: https://github.com/s0md3v/XSStrike

  • Resources-for-Beginner-Bug-Bounty-Hunters

    A list of resources for those interested in getting started in bug bounties

  • Project mention: Getting started with bb journey | /r/bugbounty | 2023-06-28
  • xss-payload-list

    🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List

  • Project mention: XSS example | /r/bugbounty | 2023-06-15

    Like an example XSS payload? Go nuts: https://github.com/payloadbox/xss-payload-list

  • AwesomeXSS

    Awesome XSS stuff

  • Web-Security-Learning

    Web-Security-Learning

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
  • arachni

    Web Application Security Scanner Framework

  • Project mention: Self-Host Vulnerability Scanner | /r/selfhosted | 2023-07-09
  • payloads

    Git All the Payloads! A collection of web attack payloads. (by foospidy)

  • dalfox

    🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

  • hackerone-reports

    Top disclosed reports from HackerOne

  • bluemonday

    bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

  • HackVault

    A container repository for my public web hacks!

  • Project mention: What are polyglots and how to use them as a pentester | dev.to | 2023-12-03
  • HtmlSanitizer

    Cleans HTML to avoid XSS attacks

  • Android-Reports-and-Resources

    A big list of Android Hackerone disclosed reports and other resources.

  • ATSCAN

    Advanced dork Search & Mass Exploit Scanner

  • waf-bypass

    Check your WAF before an attacker does

  • Latte

    ☕ Latte: the safest & truly intuitive templates for PHP. Engine for those who want the most secure PHP sites.

  • xsser

    Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.

  • noscript

    The popular NoScript Security Suite browser extension.

  • Project mention: What It's Like to Use Apple's Lockdown Mode | news.ycombinator.com | 2024-01-02
  • nuxt-security

    🛡 Automatically configure your app to follow OWASP security patterns and principles by using HTTP Headers and Middleware

  • Project mention: How Nuxi helps Nuxt deliver great DX? | dev.to | 2024-04-08

    The command nuxi module add allows you to skip the second step in the list. So for modules like Nuxt Security right now, you only need to run the first step and nuxi will automatically register the module so that you can get started with the module right away.

  • AntiXSS

    ㊙️ AntiXSS | Protection against Cross-site scripting (XSS) via PHP

  • Project mention: XSS Attack - Why strip_tags is not enough | dev.to | 2023-09-13

    AntiXSS

  • Application-Security-Engineer-Interview-Questions

    Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be asked and some were challenging to answer

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

Xss related posts

Index

What are some of the best open-source Xss projects? This list will help you:

Project Stars
1 hacker101 13,603
2 DOMPurify 12,802
3 XSStrike 12,690
4 Resources-for-Beginner-Bug-Bounty-Hunters 10,141
5 xss-payload-list 5,613
6 AwesomeXSS 4,645
7 Web-Security-Learning 4,130
8 arachni 3,639
9 payloads 3,519
10 dalfox 3,272
11 hackerone-reports 3,195
12 bluemonday 2,977
13 HackVault 1,876
14 HtmlSanitizer 1,481
15 Android-Reports-and-Resources 1,351
16 ATSCAN 1,326
17 waf-bypass 1,098
18 Latte 1,061
19 xsser 1,060
20 noscript 786
21 nuxt-security 700
22 AntiXSS 661
23 Application-Security-Engineer-Interview-Questions 577

Sponsored
Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com