Python Based Automated XSS Testing Tool
by Loki - Thursday July 25, 2024 at 07:54 PM
#11
very interested saar

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#12
(Jul 25, 2024, 07:54 PM)Loki Wrote:
Features
  • Comprehensive Scanning: Tests URL parameters, POST parameters, headers, and DOM content for XSS vulnerabilities.
  • Multiple Browser Support: Compatible with both Firefox and Chrome for testing.
  • Headless Mode: Option to run scans in headless browser mode for faster & traditional execution.
  • Paralellised Scanning: Utilises multi-threading for efficient scanning of multiple targets.
  • Customizable: Supports custom headers, cookies, and payload files.
  • Crawling Capability: Can crawl websites to discover and test additional pages.
  • Detailed Reporting: Provides comprehensive output with color-coded console logs and optional file output.
  • DOM XSS Detection: Advanced detection of DOM-based XSS vulnerabilities.
  • Payload Customization: Automatically customises payloads with unique identifiers for accurate detection.
  • Tamper Techniques: WAF evasion techniques
  • Detection of SQLi: Validates whether SQLi is also indicative within responses
  • WAF Detection: The ability to detect a firewall running on a target, using behavioural and static checks



gjewjlkfnlknfelekfwfwfewf
Reply
#13
(Jul 25, 2024, 07:54 PM)Loki Wrote:
Features
  • Comprehensive Scanning: Tests URL parameters, POST parameters, headers, and DOM content for XSS vulnerabilities.
  • Multiple Browser Support: Compatible with both Firefox and Chrome for testing.
  • Headless Mode: Option to run scans in headless browser mode for faster & traditional execution.
  • Paralellised Scanning: Utilises multi-threading for efficient scanning of multiple targets.
  • Customizable: Supports custom headers, cookies, and payload files.
  • Crawling Capability: Can crawl websites to discover and test additional pages.
  • Detailed Reporting: Provides comprehensive output with color-coded console logs and optional file output.
  • DOM XSS Detection: Advanced detection of DOM-based XSS vulnerabilities.
  • Payload Customization: Automatically customises payloads with unique identifiers for accurate detection.
  • Tamper Techniques: WAF evasion techniques
  • Detection of SQLi: Validates whether SQLi is also indicative within responses
  • WAF Detection: The ability to detect a firewall running on a target, using behavioural and static checks


thx bro good thing
Reply
#14
thanksssss for sharing
Reply
#15
really enjoying the proofs with VT
Reply
#16
Thanks for sharing
Reply
#17
let's put em to rest
Reply
#18
hmm lets try this

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Reply
#19
Thanks Loki Big Grin I appreciate this, will try it out.
Reply
#20
saya akan melihat ini
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  WHATSAPP SPY KIT TOOLS bloodymary71 326 13,851 5 minutes ago
Last Post: offjext
  Automatic File Extension Spoofer [SRC] Cracked 7 482 11 minutes ago
Last Post: offjext
  WADark - WhatsApp Phishing Tool via OTP Code LSDeep 83 4,929 18 minutes ago
Last Post: offjext
  ULTIMATE Account Checker v8.13 (2025 - Telegram Edition) hofnar05-Worm-GPT 44 2,740 30 minutes ago
Last Post: offjext
  Mullvad Account Checker 2025 [PYTHON] Dimitry 50 2,135 36 minutes ago
Last Post: offjext

Forum Jump:


 Users browsing this forum: 2 Guest(s)