Application Security for Xss

Application security tools and solutions for securing web applications, mobile apps, and software throughout the development lifecycle. Task: Xss

Explore 26 curated cybersecurity tools, with 15,370 visitors searching for solutions

FEATURED

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Logo

Fractional CISO services for B2B companies to build security programs

Get Featured

Feature your product and reach thousands of professionals.

Node.js Goof Logo

Node.js Goof is a vulnerable Node.js demo application containing multiple security vulnerabilities for testing and educational purposes.

0
BruteXSS Logo

A tool to find XSS vulnerabilities in web applications

1
Vaya-Ciego-Nen Logo

A tool to detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.

0
findom-xss Logo

A fast and simple DOM based XSS vulnerability scanner

0
Dalfox Logo

Dalfox is an open-source automated XSS scanner that provides customizable scanning profiles and detailed reporting for cross-site scripting vulnerability detection.

0
DOMdig Logo

DOMdig is a DOM XSS scanner that uses static analysis, dynamic analysis, and fuzz testing to detect and exploit Cross-Site Scripting vulnerabilities in Single Page Applications.

0
Femida Logo

Femida is a Python automation tool that integrates with Burp Suite to detect blind XSS vulnerabilities in web applications through HTTP request analysis.

0
xssValidator Logo

A Burp Suite extension that automates XSS vulnerability detection and validation through custom payload generation and response analysis.

0
extended-xss-search Logo

A better version of my xssfinder tool that scans for different types of XSS on a list of URLs.

0
DOMXSS Scanner Logo

A free online tool to scan for DOM-based XSS vulnerabilities in HTML, JavaScript, and CSS files.

0
Vuldroid Logo

A deliberately vulnerable Android application containing multiple security flaws designed for educational purposes and security training.

0
Rexsser Logo

A Burp Suite plugin that extracts keywords from HTTP responses using regex patterns and tests for reflected XSS vulnerabilities within the target scope.

0
MCIR Logo

MCIR is a unified framework for building code injection vulnerability testbeds that combines SQL, XML, shell, and XSS injection testing tools with shared functionality and template-based extensibility.

0
Naxsi Logo

NAXSI is a third-party nginx module that prevents XSS and SQL injection attacks by filtering HTTP traffic based on predefined security rules.

0
Securibench Micro Logo

A collection of vulnerable web application test cases designed to benchmark and evaluate the effectiveness of static security analyzers and penetration testing tools.

0
@fastify/helmet Logo

A Fastify plugin that implements HTTP security headers through a wrapper around the helmet library to protect web applications from common vulnerabilities.

0
Nuxt Security Logo

A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.

0
N-Stalker Logo

A web security tool that scans for vulnerabilities and known attacks.

0
DOMPurify Logo

DOMPurify is a fast XSS sanitizer for HTML, MathML, and SVG.

0
Xss-Sql-Fuzz Logo

A Burp Suite plugin for automatically adding XSS and SQL payload to fuzz

0
w3af Logo

w3af is an open source web application security scanner that identifies over 200 types of vulnerabilities including XSS, SQL injection, and OS commanding in web applications.

0
Curiefense Logo

Curiefense is an application security platform that extends Envoy proxy to protect web applications and APIs against SQL injection, XSS, DDoS, and other common threats.

0
Joi Security Logo

A CLI tool that performs security assessments on Joi validator schemas by testing them against various attack vectors including XSS, SQL injection, RCE, and SSRF.

0