DOM XSS scanner for Single Page Applications DOMdig is a tool designed to detect and exploit DOM-based Cross-Site Scripting (XSS) vulnerabilities in Single Page Applications (SPAs). It uses a combination of techniques to identify and exploit XSS vulnerabilities, including * Static analysis of the application's HTML and JavaScript code * Dynamic analysis of the application's behavior * Fuzz testing to identify potential vulnerabilities DOMdig is a powerful tool for identifying and exploiting XSS vulnerabilities in SPAs, and can be used by security researchers, developers, and penetration testers to improve the security of their applications.
FEATURES
ALTERNATIVES
A Unix-based tool that scans for rootkits and other malware on a system, providing a detailed report of the scan results.
A tool to locally check for signs of a rootkit with various checks and tests.
A tool that generates Yara rules for strings and their XOR encoded versions, as well as base64-encoded variations with different padding possibilities.
UDcide provides an alternative approach to dealing with Android malware by targeting specific behaviors for removal.
A collection of YARA rules for public use, built from intelligence profiles and file work.
A tool for deep analysis of malicious files using ClamAV and YARA rules, with features like scoring suspect files, building visual tree graphs, and extracting specific patterns.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.