ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A comprehensive guide for customizing Cobalt Strike's C2 profiles to enhance stealth and operational security.
A lightweight and portable Docker container for penetration testers and CTF players
PwnAuth is an open-source tool for generating and managing authentication tokens for penetration testing and red teaming exercises.
A C#-based Command and Control Framework for remote access and control of compromised systems.
A blog post about abusing exported functions and exposed DCOM interfaces for pass-thru command execution and lateral movement
A tool that exposes the functionality of the Volume Shadow Copy Service (VSS) for creation, enumeration, and manipulation of volume shadow copies, with features for persistence and evasion.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.