Automated blind-xss search for Burp Suite Femida is a tool that helps you find blind XSS vulnerabilities in your web application. It uses Burp Suite as a proxy to intercept and analyze HTTP requests. Femida is a Python script that can be run from the command line. It's a great tool for security researchers and penetration testers who want to automate their blind XSS searches. Femida is open-source and free to use. It's available on GitHub and can be easily installed using pip.
FEATURES
ALTERNATIVES
Interactive incremental disassembler with data/control flow analysis capabilities.
angr is a Python 3 library for binary analysis with various capabilities like symbolic execution and decompilation.
A tool designed to handle archive file data and augment Yara's capabilities.
An online hash checker utility that retrieves information from various online sources, including Virustotal, HybridAnalysis, and more.
A script to detect and remove Canary Tokens with simple signature-based detections.
PINNED
InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
RoboShadow
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.