Payloads.site is a web-based platform that provides penetration testers and security researchers with a centralized repository of ready-to-use payloads for various web application vulnerabilities. The platform supports payload generation for multiple attack vectors including: - SQL Injection (SQLi) - Cross-Site Scripting (XSS) - reflected, stored, and DOM-based - Local File Inclusion (LFI) - Remote File Inclusion (RFI) - Command Injection - Server-Side Request Forgery (SSRF) Users can select from various encoding options to customize payloads: - URL encoding - Base64 encoding - Hexadecimal encoding - HTML entity encoding - Double HTML encoding - No encoding (plain text) The tool allows users to copy payloads to clipboard or download them for use with security testing tools like Burp Suite (Intruder/Repeater), curl commands, or custom scripts. The platform is designed to streamline the payload selection and preparation process during penetration testing and bug bounty hunting activities.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A CVE compliant archive of public exploits and corresponding vulnerable software, and a categorized index of Internet search engine queries designed to uncover sensitive information.
SharpShares efficiently enumerates and maps network shares and resolves names within a domain.
A command that builds and executes command lines from standard input, allowing for the execution of commands with multiple arguments.
Tool for enumerating proxy configurations and generating CobaltStrike-compatible shellcode.
A collection of Python scripts for password spraying attacks against Lync/S4B & OWA, featuring Atomizer, Vaporizer, Aerosol, and Spindrift tools.
BeEF is a specialized penetration testing tool for exploiting web browser vulnerabilities to assess security.
Interactive online malware sandbox for real-time analysis and threat intelligence
AHHHZURE is an automated deployment script that creates vulnerable Azure cloud lab environments for offensive security training and cloud penetration testing practice.
Kali Linux is a specialized Linux distribution for cybersecurity professionals, focusing on penetration testing and security auditing.