This is a Burp plugin that extracts keywords from response using regexes and tests for reflected XSS on the target scope. It can be used to identify potential vulnerabilities in web applications and to help security researchers and developers to identify and fix security issues. The plugin is designed to be easy to use and to provide a high level of accuracy in identifying potential vulnerabilities. It is available for free and can be downloaded from the GitHub repository.
FEATURES
ALTERNATIVES
A command-line tool for identifying NoSQL injection vulnerabilities in MongoDB databases
A script to detect and remove Canary Tokens with simple signature-based detections.
A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence
YARA module for supporting DCSO format bloom filters with hashlookup capabilities.
Joe Sandbox Community provides automated cloud-based malware analysis across multiple OS platforms.
A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.