XSS (Cross Site Scripting) Cheatsheet Logo

XSS (Cross Site Scripting) Cheatsheet

0
Free
Visit Website

XSS cheatsheet for filter evasion by RSnake. This page is for those who understand the basics of XSS but want a deep understanding of filter evasion nuances. It provides underlying attack vectors without mitigation techniques or actual cookie/credential stealing methods.

FEATURES

ALTERNATIVES

ffufai is an AI-enhanced wrapper for ffuf that automatically suggests file extensions for web fuzzing based on the target URL and headers.

A deliberately vulnerable modern day app with lots of DOM related bugs

Statistical renaming, Type inference, and Deobfuscation tool for JavaScript code.

A webshell manager via terminal for controlling web servers running PHP or MySQL.

A static code analysis tool for parsing common data formats to detect hardcoded credentials and dangerous functions.

Automated framework for monitoring and tampering system API calls of native macOS, iOS, and Android apps.

A fake Django admin login screen to detect and notify admins of attempted unauthorized access

Security design review automation tool that scans design documents and provides security requirements to development teams during the planning phase.