A XSS payload which runs in multiple contexts, such as <div class=''--><svg onload=alert()>'></div> and <!--'--><svg onload=alert()>. It is useful in testing XSS as it minimizes manual efforts and increases the success rate of blind XSS.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
ThreatLocker is an enterprise cybersecurity platform that provides comprehensive endpoint protection and zero-trust security to prevent ransomware, viruses, and other malicious software from running on endpoints.
Bearer CLI is a static application security testing tool that scans source code across multiple programming languages to identify and prioritize OWASP Top 10 and CWE Top 25 security vulnerabilities through data flow analysis.
APKiD is a tool that identifies compilers, packers, obfuscators, and other weird stuff in APK files.
A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.
QIRA is a competitor to strace and gdb with MIT license, supporting Ubuntu and Docker for wider compatibility.
Search engine for open-source Git repositories with advanced features like case sensitivity and regular expressions.
A deliberately vulnerable Java web application designed for educational purposes to teach web application security concepts and common vulnerabilities.
SearchCode is an extensive code search engine that indexes 75 billion lines of code from millions of projects to help developers find coding examples and libraries.
A comprehensive toolkit for web application security testing, offering a range of products and solutions for identifying vulnerabilities and improving security posture.