How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
🎯 Fast CORS misconfiguration vulnerabilities scanner
The main features of chenjj/corscanner are: Web Vulnerability Tools.
Open-source alternatives to chenjj/corscanner include: danmcinerney/xsscrapy — XSS spider - 66/66 wavsep XSS detected. dwisiswant0/findom-xss — A fast DOM based XSS vulnerability scanner with simplicity. hacktricks-wiki/hacktricks — HackTricks is a comprehensive cybersecurity knowledge base and wiki designed to support ethical hacking, penetration… hahwul/dalfox — Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site… hahwul/jwt-hack — JSON Web Token Hack Toolkit. beefproject/beef — BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It…
XSS spider - 66/66 wavsep XSS detected
A fast DOM based XSS vulnerability scanner with simplicity.
HackTricks is a comprehensive cybersecurity knowledge base and wiki designed to support ethical hacking, penetration testing, and infrastructure security auditing. It serves as a structured reference guide for security professionals, providing detailed documentation on common vulnerabilities, attack vectors, and remediation strategies across diverse software and network environments. The project distinguishes itself by offering actionable methodologies for identifying and analyzing security flaws. It functions as a centralized repository for security research, enabling practitioners to study
BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and