awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to jiangsir404/xss-sql-fuzz

Projects sharing features with Xss Sql Fuzz

30 open-source projects similar to jiangsir404/xss-sql-fuzz, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • hahwul/dalfoxhahwul avatar

    hahwul/dalfox

    4,846View on GitHub↗

    Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t

    Gobugbountybugbounty-toolcicd-pipeline
    View on GitHub↗4,846
  • bitthebyte/bitblinderBitTheByte avatar

    BitTheByte/BitBlinder

    123View on GitHub↗

    BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities

    Python
    View on GitHub↗123
  • wish-i-was/femidawish-i-was avatar

    wish-i-was/femida

    284View on GitHub↗

    Automated blind-xss search for Burp Suite

    Python
    View on GitHub↗284
  • nvisium/xssvalidatornVisium avatar

    nVisium/xssValidator

    420View on GitHub↗

    This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.

    Java
    View on GitHub↗420
  • ultimatehackers/xsstrikeUltimateHackers avatar

    UltimateHackers/XSStrike

    15,027View on GitHub↗

    XSStrike is a security tool designed to detect cross-site scripting vulnerabilities through parameter fuzzing and web response analysis. It functions as a web application fuzzer and vulnerability scanner that identifies injection points and security flaws. The project includes a specialized utility for detecting blind XSS, where payloads execute asynchronously or on separate pages. It also features a JavaScript library auditor to identify outdated libraries with known vulnerabilities and a dedicated tool for identifying and bypassing web application firewalls using various evasion techniques.

    Python
    View on GitHub↗15,027

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • danmcinerney/xsscrapyDanMcInerney avatar

    DanMcInerney/xsscrapy

    1,742View on GitHub↗

    XSS spider - 66/66 wavsep XSS detected

    Python
    View on GitHub↗1,742
  • den1al/jsshellDen1al avatar

    Den1al/JSShell

    366View on GitHub↗

    An interactive multi-user web JS shell

    Python
    View on GitHub↗366
  • dwisiswant0/findom-xssdwisiswant0 avatar

    dwisiswant0/findom-xss

    863View on GitHub↗

    A fast DOM based XSS vulnerability scanner with simplicity.

    Shell
    View on GitHub↗863
  • dxa4481/xssoauthpersistencedxa4481 avatar

    dxa4481/XSSOauthPersistence

    78View on GitHub↗

    Maintaining account persistence via XSS and Oauth

    JavaScript
    View on GitHub↗78
  • egebalci/xss-flareE

    EgeBalci/xss-flare

    0View on GitHub↗
    View on GitHub↗0
  • elkokc/reflectorelkokc avatar

    elkokc/reflector

    1,212View on GitHub↗

    Burp plugin able to find reflected XSS on page in real-time while browsing on site

    Java
    View on GitHub↗1,212
  • epsylon/xsserepsylon avatar

    epsylon/xsser

    1,448View on GitHub↗

    Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.

    Python
    View on GitHub↗1,448
  • evilcos/xssor2evilcos avatar

    evilcos/xssor2

    2,222View on GitHub↗

    XSS'OR - Hack with JavaScript.

    JavaScript
    View on GitHub↗2,222
  • fcavallarin/domdigfcavallarin avatar

    fcavallarin/domdig

    419View on GitHub↗

    DOM XSS scanner for Single Page Applications

    JavaScript
    View on GitHub↗419
  • floyd-fuh/burp-httpfuzzerfloyd-fuh avatar

    floyd-fuh/burp-httpfuzzer

    34View on GitHub↗

    A simple random HTTP fuzzer. This plugin adds ActiveScan checks that fuzz the HTTP request. Using this fuzzer with any standard HTTP server (Apache, Nginx, etc.) is usually useless, but can be fun. It can be used to see the different error conditions a server and the web application code can run…

    Python
    View on GitHub↗34
  • gosecure/burp-fuzzy-encoding-generatorGoSecure avatar

    GoSecure/burp-fuzzy-encoding-generator

    7View on GitHub↗

    Quickly test various encoding for a given value in Burp Intruder

    Kotlin
    View on GitHub↗7
  • h3xstream/http-script-generatorh3xstream avatar

    h3xstream/http-script-generator

    301View on GitHub↗

    This extension generates scripts to reissue a selected request. The scripts can be run outside of Burp. It can be useful to script attacks such as second order SQL injection, padding oracle, fuzzing encoded value, etc.

    Java
    View on GitHub↗301
  • hahwul/xspearhahwul avatar

    hahwul/XSpear

    1,357View on GitHub↗

    🔱 Powerfull XSS Scanning and Parameter analysis tool&gem

    Ruby
    View on GitHub↗1,357
  • hakluke/weaponised-xss-payloadshakluke avatar

    hakluke/weaponised-XSS-payloads

    1,398View on GitHub↗

    XSS payloads designed to turn alert(1) into P1

    JavaScript
    View on GitHub↗1,398
  • hipotermia/vaya-ciego-nenhipotermia avatar

    hipotermia/vaya-ciego-nen

    39View on GitHub↗

    Detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.

    JavaScript
    View on GitHub↗39
  • hpd0ger/supertagshpd0ger avatar

    hpd0ger/supertags

    41View on GitHub↗

    一个Burpsuite插件,用于检测隐藏的XSS,需要安装Jython环境:https://blog.csdn.net/sinat_25449961/article/details/77374407

    Python
    View on GitHub↗41
  • huvuqu/fuzz18plushuvuqu avatar

    huvuqu/fuzz18plus

    7View on GitHub↗

    Advance of fuzzing for Web pentest. Based on Burp extension, send HTTP request template out to Python fuzzer.

    Java
    View on GitHub↗7
  • jewel591/xssmapJewel591 avatar

    Jewel591/xssmap

    270View on GitHub↗

    XSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具

    Python
    View on GitHub↗270
  • lewisardern/bxssLewisArdern avatar

    LewisArdern/bXSS

    575View on GitHub↗

    bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.

    JavaScript
    View on GitHub↗575
  • machinexa2/xssterminalM

    machinexa2/XSSTerminal

    0View on GitHub↗
    View on GitHub↗0
  • mandatoryprogrammer/xsshuntermandatoryprogrammer avatar

    mandatoryprogrammer/xsshunter

    1,553View on GitHub↗

    The XSS Hunter service - a portable version of XSSHunter.com

    JavaScript
    View on GitHub↗1,553
  • menkrep1337/xssconmenkrep1337 avatar

    menkrep1337/XSSCon

    245View on GitHub↗

    XSSCon: Simple XSS Scanner tool

    Python
    View on GitHub↗245
  • mgeeky/burpcontextawarefuzzermgeeky avatar

    mgeeky/burpContextAwareFuzzer

    41View on GitHub↗

    BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JSON; XML; GWT; binary) and following encoding-scheme applied originally.

    Python
    View on GitHub↗41
  • mseclab/burp-pyjfuzzmseclab avatar

    mseclab/burp-pyjfuzz

    56View on GitHub↗

    Burp Suite plugin which implement PyJFuzz for fuzzing web application.

    Python
    View on GitHub↗56
  • mystech7/burp-huntermystech7 avatar

    mystech7/Burp-Hunter

    152View on GitHub↗

    XSS Hunter Burp Plugin

    Java
    View on GitHub↗152