Showing posts with label xss. Show all posts
Showing posts with label xss. Show all posts
Sunday, March 26, 2017
XSScrapy Fast thorough XSS vulnerability spider
XSScrapy Fast thorough XSS vulnerability spider

Fast, thorough, XSS spider. Give it a URL and itll test every link it finds for cross-site scripting vulnerabilities.
XSS attack vectors xsscrapy will test
- Referer header (way more common than I thought it would be!)
- User-Agent header
- Cookie header (added 8/24/14)
- Forms, both hidden and explicit
- URL variables
- End of the URL, e.g. www.example.com/<script>alert(1)</script>
- Open redirect XSS, e.g. looking for links where it can inject a value of javascript:prompt(1)
- Other headers
- Persistent XSSs reflected in pages other than the immediate response page
- DOM XSS
- CAPTCHA protected forms
- AJAX
Because Scrapy is not a browser, it will not render javascript so if youre scanning a site thats heavily built on AJAX this scraper will not be able to travel to all the available links. I will look into adding this functionality in the future although it is not a simple task.
From within the main folder run:
./xsscrapy.py -u http://something.com
If you wish to login then crawl:./xsscrapy.py -u http://something.com/login_page -l loginname -p pa$$word
Output is stored in XSS-vulnerable.txt.
Download XSScrapy
Go to link download
Tuesday, March 14, 2017
UFONet DDoS attacks via Web Abuse XSS CSRF
UFONet DDoS attacks via Web Abuse XSS CSRF

UFONet - is a tool designed to launch DDoS attacks against a target, using Open Redirect vectors on third party web applications, like botnet.
See this links for more info:
- CWE-601:Open Redirect
- OWASP:URL Redirector Abuse
Main features:
--version show programs version number and exit
-v, --verbose active verbose on requests
--check-tor check to see if Tor is used properly
--update check for latest stable version
*Configure Request(s)*:
--proxy=PROXY Use proxy server (tor: http://localhost:8118)
--user-agent=AGENT Use another HTTP User-Agent header (default SPOOFED)
--referer=REFERER Use another HTTP Referer header (default SPOOFED)
--host=HOST Use another HTTP Host header (default NONE)
--xforw Set your HTTP X-Forwarded-For with random IP values
--xclient Set your HTTP X-Client-IP with random IP values
--timeout=TIMEOUT Select your timeout (default 30)
--retries=RETRIES Retries when the connection timeouts (default 1)
--delay=DELAY Delay in seconds between each HTTP request (default 0)
*Manage Botnet*:
-s SEARCH Search zombies on google (ex: -s proxy.php?url=)
--sn=NUM_RESULTS Set max number of result to search (default 10)
-t TEST Test list of web zombie servers (ex: -t zombies.txt)
*Configure Attack(s)*:
-r ROUNDS Set number of rounds for the attack (default: 1)
-b PLACE Set a place to bit on target (ex: -b /path/big.jpg)
-a TARGET Start a Web DDoS attack (ex: -a http(s)://target.com)Download UFONet
Go to link download
Sunday, March 12, 2017
OWASP Xenotix XSS Exploit Framework 6
OWASP Xenotix XSS Exploit Framework 6

OWASP Xenotix XSS Exploit Framework is an advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework. Xenotix provides Zero False Positive XSS Detection by performing the Scan within the browser engines where in real world, payloads get reflected. Xenotix Scanner Module is incorporated with 3 intelligent fuzzers to reduce the scan time and produce better results. If you really dont like the tool logic, then leverage the power of Xenotix API to make the tool work like you wanted it to be. It is claimed to have the worlds 2nd largest XSS Payloads of about 4800+ distinctive XSS Payloads. It is incorporated with a feature rich Information Gathering module for target Reconnaissance. The Exploit Framework includes real world offensive XSS exploitation modules for Penetration Testing and Proof of Concept creation.
Features
SCANNER MODULES
- GET Request Manual Mode
- GET Request Auto Mode
- Multiple Parameter Scanner
- GET Request Fuzzer
- POST Request Fuzzer
- Advanced Request Fuzzer
- OAuth 1.0a Request Scanner
- DOM Scanner
- Hidden Parameter Detector
INFORMATION GATHERING MODULES
- WAF Fingerprinting
- Victim Fingerprinting
- IP to Location
- IP to GeoLocation
- Network
- Network IP (WebRTC)
- Ping Scan
- Port Scan
- Internal Network Scan
- Browser
- Fingerprinting
- Features Detector
EXPLOITATION MODULES
- Send Message
- Cookie Thief
- Keylogger
- HTML5 DDoSer
- Load File
- Grab Page Screenshot
- JavaScript Shell
- Reverse HTTP WebShell
- Metasploit Browser Exploit
- Social Engineering
- Phisher
- Tabnabbing
- Live WebCam Screenshot
- Download Spoofer
- Geolocation HTML5 API
- Java Applet Drive-By (Windows)
- Java Applet Drive-By Reverse Shell (Windows)
- HTA Network Configuration (Windows, IE)
- HTA Drive-By (Windows, IE)
- HTA Drive-By Reverse Shell (Windows, IE)
- Firefox Addons
- Reverse TCP Shell Addon (Windows, Persistent)
- Reverse TCP Shell Addon (Linux, Persistent)
- Session Stealer Addon (Persistent)
- Keylogger Addon (Persistent)
- DDoSer Addon (Persistent)
- Linux Credential File Stealer Addon (Persistent)
- Drop and Execute Addon (Persistent)
AUXILIARY MODULES
- WebKit Developer Tools
- Encoder/Decoder
- JavaScript Encoders
- JSFuck 6 Char Encoder
- jjencode Encoder
- aaencode Encoder
- JavaScript Beautifier
- Hash Calculator
- Hash Detector
- View Injected JavaScript
- View XSS Payloads
XENOTIX SCRIPTING ENGINE
- Xenotix API
- IronPython Scripting Support
- Trident and Gecko Web Engine Support
Download OWASP Xenotix XSS Exploit Framework 6
Go to link download
Subscribe to:
Posts (Atom)