- 955
- 254
Advanced XSS (Cross-Site Scripting) scanning tool for web security audits, with WAF evasion capabilities and comprehensive report generation.
github.com
Main features
- Multifaceted detection :
- DOM-based and reflected XSS
- Context-aware payloads (identifies the injection context)
- Advanced WAF evasion techniques (Cloudflare, Cloudfront, etc.)
- Intelligent engine :
- Dynamic payload generation
- Automatic detection of WAFs
- Modo headless con Puppeteer/Playwright
- Professional reporting :
- Reports in HTML, PDF and JSON
- Detailed explanation of vulnerabilities
- Ready-to-test exploitation URLs.
GitHub - HackUnderway/xss_scanner: Herramienta avanzada de escaneo XSS (Cross-Site Scripting) para auditorías de seguridad web, con capacidades de evasión de WAF y generación de reportes completos.
Herramienta avanzada de escaneo XSS (Cross-Site Scripting) para auditorías de seguridad web, con capacidades de evasión de WAF y generación de reportes completos. - HackUnderway/xss_scanner