Hi FD, I am glad to present a new release of this tool: - https://xsser.03c8.net --------- "Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications. It provides several options to try to bypass certain filters and various special techniques for code injection." --------- XSSer has pre-installed [ > 1500 XSS ] attacking vectors and can bypass-exploit code on several browsers/WAFs: - [Cloudflare] Cloudflare WAF - [Akamai] Akamai (Kona / App & API Protector) - [AWS] AWS WAF - [Azure] Azure Front Door WAF - [Imperva] Imperva (Incapsula / Cloud WAF) - [F5] F5 BIG-IP ASM / Advanced WAF - [Barracuda] Barracuda WAF - [ModSec] Mod-Security + OWASP CRS v3 - [Wordfence] Wordfence (WordPress) - [Sucuri] Sucuri (CloudProxy) - [FortiWeb] Fortinet FortiWeb - [WebKnight] AQTRONIX WebKnight --------- This release (v1.9) called "Bl4ck Swarm!" has added this new changes: https://github.com/epsylon/xsser/blob/master/doc/CHANGELOG --------- Code/Packages: * [source]: - https://code.03c8.net/epsylon/xsser --- * [mirror1]: - https://github.com/epsylon/xsser * [mirror2]: - https://sourceforge.net/p/xsser/code/ci/master/tree/ -------- * [.zip]: - https://xsser.03c8.net/xsser/xsser-1.9.zip * [.tar.gz]: - https://xsser.03c8.net/xsser/xsser-1.9.tar.gz --- * [.tar.gz.torrent] - https://xsser.03c8.net/xsser/xsser-1.9.tar.gz.torrent * [.zip.torrent] - https://xsser.03c8.net/xsser/xsser-1.9.zip.torrent ------------------------- Happy "Cross" Hacking! ;-)
Attachment:
OpenPGP_0xB3C1FD78B8AC3776.asc
Description: OpenPGP public key
Attachment:
OpenPGP_signature.asc
Description: OpenPGP digital signature
_______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: https://seclists.org/fulldisclosure/