• Stars
    star
    158
  • Rank 237,131 (Top 5 %)
  • Language
    Python
  • License
    MIT License
  • Created over 5 years ago
  • Updated over 1 year ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

XSSCon: Simple XSS Scanner tool


A powerful XSS scanner made in python 3.7

Installing

Requirements:

  • BeautifulSoup4
  • pip install bs4
  • requests
  • pip install requests
  • python 3.7

  • Commands:
    git clone https://github.com/menkrep1337/XSSCon
    chmod 755 -R XSSCon
    cd XSSCon
    python3 xsscon.py --help 

    Usage

    Basic usage:

    python3 xsscon.py -u http://testphp.vulnweb.com

    Advanced usage:
    python3 xsscon.py --help

    Main features

    • crawling all links on a website ( crawler engine )
    • POST and GET forms are supported
    • many settings that can be customized
    • Advanced error handling
    • Multiprocessing support.βœ”οΈ
    • ETC....

    Screenshot

    Roadmap

    v0.3B:

  • Added custom options ( --proxy, --user-agent etc... )

  • v0.3B Patch:

  • Added support for ( form method GET )
  • v0.4B:

  • Improved Error handling
  • Now Multiple parameters for GET method is Supported
  • v0.5 Release (Final):

    • Bug fixed
    • Now cookies is supported. (--cookie {})

    Note

    • Sorry for my bad english
    • if you run xsscon on the win10 terminal you will get an untidy output
    • now it doesn't support DOM