Skip to content

XSSCon is python based vulnerability scanner tools, it primarily designed to scan XSS (persistent and reflected) this tool widely used by beginner in web hacking

License

Notifications You must be signed in to change notification settings

azharrudin/XSSCon

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

45 Commits
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation


A powerful XSS scanner made in python 3.7

Installing

Requirements:

  • BeautifulSoup4
  • pip install bs4
  • requests
  • pip install requests
  • python 3.7

  • Commands:
    git clone /~https://github.com/menkrep1337/XSSCon
    chmod 755 -R XSSCon
    cd XSSCon
    python3 xsscon.py --help 

    Usage

    Basic usage:

    python3 xsscon.py -u http://testphp.vulnweb.com

    Advanced usage:
    python3 xsscon.py --help

    Main features

    • crawling all links on a website ( crawler engine )
    • POST and GET forms are supported
    • many settings that can be customized
    • Advanced error handling
    • Multiprocessing support.✔️
    • ETC....

    Screenshot

    Roadmap

    v0.3B:

  • Added custom options ( --proxy, --user-agent etc... )

  • v0.3B Patch:

  • Added support for ( form method GET )
  • v0.4B:

  • Improved Error handling
  • Now Multiple parameters for GET method is Supported
  • v0.5 Release (Final):

    • Bug fixed
    • Now cookies is supported. (--cookie {})

    Note

    • Sorry for my bad english
    • if you run xsscon on the win10 terminal you will get an untidy output
    • now it doesn't support DOM

    About

    XSSCon is python based vulnerability scanner tools, it primarily designed to scan XSS (persistent and reflected) this tool widely used by beginner in web hacking

    Topics

    Resources

    License

    Stars

    Watchers

    Forks

    Releases

    No releases published

    Packages

    No packages published

    Languages

    • Python 100.0%