본문 바로가기
모의해킹 (WAPT)

XSSS: Cross Site Scripting Scanning

by 날으는물고기 2011. 9. 8.

XSSS: Cross Site Scripting Scanning

XSSS Software is a brute force cross site scripting scanner. developed by Sven. We hope soon the new and improved version is released with more features.

Features

  • Crawl website
  • Detect forms and URLs with parameters
  • Fill in forms, alter parameters to include control characters
  • Scan web server response for our input

What does it look for

  • Code in web pages
  • JavaScript aka JScript, ECMAScript
  • VBScript
  • Exploits for browser security hole:
  • Buffer overruns,
  • Java sandbox holes,
  • ActiveX components marked as “safe”.

Download:

XSSS v0.4.0b  – http://www.sven.de/xsss/xsss-0.40b.tar.gz



출처 : PenTestIT
728x90

댓글