Reflective/DOM XSS scanner built on casperJS
JavaScript
Switch branches/tags
Nothing to show
Latest commit 9dcd70a Oct 21, 2014 @gabemarshall Removing debug files
Permalink
Failed to load latest commit information.
.gitignore
README.md
intro.txt
rsnake.txt
xss.js

README.md

casperXSS v0.1.1

DOM XSS scanner built with casperJS

Expected Usage

Example #1

casperjs xss.js --url='http://example.com?param1=vuln&param2=somevalue'

Example #2 - Using Cookie jar (JSON format)

casperjs xss.js --url='http://example.com?param1=vuln&param2=somevalue' --cookiejar=path/to/cookiejar

Install

  1. Install casperJS
  2. Clone this repo

Credit: Rsnake for the xss payloads