{"repo":"anishalx/ExploiterX","free":true,"listed":false,"github":"https://github.com/anishalx/ExploiterX","clone":"git clone https://github.com/anishalx/ExploiterX.git","description":"ExploiterX is a lightweight, customizable vulnerability scanner designed to detect security weaknesses in web applications. This tool crawls target websites, identifies potential links and forms, and checks for Cross-Site Scripting (XSS) vulnerabilities, helping security researchers and developers find exploitable points in their web applications.","language":"Python","stars":16,"topics":["bugbounty","bugbounty-tool","crawler","pentesting","pyhton3","python","scanner","scanner-web"],"license":"MIT","category":"security-tools","readme_excerpt":"ExploiterX 3.0 - Professional Web Vulnerability Scanner A professional, enterprise-grade web vulnerability scanner for security professionals and developers. Detects XSS, SQL Injection, CSRF, XXE, Path Traversal, Open Redirect, Command Injection, and security misconfigurations with advanced scanning capabilities. 🎯 Features Vulnerability Detection - XSS (Cross-Site Scripting) : 20+ payload variants including DOM-based, event handlers, and encoding bypasses — detects raw, HTML-encoded, and URL-encoded reflections - SQL Injection : Multiple payload types (boolean-based, UNION-based, error-based) plus time-based blind detection using response timing - XXE (XML External Entity) : 10+ XXE payload variants including blind XXE and file read attempts - Path Traversal : Directory traversal detection with Unix, Windows, and encoded payloads - Open Redirect : Redirect payloads with reflection and cross-host validation (no false positives on benign same-host redirects) - Command Injection : Output-pattern detection plus time-based detection for blind command execution - CSRF Vulnerabilities : CSRF token detection and missing token identification - Security Headers & Cookies : Missing header analysis plus weak CSP / X-Frame-Options checks and cookie flag analysis (HttpOnly, Secure, SameSite) Advanced Capabilities - Command-Line Interface : Fully scriptable non-interactive scans ( --url , --format , --output , --threads , and more) - Concurrent Scanning : Thread pool-based parallel scanni","default_branch":null,"files":null,"tree":[],"storefront":"/r/anishalx","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/anishalx/ExploiterX/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}