{"repo":"dimasma0305/CTF-XSS-BOT","free":true,"listed":false,"github":"https://github.com/dimasma0305/CTF-XSS-BOT","clone":"git clone https://github.com/dimasma0305/CTF-XSS-BOT.git","description":"Craft engaging XSS challenges effortlessly with CTF-XSS-BOT. This template simplifies setting up an environment for Capture The Flag competitions. Simulate admin actions using Puppeteer and control interactions with rate limiting.","language":"JavaScript","stars":46,"topics":["bot","capture-the-flag","ctf","ctf-challenges","nodejs","puppeteer","security","web-security","xss"],"license":"MIT","category":"scrapers-browser-automation","readme_excerpt":"CTF-XSS-BOT CTF-XSS-BOT is a flexible template designed for crafting Cross-Site Scripting (XSS) challenges in Capture The Flag (CTF) competitions. This project provides a foundation for effortlessly setting up an environment to host XSS challenges, while utilizing Puppeteer to simulate web browser behavior. Features - Customize APP Name: Easily set a custom application name to match your challenge theme. - White List URL By Regex: Define a regex pattern to whitelist specific URLs for challenge interaction. - Rate Limiting: Prevent abuse with built-in rate limiting to control participant interactions. - Automated Browser Extension Installation: Automatically install the browser extension. Usage 1. Clone this repository: 2. Customize the source code of your challenge at ./src/ . 3. Configure the parameters in docker-compose.yaml : 4. Deploy the template using Docker Compose: 5. Your ./src will be hosted at http://localhost/, and the bot can be accessed at http://localhost/report. Customize your XSS challenges and empower participants to master web security. 6. If you want to add a browser extension, you can add a extension folder in ./bot/extensions , the extension will be automatically installed when the bot is started.","default_branch":null,"files":null,"tree":[],"storefront":"/r/dimasma0305","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/dimasma0305/CTF-XSS-BOT/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}