Find XSS the easy way! Dalfox - Hacker Tools

preview_player
Показать описание
👨‍💻🛠️​ In this week's episode of Hacker Tools, we will take a look at Dalfox.

00:00 Introduction
00:15 Automating XSS
00:40 What is Dalfox?
02:10 Running Dalfox
04:45 What else can it do?
06:40 Outro

---

Рекомендации по теме
Комментарии
Автор

This is the best xs software i have ever seen

I really feel great!

vgvezfe
Автор

This is definitely fire. But how to we hide its signature ? I see Dalfox populated on my testing machine logs. Not stealthy

tomjohnes
Автор

What bistro of Linux are u using (love it) ?

william_ade
Автор

why i didn't get the ditails over view step by step after scan. it just says issue 6 thats it .but didn't said me the vulnerability, the step and payload the tool user for to find this . but in this video you shows us its tell all the step

tbjehad
Автор

can you suggest some other tools like this?

itsmdud
Автор

Can it work in finding real bug ?
Bcz finding Bugs manually is much difficult ...

malikimranawan
Автор

I can't run the tool how do you run it I get dalfox not a command

CameronNoakes
Автор

in video you say file containing all your endpoints means all URLs with parameters am i right? (time stamp 04:50)

Dhruv-tedy
Автор

Bruh how to run the assetfinder command

techfunky
Автор

Does it also work with xss in input forms? Like comment

mukto
Автор

it dosen't found xss hard challanges ...🤣🤣 specially html encoding or other escape function

learnfirst-
Автор

one of the worst tool i ever encounter in bug bounty

AkashPatel-zdwf
Автор

Nice one... Thanks for sharing (rahulsl)

writecode
Автор

What to do after getting <script> alert(XSS);</script> pop-up because pop-up with cookies 🍪 or <script> document.domain(); </script> pop-up is not suitable to receive bug bounty rewards. Please guide how to escalate reflected XSS to higher levels to earn bounties on hackerOne BugCrowd intigrity etc. Thanks 😊 🤝❤️💫💐😘🥰🌺💥💯👍

Free.Education
Автор

I scan testvul.php site with gau which gave me 2800 urls then scan all those with kxss which gave me 19 vulnerable urls which I gave them to dalfox but it did not find anything. I checked manualy and they were all vunerable. Why this happend. Is this tool realy helpfull.?

jishan
welcome to shbcf.ru