Skip to content

bucktoothsir/DOMXSS_Detection

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

32 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

DOMXSS_Detection

Static DOM XSS detector.

Setup

Setting up the environment

# Creating the virtual environment
python3 -m venv .env

# Activating the virtual environment
source .env/bin/activate

Installing dependencies

pip3 install -r requirements.txt

Download webdriver

Put in $project_dir/drivers

Run

scan by payload

# start a HTTP Server
python3 tests/get_html_file.py
# scan our local test HTML file by payload, 
python domxss_detect.py http://127.0.0.1:5000/LocationHashEval.html --rule payload

scan by regular expression

python domxss_detect.py http://127.0.0.1:5000/LocationHashEval.html --rule reg --res_file scan_by_reg.txt

About

Detect Dom-XSS based on static method.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published