• Home
  • Most Popular
  • Submit
  • About Us
  • Contact Us

Softpile

Free Downloads

Categories
  • Home
  • Most Popular
  • Communications
  • Desktop
  • Games & Entertainment
  • Graphic Apps
  • Network & Internet
  • Security & Privacy
  • System Utilities
Alternative to itextsharp 2022.11.10347
IronPDF offers an itextsharp alternative for HTML to PDF conversion with C# code examples, documentation, and ...
VShell Server for Linux and Mac 4.8
VShell is a versatile and secure file transfer server that supports multiple protocols and is compatible ...
PDF Studio PDF Editor for Linux 2022
PDF Studio is a cost-effective PDF editor that delivers full compatibility with the PDF Standard. It's ...
VQ Probe for Linux 1.5
VQ Probe is a comprehensive software tool that enables objective and subjective video quality analysis. The ...
Resilient Server 2.3
This Debian GNU/Linux (Buster) based software has a customized partitioning scheme that enhances robustness against filesystem ...
Valentina Studio for Linux 9.6
Valentina Studio is a cross-platform GUI manager for Mac, Windows, and Linux. It allows users to ...
VPN Lifeguard for Linux 1.0.58
The software monitors VPN connection and automatically terminates apps during connection loss, re-establishes the connection and ...
G_Viewer 0.84
G_Viewer is a Linux software that serves as both a file system and photo/image viewer. It ...
Checksome File Hash Tool for Linux 1.1
This software allows for the generation and verification of file hashes. It is a quick and ...
KeyWrangler Password Manager for Linux 1.2
A password management software that is secure, offline and extensible. It offers military-grade encryption to protect ...
Home Linux XSS Shell Download

XSS Shell

April 5, 2007
XSS Shell is an effective backdoor for XSS, designed to provide powerful control over web servers to hackers.
Version 0.3.9
License GPL
Platform Linux
Supported Languages English
Homepage www.portcullis-security.com
Developed by Ferruh Mavituna
XSS Shell script is a powerful software that allows the user to interactively gain control over a Cross-site Scripting (XSS) vulnerability in a web application. By doing so, it demonstrates the real power and damage of Cross-site Scripting attacks.

This latest release of XSS Shell comes with a key and advanced feature called "Regenerating Pages." It re-renders the infected page and keeps the user in a virtual environment, making sure that even if the user clicks any links in the infected page, they will still be under control (within cross-domain restrictions). In a normal XSS attack, when the user leaves the page, there is nothing that the attacker can do. This feature also keeps the session open, so even if the victim follows an outside link from the infected page, the session is not going to time out, and the attacker will still be in charge.

Another valuable feature of XSS Shell is its keylogger functionality. The software has a mouse logger, including click points and the current DOM. There are pre-built commands in the software that allow users to retrieve essential data, execute supplied javaScript (eval), check victim's visited URL history, and Force to Crash victim's browser.

There are certain limitations, though. The keylogger is not working on IE, and the software may not work for framed pages due to frame regeneration. Additionally, it does not work on Konqueror.

The latest version of XSS Shell has added two new features that enhance the already impressive capabilities of the software. The software now comes with a connection drop timeout check, which means that if the user's XSS Shell server is down or the connection is dropped because of the victim, it'll try to repair itself. The DoS and Crash commands have also been added to the software, ensuring that it has everything you need to launch full-fledged attacks.

Overall, if you're looking to conduct Cross-site Scripting attacks on web applications, XSS Shell is an outstanding tool that you won't want to be without.
What's New

Version 0.3.9: N/A

Free Download 850K
300
  • Share on:

Most Popular

  1. Quicksilver Forums 1.4.2
    154
  2. Dvgrab 3.4
    102
  3. DynVPN 1.0
    89
  4. CherryTV 0.1
    81
  5. SlideMap 1.2.2
    80
  6. porm r2
    73
  7. Clewarecontrol 0.8
    72
  8. Java Games 1.0
    72
  9. Swiftfox 3.0b5pre-2
    71
  10. fuseftp 0.8
    71

Related Downloads

XQuark Bridge
XQuark Bridge enhances relational databases by integrating XML relational mapping with XQuery ...
Postgres Plus
PostgreSQL distribution with open source add-ons pre-packaged for convenience.
Really Slick XScreenSavers
Really Slick XScreenSavers provides visually stunning graphics for X11 display systems. Its ...
Image::ExifTool::XMP
This software enables the reading of XMP metadata.
MAME
The Multiple Arcade Machine Emulator is a software that allows users to ...
Timemachine
Timemachine software captures complete data for high-volume network traffic streams.
OzOS
OzOS is a stable and user-friendly Enlightenment (e17 build from CVS) Live ...
Shobogenzo
Shobogenzo is a comfortable and medium-contrast color scheme designed specifically for Vim ...
sapplay
Sapplay is a software program that functions as a console player by ...
GluCat
This software is a library of templates for universal Clifford algebra. It ...
Copyright © 1999-2025 Softpile Free Downloads
  • Most Popular
  • Submit
  • About Us
  • Contact Us
  • Privacy Policy
  • Disclaimer
  • Terms of Use

Can we use your data to tailor ads for you?

Our partners will collect data and use cookies for ad personalization and measurement.

By choosing "I agree", closing this pop-up or clicking on any element on the page, you agree to the use of cookies to help us provide you with a better user experience.

Learn how Softpile and our partners collect and use data.

You can change your choice at any time in our privacy center.

Cookie Settings

Our website stores four types of cookies. At any time you can choose which cookies you accept and which you refuse. You can read more about what cookies are and what types of cookies we store in our Cookie Policy.

are necessary for technical reasons. Without them, this website may not function properly.

are necessary for specific functionality on the website. Without them, some features may be disabled.

allow us to analyse website use and to improve the visitor's experience.

allow us to personalise your experience and to send you relevant content and offers, on this website and other websites.