edoardottt / edoardottt/pphack
Automatic Prototype Pollution Exploitation
Open
enhancement
good first issue
help wanted
- Dominant language
- Go
- Stars
- 251
- Forks
- 26
- Avg merge
- 3d 12h
- Merged PRs (30d)
- 7
Description
The desired behavior would be having a new flag `-e` (`-exploit`) in scan input.
pphack then will try to produce a PoC URL for the exploit (e.g. XSS) based on the vulnerable technology.
Are we sure about chromedp alert box detection? maybe js detection is better...
- WAF checks?
- Check JSON output too.
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.