← Back to match
XSSRecon
Automates testing URL parameters for reflected XSS and how special characters are handled.
Desktopfreeglobal
XSSRecon automates testing URL parameters for reflected XSS by checking both the raw HTTP response and JavaScript-rendered DOM via headless Chrome, and reports how special characters are handled — allowed, blocked, or converted. It's for penetration testers and bug bounty hunters who want to test reflected XSS across many parameters automatically instead of checking each one by hand.
Categories
security toolspenetration testingweb security

