Your arrow to get your fire!
1.1K
A powerful XSS callback catcher with Telegram integration.
When running the Docker container, you MUST use your VPS's public IP address to get callback XSS.
When running the Docker container, you MUST use your localhost IP address to get callback XSS.
When running the Docker container, you MUST use your machine IP address to get callback XSS.
1. Payload Type
2. Target URL
3. Origin
4. Pathname
5. User Agent
6. Cookies
7. Local Storage
8. Referrer
9. Source IP
10. Timestamp
When a FIRE (indicating a successful XSS detection) is received, the tool provides:
- Complete callback information
- Screenshot of the vulnerable page
- Real-time delivery via Telegram chat
Command:
docker run --rm -it -p 5123:5123 anonre/xsshak-pro -t <telegram_token> -c <telegram_chat_id>Content type
Image
Digest
sha256:afe7e71a0…
Size
351.2 MB
Last updated
about 1 year ago
docker pull anonre/xsshak-pro