DOM XSS Highlighter — Pro
Highlights user-controlled reflections in DOM to help detect risky contexts. Run only on sites you own or may test.
Stop manually searching source code. Start hunting. LPR (Live Params & Redirects) is an all-in-one reconnaissance and…
按已采集快照查看用户数变化。
展示最近 7 日窗口内已采集的评分快照,辅助判断近期评分是否稳定。
同口径展示 1 天、7 天、30 天的绝对增长与增长率。
查看发布时间、版本、支持语言、最近更新和抓取时间。
查看插件说明、主要功能和适用场景。
Stop manually searching source code. Start hunting.
LPR (Live Params & Redirects) is an all-in-one reconnaissance and vulnerability scanning assistant designed for Bug Bounty Hunters, Penetration Testers, and Web Developers.
Instead of wasting time inspecting elements and grepping through minified JavaScript files, LPR automatically extracts and categorizes every potential injection point and hidden asset on the page.
🚀 Key Features:
🕵️♂️ Deep Parameter Extraction: Automatically scrapes parameters from HTML forms, DOM inputs, and JavaScript variables (var, let, const).
🔗 Advanced Asset Discovery: Digs into external .js files to find full URLs (S3 buckets, API endpoints) and hidden Routes (e.g., /api/v1/admin) that are invisible in the UI.
查看最近评论和评分分布。
商店综合星级:5.0。下方星级分布只统计已同步评论正文;如果某个插件只有公开分数、没有真实评论正文,这里可能为空。
查看 Chrome 商店详情页中的相关产品。
Highlights user-controlled reflections in DOM to help detect risky contexts. Run only on sites you own or may test.
Adds a widget to GitLab merge request page showing vulnerabilities detected by Container Scanning.
Analyze page scripts for bug bounty reconnaissance.
Professional bug hunting and penetration testing toolkit with essential security tools
Reconnaissance toolkit for Wayback Machine archives. Extract URLs, subdomains, parameters, and sensitive files.
CyberPad: Your Ultimate Security, Development & Pen-testing Notepad
best extension
عالی بود تمام پارامترها و جاهای مشکوک رو شناسایی میکنه و سینک های خطرناک برای کشف XSS رو هم پیدا میکنه کار رو سریع تر میکنه خیلی بدردبخور!
Good!
Perfect tool for recon and find redirects sink usefull sinks :)