FinDOM-XSS : A Fast DOM Based XSS Vulnerability Scanner With Simplicity

FinDOM-XSS is a tool that allows you to finding for possible and/ potential DOM based XSS vulnerability in a fast manner.

Installation

$ git clone https://github.com/dwisiswant0/findom-xss.git

Dependencies: LinkFinder

Configuration

Change the value of LINKFINDER variable (on line 3) with your main LinkFinder file.

Usage

To run the tool on a target, just use the following command.

$ ./findom-xss.sh https://target.host/about-us.html

This will run the tool against target.host.

URLs can also be piped to it and scan on them. For example:

$ cat urls.txt | ./findom-xss.sh

The second argument can be used to specify an output file.

$ ./findom-xss.sh https://target.host/about-us.html /path/to/output.txt

By default, output will be stored in the results/ directory in the repository with target.host.txt name.

Also Read – EvilDLL – Malicious DLL (Reverse Shell) Generator For DLL Hijacking

License

It is licensed under the Apache. Take a look at the LICENSE for more information.

Thanks

R K

Recent Posts

How to Install Java on Ubuntu 24.04 Easily in 2026

Java remains one of the most widely used programming platforms for servers, enterprise applications, Android…

2 hours ago

How to Install DEB Files on Ubuntu in 2026 (Step-by-Step Beginner Guide)

Ubuntu users often download software directly from developer websites instead of using the default app…

2 hours ago

Things to Do After Installing Ubuntu 26.04 LTS for a Fast, Secure Setup

Installing Ubuntu 26.04 LTS is only the first step toward building a smooth, secure, and…

2 days ago

How to Prevent Software Supply Chain Attacks

What is a Software Supply Chain Attack? A software supply chain attack occurs when a…

1 month ago

How UDP Works and Why It Is So Fast

When people ask how UDP works, the simplest answer is this: UDP sends data quickly…

2 months ago

How EDR Killers Bypass Security Tools

Endpoint Detection and Response (EDR) solutions have become a cornerstone of modern cybersecurity, designed to…

2 months ago