{"id":23010041,"url":"https://github.com/dmdhrumilmistry/xss-data-harvestor","last_synced_at":"2026-02-01T22:32:38.303Z","repository":{"id":104977952,"uuid":"522897819","full_name":"dmdhrumilmistry/XSS-Data-Harvestor","owner":"dmdhrumilmistry","description":"Hijack Cookies by exploting XSS vulnerable applications","archived":false,"fork":false,"pushed_at":"2022-08-20T19:12:05.000Z","size":11,"stargazers_count":4,"open_issues_count":0,"forks_count":0,"subscribers_count":2,"default_branch":"main","last_synced_at":"2025-04-23T00:43:47.013Z","etag":null,"topics":["cookie-hijack","flask","flask-api","flask-sqlalchemy","python3","xss","xss-exploitation","xss-vulnerability"],"latest_commit_sha":null,"homepage":"","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/dmdhrumilmistry.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null}},"created_at":"2022-08-09T10:12:55.000Z","updated_at":"2024-11-26T12:11:57.000Z","dependencies_parsed_at":null,"dependency_job_id":"46537800-4d6e-4fe6-97f1-257c730d956a","html_url":"https://github.com/dmdhrumilmistry/XSS-Data-Harvestor","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"purl":"pkg:github/dmdhrumilmistry/XSS-Data-Harvestor","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/dmdhrumilmistry%2FXSS-Data-Harvestor","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/dmdhrumilmistry%2FXSS-Data-Harvestor/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/dmdhrumilmistry%2FXSS-Data-Harvestor/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/dmdhrumilmistry%2FXSS-Data-Harvestor/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/dmdhrumilmistry","download_url":"https://codeload.github.com/dmdhrumilmistry/XSS-Data-Harvestor/tar.gz/refs/heads/main","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/dmdhrumilmistry%2FXSS-Data-Harvestor/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":28993253,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-02-01T22:01:47.507Z","status":"ssl_error","status_checked_at":"2026-02-01T21:58:37.335Z","response_time":56,"last_error":"SSL_connect returned=1 errno=0 peeraddr=140.82.121.5:443 state=error: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["cookie-hijack","flask","flask-api","flask-sqlalchemy","python3","xss","xss-exploitation","xss-vulnerability"],"created_at":"2024-12-15T09:16:47.749Z","updated_at":"2026-02-01T22:32:38.295Z","avatar_url":"https://github.com/dmdhrumilmistry.png","language":"Python","funding_links":[],"categories":[],"sub_categories":[],"readme":"# XSS-Data-Harvestor\n\nHarvest data from XSS vulnerabilites to XSS-Data-Harvestor API\n\nExample: Hijack Cookies by exploting XSS vulnerable applications to dump and retreive data over the internet using ssh tunelling or on hosted platform.\n\n## Installation\n\n- Install [Python](https://python.org/)\n\n- Install requirements\n\n  ```bash\n  python -m pip install -r requirements.txt\n  ```\n\n## Start Applications\n\n- using flask\n\n  ```bash\n  python app.py # debug mode\n  ```\n\n- Using gunicorn wsgi\n\n  ```bash\n  gunicorn wsgi:app --bind 0.0.0.0:5000\n  ```\n\n## Endpoints\n\n|       Endpoint       |  Methods  | Description                                                        |\n| :------------------: | :-------: | :----------------------------------------------------------------- |\n|        /api/         |    \\*     | API home                                                           |\n|     /api/hacked      | GET, POST | accepts hacked data in json/form data format or from url parameter |\n| /api/get_hacked_data |    GET    | returns hacked data in json format                                 |\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fdmdhrumilmistry%2Fxss-data-harvestor","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fdmdhrumilmistry%2Fxss-data-harvestor","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fdmdhrumilmistry%2Fxss-data-harvestor/lists"}