Item logo image for XSSassin - Web Security Payload Injector

XSSassin - Web Security Payload Injector

5.0(

5 ratings

)
ExtensionDeveloper Tools64 users
Item media 2 (screenshot) for XSSassin - Web Security Payload Injector
Item media 1 (screenshot) for XSSassin - Web Security Payload Injector
Item media 2 (screenshot) for XSSassin - Web Security Payload Injector
Item media 1 (screenshot) for XSSassin - Web Security Payload Injector
Item media 1 (screenshot) for XSSassin - Web Security Payload Injector
Item media 2 (screenshot) for XSSassin - Web Security Payload Injector

Overview

Security testing: inject payloads into input fields. XSS, SQLi, optional Smart-Injection (heuristic category) and more.

XSSassin: The Ultimate Payload Injector for Pentesters & Bug Bounty Hunters XSSassin is an advanced security testing extension designed specifically for ethical hackers, penetration testers, and security-conscious developers. Seamlessly inject common attack payloads directly into web page input fields to test for vulnerabilities like XSS, SQLi, and moreโ€”all with a single click! ๐Ÿš€ CORE FEATURES: 1. Per-site enable โ€” Stays off until you enable it for the current origin, so normal browsing stays clean. Runs in iframes when enabled (all_frames). 2. Hover inject โ€” Focus a text field, textarea, or contenteditable control; a small control appears so you can inject using your configured defaults. 3. In-page payload panel โ€” Pick payloads by category (built-ins + Custom) without leaving the page. 4. Smart-Injection (optional) โ€” Infers a likely payload category from the field (name, id, placeholder, type, autocomplete, etc.) and page URL. Biases random picks; does not run when you lock a fixed default payload or use Custom โ†’ Random (custom list only). 5. Auto fill all โ€” Fills every matching input on the page. With Smart-Injection on, each field can get a different inferred category. 6. Copy payload โ€” Copies a payload to the clipboard per your rules; with Smart-Injection, prefers the currently focused field when possible. 7. Default & random behavior โ€” Popup lets you set category scope (all categories, one category, or Custom only), optional specific preset, and โ€œRandom (no default)โ€ rules. ๐Ÿ›  WHO IS THIS FOR? Bug Bounty Hunters looking to speed up manual testing. Penetration Testers conducting web application security assessments. QA Engineers and Developers ensuring their forms are sanitized and secure. โš ๏ธ IMPORTANT / DISCLAIMER: XSSassin is built strictly for educational purposes and authorized ethical hacking. Only use this tool on applications you own or have explicit permission to test. The developers assume no liability for misuse.

Details

  • Version
    2.0.1
  • Updated
    May 7, 2026
  • Offered by
    yesmayank
  • Size
    620KiB
  • Languages
    English
  • Developer
    Mayank Mani Tripathi
    MOH MANHAT TARAMANDAL SIDDHARTH ENCLAVE gorakhpur, Uttar Pradesh 273017 IN
    Email
    sismmt09@gmail.com
    Phone
    +91 87662 07451
  • Trader
    This developer has identified itself as a trader per the definition from the European Union and committed to only offer products or services that comply with EU laws.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes
Google apps