Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
snuck — Automatic XSS filter bypass | Kitploit
Tools/GitHubGitHub/mauro-g/snuck
Web Application ExploitationWAF BypassWeb SecurityFuzzingPenetration Testing
GitHubmauro-g/snuck

snuck

Automatic XSS filter bypass

View Repository
9045411 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

snuck

Automatic XSS filter bypass

Overview

snuck is an automatic tool whose goal is to significantly test a given XSS filter by specializing the injections on the basis of the reflection context. This approach adopts Selenium to drive a web browser in reproducing both the attacker and the victim behavior.

Learn about snuck

Visit the tutorial for further information about the tool and the user guide.

Research papers

The methodology, evaluation, and implementation of snuck is described in a technical report:

  • Fabrizio d'Amore, Mauro Gentile: Automatic and Context-Aware Cross-Site Scripting Filter Evasion. Department of Computer, Control, and Management Engineering Antonio Ruberti Technical Reports, Technical Report n. 4, Sapienza University of Rome, 2012. [Paper]

Notes

The project is no longer under active development since June 2013, and it was exported from Google Code. Latest code changes were applied to the 0.1.1 branch.

snuck is released under the Apache 2.0 license.

Download Tool