hahwul / dalfox
🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
AI Architecture Analysis
This repository is indexed by RepoMind. By analyzing hahwul/dalfox in our AI interface, you can instantly generate complete architecture diagrams, visualize control flows, and perform automated security audits across the entire codebase.
Our Agentic Context Augmented Generation (Agentic CAG) engine loads full source files into context on-demand, avoiding the fragmentation of traditional RAG systems. Ask questions about the architecture, dependencies, or specific features to see it in action.
Repository Overview (README excerpt)
Crawler viewDalfox is a powerful open-source tool that focuses on automation, making it ideal for quickly scanning for XSS flaws and analyzing parameters. Its advanced testing engine and niche features are designed to streamline the process of detecting and verifying vulnerabilities. Key features • Modes: , , , , , • Discovery: Parameter analysis, static analysis, BAV testing, parameter mining • XSS Scanning: Reflected, Stored, DOM-based, with optimization and DOM/headless verification • HTTP Options: Custom headers, cookies, methods, proxy, and more • Output: JSON/Plain formats, silence mode, detailed reports • Extensibility: REST API, custom payloads, remote wordlists And the various options required for the testing :D Installation Homebrew (macOS/Linux) Snapcraft (Ubuntu) Nixpkgs (NixOS) A package is available for Nix or NixOS users. Keep in mind that the latest releases might only be present in the channel. From Source See Installation guide for details. Usage • Single URL: • File Mode: • Pipeline: Check the Usage and Running documents for more examples. Contributing if you want to contribute to this project, please see CONTRIBUTING.md and Pull-Request with cool your contents. About the Name As for the name, Dal(달) is the Korean word for "moon," while "Fox" stands for "Finder Of XSS" or 🦊