Skip to content
SecArsenal
Educational and ethical use only. Only test systems you own or are explicitly authorized to test. Full disclaimer.

xssscan-git

Command line tool for detection of XSS attacks in URLs. Based on ModSecurity rules from OWASP CRS.

webappsRed Team
Official docs ↗Download ↗

Platforms: Linux · Last verified September 6, 2026

Command line tool for detection of XSS attacks in URLs. Based on ModSecurity rules from OWASP CRS.

Only use this tool against systems you own or are explicitly authorized to test — see the disclaimer.

Getting started

Install by adding the ArchStrike repository to an existing Arch Linux install, then `pacman -S xssscan-git`. See the official ArchStrike package listing and upstream homepage linked above for details.

Commonly preinstalled on

ArchStrike

Arch Linux-based distribution for penetration testing and security research