Find the XSS path your filters missed.
web security
Guides advanced XSS testing with context-specific payloads, bypass techniques, and post-exploitation methods.
When to use it
Use when user-controlled content reaches browser-rendered contexts, DOM sinks, uploads, or multi-context rendering paths.
It changes how the agent tests XSS entry points by identifying context, selecting payloads, probing filters, and choosing escalation paths.
This skill
Hello Dolly plugin
Overwrites a WordPress plugin (irreversible)
victim web account
Changes a victim account email (irreversible)
target web application
Submits XSS probes to targets
attacker-controlled server
Exfiltrates browser data remotely
No setup requirements listed in the analysis.