XSS-Me 0.3.0
The Cross-Site Script Me (XSS-Me) tool allows the user to test their web applications against common XSS vulnerabilities. XSS Me 0.3 features a number of improvements:
- Heuristic Testing. Test pages faster by having XSS Me check which fields are unlikely to be vulnerable and eliminate them.
- Nicer reports. We've embedded all the styling information right into the reports.
- Better progress reporting. Find out how many tests have been run and how many are still to be done.
- Lots of bug fixes.
- Remove securitycompass.com entries from XSS Strings file. These can be downloaded in an extension file and altered if needed. Note: if you have a copy of XSS-Me installed already this update won't change your XSS String list. You will need to remove the strings that reference securitycompass.com by hand. To make this easier you can download the XSS Strings file. Then, in the options dialog select all strings and remove them. Once that's done, import the downloaded list.
XSS-Me 0.3.0 is available here.
