epsylon / xsser

Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.
https://xsser.03c8.net
1.17k stars 238 forks source link

Project status on OWASP website #10

Closed walterdolce closed 8 years ago

walterdolce commented 8 years ago

Hi,

I see a new version (1.7) has been released but on the OWASP Xsser project page they state Xsser is an inactive project. I think the community would benefit from seeing the project is alive and thriving.

Is there any chance it could be "brought back to life" on the OWASP website?

Additionally, the current Kali Linux distribution ships with xsser 1.6. I'm not sure whether a revamp of the project status on the OWASP website would make any difference for that.

epsylon commented 8 years ago

Hey, I know it...Thanks! Actually I commited a request 1 month ago about it to update that info. I just receive a reply from 'Kate' telling me about that this task is currently on going. I will send another email...

About Kali linux, there is a ticket to upgrade it here: https://bugs.kali.org/view.php?id=3177

walterdolce commented 8 years ago

I see, didn't know that.

I guess we're sorted then and should only wait to hearing from them ;)

Will close this. Thanks!

epsylon commented 8 years ago

And we hope that this time Kali Linux packagers will try to implement correctly XSSer map. Much better to packate it with map on local, so no need to download it from external sources, that is a common problem for 'newbies'. I mean, try to implement geoip libs better for distribution in general...

epsylon commented 8 years ago

Thanks for report it :-)

walterdolce commented 8 years ago

And we hope that this time Kali Linux packagers will try to implement correctly XSSer map

Are they aware of the best way to bundle it within the distro?

epsylon commented 8 years ago

I don't know. We should pay attention to see how it is implemented this time and give a solution directly to tracker if is not correctly...

walterdolce commented 8 years ago

I agree. I can send them an email too and see how it goes..

epsylon commented 8 years ago

That sounds good!

epsylon commented 8 years ago

Actually geoip lib was updated reciently on Kali distribution based OS (Debian):

[....] Package: geoip-database Version: 20160408-1 Installed-Size: 5437 Maintainer: Patrick Matthäi pmatthaei@debian.org [....]