JSPrime GitHub Download: jsprime
JSPrime main function points
1, support positioning analysis JS framework or library Source and Sinks;
3, variable and function tracking and positioning;
4, variable and function range limit analysis;
5, identify the known filter function;
6, object-oriented (OOP) analysis and prototype code design compliance;
7, the minimum false alarm rate;
8, support Minified.js library (the library features include DOM operations, events, animation, cookies and HTTP requests);
9, rapid analysis of retrieval capabilities;
10, click-type operation (tools without a variety of complex operations, easy to use).
1, Web-side operation
Open “in the browser index.html .”
2, the server-side operation
(1) If there is no installation Node.js, please visit: Node.js official website to download;
(2) to complete the first step, in the terminal to open the file from GitHub previously downloaded server.js, the specific command is as follows,
(3) After the server is turned on, enter in your browser: 127.0.0.1:8888.
DOM XSS analysis
- View result
Open “index.html” in your browser.
Click Dynamic Execute