Tools
Tool · dast/web-app-scanneractivelicence

XSRFProbe

A Python CSRF audit toolkit that crawls a target web app and runs 25+ checks for anti-CSRF token weaknesses, referer/origin validation bypasses and SameSite cookie issues, generating exploitable PoC payloads and JSON reports. GPLv3, v3.0.0, actively maintained.

Use responsibly

Test only systems you own or are explicitly authorized to test. Unauthorized testing is illegal.

More tools