JohnTroony / php-webshells
Common PHP webshells you might need for your Penetration Testing assignments or CTF challenges. Do not host the file(s) on your server!
☆1,883Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for php-webshells
- PHP Webshell with handy features☆2,397Updated last year
- Weaponized web shell☆3,188Updated 3 weeks ago
- Various webshells. We accept pull requests for additions to this collection.☆890Updated last year
- Webshell && Backdoor Collection☆1,820Updated 4 years ago
- WebShell Collect☆381Updated 8 years ago
- Miscellaneous exploit code☆1,517Updated last year
- Web Shell Detector – is a php script that helps you find and identify php/cgi(perl)/asp/aspx shells. Web Shell Detector has a “web shells…☆813Updated 9 years ago
- Rip web accessible (distributed) version control systems: SVN/GIT/HG...☆1,701Updated 3 months ago
- Linux Exploit Suggester; based on operating system release number☆1,777Updated 10 years ago
- JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool☆2,419Updated 4 years ago
- Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor☆2,212Updated 6 months ago
- A collection of PHP exploit scripts, found when investigating hacked servers. These are stored for educational purposes and to test fuzze…☆836Updated 8 months ago
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,696Updated 2 years ago
- A collection of PHP backdoors. For educational or testing purposes only.☆2,206Updated 8 months ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,537Updated 4 years ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,573Updated 3 weeks ago
- Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supp…☆1,384Updated 10 months ago
- A Ruby framework designed to aid in the penetration testing of WordPress systems.☆1,018Updated 4 years ago
- PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.☆3,229Updated last month
- MS17-010☆2,143Updated last year
- Automated All-in-One OS Command Injection Exploitation Tool.☆4,596Updated this week
- Windows exploits, mostly precompiled. Not being updated. Check https://github.com/SecWiki/windows-kernel-exploits instead.☆1,825Updated 4 years ago
- Detect potentially malicious PHP files☆1,469Updated last year
- Simple reverse ICMP shell☆1,559Updated 6 years ago
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆3,963Updated last year
- Privilege Escalation Project - Windows / Linux / Mac☆2,444Updated last month
- A semi-interactive PHP shell compressed into a single file.☆891Updated 6 years ago
- The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.☆3,025Updated 4 years ago
- WAFNinja is a tool which contains two functions to attack Web Application Firewalls.☆796Updated 6 years ago
- OWASP Joomla Vulnerability Scanner Project https://www.secologist.com/☆1,075Updated last month