Nickguitar / YAPS
Yet Another PHP Shell - The most complete PHP reverse shell
β79Updated 2 years ago
Alternatives and similar repositories for YAPS:
Users that are interested in YAPS are comparing it to the libraries listed below
- LFITester is a Python3 program that automates the detection and exploitation of Local File Inclusion (LFI) vulnerabilities on a server.β106Updated last month
- π WSOB is a python tool created to exploit the new vulnerability on WSO2 assigned as CVE-2022-29464.β26Updated last year
- WPXStrike is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticalsβ¦β64Updated last year
- γπ₯γCVE-2022-33891 - Apache Spark Command Injectionβ27Updated 2 years ago
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.β47Updated 2 years ago
- γπγBug Bounty Tricksβ37Updated last year
- π Primefaces 5.X EL Injection Exploit (CVE-2017-1000486)β19Updated last year
- PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)β87Updated 2 years ago
- Offensive Security MISC Annotations and Payloads for Ethical Hackers / Security Researchersβ27Updated last month
- Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerabilityβ79Updated 10 months ago
- Just another script for automatize boolean-based blind SQL injections. (Demo)β53Updated 2 years ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.β67Updated 10 months ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to β¦β49Updated 2 years ago
- β16Updated 3 years ago
- A couple of different scripts, made to automate attacks against NoSQL databases.β61Updated 10 months ago
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.β35Updated last year
- β31Updated 2 years ago
- HTTP verb tampering & methods enumerationβ54Updated 2 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.β42Updated 10 months ago
- Tips, Tricks, and Scripts for Linux Post Exploitationβ38Updated last year
- this script will help you find favicon hashes which you can use to shodan to get more details about an assetβ28Updated 11 months ago
- A websocket-based reverse (javascript) shell for XSS attacks.β29Updated 2 years ago
- β71Updated 8 months ago
- Script for Bug Bountyβ28Updated 3 years ago
- Compilation of scripts/tools (made by me or not) that help me with Pentest and Bug Bounty.β28Updated 2 months ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.β39Updated 2 years ago
- γπͺγLinux Backdoor based on ICMP protocolβ60Updated last month
- Joomla! < 4.2.8 - Unauthenticated information disclosureβ82Updated last year
- β43Updated last year