psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & web file upload implementations allowing to write files into the webroot (aka document root). The "blind" aspect is the key here and is inherent to dynamic testing usually conducted with no access to the source …
☆19Jun 28, 2018Updated 8 years ago
Alternatives and similar repositories for psycho-path
Users that are interested in psycho-path are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- stdin writes to slack☆13Feb 8, 2020Updated 6 years ago
- LFI/RFI scanner by Iman Karim (fimap.dev@gmail.com)☆10Jul 3, 2015Updated 11 years ago
- A Collection of Proof of Concepts for non-published Web Exploits and Common CVEs☆10Nov 29, 2020Updated 5 years ago
- Misc. Public Reports of Penetration Testing and Security Audits.☆37Jan 8, 2021Updated 5 years ago
- It contain google dork to find the wsdl file.☆13May 27, 2020Updated 6 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A curated list of FOSS software appliances for building a SOC☆18Jan 11, 2021Updated 5 years ago
- Alias for storing ffuf results☆20May 23, 2020Updated 6 years ago
- Pulse SSL VPN Arbitrary File Read burp extension☆25Sep 24, 2019Updated 6 years ago
- ☆18Oct 30, 2022Updated 3 years ago
- Tool for checking reflecting Parameters in a URL.☆10Aug 31, 2020Updated 5 years ago
- GetSimple CMS Custom JS Plugin Exploit RCE Chain☆11Mar 8, 2023Updated 3 years ago
- The aim of the project is to develop intentionally vulnerable source code in various languages.☆16Mar 3, 2026Updated 5 months ago
- ☆15Sep 24, 2015Updated 10 years ago
- Python Reverse Shell Builder with some advanced functionalities☆10Feb 16, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆20Aug 3, 2022Updated 4 years ago
- Windows Stack Based Auto Buffer Overflow Exploiter☆21Feb 19, 2021Updated 5 years ago
- ☆20Aug 15, 2020Updated 5 years ago
- Cross-assemblers, cross-binutils and cross-compilers needed for rebuilding the UPX stubs☆18Jan 8, 2026Updated 7 months ago
- Facebook Bug Bounties☆107Feb 24, 2021Updated 5 years ago
- Accompanying material needed for the workshop☆11Jun 14, 2023Updated 3 years ago
- ⚡ Golang library for quick make pentest tools☆16Apr 7, 2025Updated last year
- Docker Pentest Lists are collection of Dockerfiles or Links to Dockerfiles for containers used in Penetration Tests☆21May 1, 2017Updated 9 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆38Nov 8, 2017Updated 8 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- ☆54Aug 10, 2018Updated 8 years ago
- burp suite插件☆14Jul 9, 2023Updated 3 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆93Aug 27, 2019Updated 6 years ago
- ☆11Oct 7, 2022Updated 3 years ago
- WAScan ((W)eb (A)pplication (Scan)ner) is a Open Source web application security scanner. It is designed to find various vulnerabilities …☆26May 7, 2020Updated 6 years ago
- Simple command shell collections☆35Mar 7, 2021Updated 5 years ago
- ShiftCrops pwn tool☆15Dec 11, 2016Updated 9 years ago
- ☆122Mar 27, 2017Updated 9 years ago
- Extension providing view with filtering capabilities for both complete and incomplete requests from all burp tools.☆24Feb 10, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Learn what is NoSQL injection and how to find them ?☆10Jul 22, 2021Updated 5 years ago
- This burpsuite extender provides a solution on testing Enterprise applications that involve security Authorization tokens into every HTTP…☆49Feb 27, 2019Updated 7 years ago
- The Ultimate File Upload Bypass Generator☆14Nov 24, 2025Updated 8 months ago
- Great quotes from the never-ending cryptowars☆11Oct 19, 2021Updated 4 years ago
- S2-061 CVE-2020-17530☆29Dec 22, 2020Updated 5 years ago
- HTML source files demonstrating HTML5 postmessage vulnerabilities☆20Jul 26, 2020Updated 6 years ago
- Upload, save and run keystroke injection payloads with an ESP8266 + ATMEGA32U4☆12Aug 14, 2019Updated 6 years ago