commixproject / commix
Automated All-in-One OS Command Injection Exploitation Tool.
☆4,723Updated this week
Alternatives and similar repositories for commix:
Users that are interested in commix are comparing it to the libraries listed below
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,153Updated 3 months ago
- Weaponized web shell☆3,243Updated 3 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,738Updated 3 years ago
- Web application fuzzer☆6,050Updated 5 months ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,641Updated 2 weeks ago
- Automated NoSQL database enumeration and web application exploitation tool.☆3,005Updated 6 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,864Updated 9 months ago
- File upload vulnerability scanner and exploitation tool.☆3,166Updated last year
- Linux privilege escalation auditing tool☆5,786Updated 11 months ago
- A Tool for Domain Flyovers☆5,710Updated 2 years ago
- Git All the Payloads! A collection of web attack payloads.☆3,676Updated last year
- Attack Surface Management Platform☆8,403Updated last month
- Next generation web scanner☆5,713Updated 6 months ago
- A swiss army knife for pentesting networks☆8,570Updated last year
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆4,021Updated last year
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,504Updated last month
- Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload cre…☆3,492Updated last week
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,188Updated last year
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,598Updated 4 years ago
- Monitor linux processes without root permissions☆5,095Updated 2 years ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,384Updated last year
- HTTP parameter discovery suite.☆5,429Updated last month
- Knock Subdomain Scan☆3,930Updated 2 months ago
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,225Updated 4 months ago
- Open Source Vulnerability Management Platform☆5,188Updated 2 weeks ago
- Empire is a PowerShell and Python post-exploitation agent.☆7,538Updated 5 years ago
- Veil 3.1.X (Check version info in Veil at runtime)☆4,054Updated last year
- Bruteforcing from various scanner output - Automatically attempts default creds on found services.☆2,075Updated this week
- DNS Enumeration Script☆2,709Updated this week
- Directory/File, DNS and VHost busting tool written in Go☆10,878Updated this week