commixproject / commix
Automated All-in-One OS Command Injection Exploitation Tool.
☆4,698Updated this week
Alternatives and similar repositories for commix:
Users that are interested in commix are comparing it to the libraries listed below
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,713Updated 3 years ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,855Updated 9 months ago
- File upload vulnerability scanner and exploitation tool.☆3,163Updated last year
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,125Updated 3 months ago
- Automated NoSQL database enumeration and web application exploitation tool.☆2,992Updated 6 months ago
- Web application fuzzer☆6,031Updated 5 months ago
- A Tool for Domain Flyovers☆5,700Updated 2 years ago
- Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload cre…☆3,481Updated this week
- Weaponized web shell☆3,234Updated 3 months ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,633Updated 3 months ago
- A swiss army knife for pentesting networks☆8,552Updated last year
- Advanced vulnerability scanning with Nmap NSE☆3,536Updated 4 months ago
- Linux privilege escalation auditing tool☆5,760Updated 11 months ago
- Next generation web scanner☆5,685Updated 6 months ago
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,471Updated 3 weeks ago
- Attack Surface Management Platform☆8,344Updated 3 weeks ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,160Updated last year
- Git All the Payloads! A collection of web attack payloads.☆3,665Updated last year
- Knock Subdomain Scan☆3,920Updated 2 months ago
- NSE script based on Vulners.com API☆3,260Updated 9 months ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,349Updated last year
- HTTP parameter discovery suite.☆5,385Updated last month
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,212Updated 4 months ago
- Monitor linux processes without root permissions☆5,068Updated 2 years ago
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆4,009Updated last year
- Web path scanner☆12,475Updated this week
- Linux enumeration tool for pentesting and CTFs with verbosity levels☆3,500Updated last year
- Bruteforcing from various scanner output - Automatically attempts default creds on found services.☆2,074Updated last week
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆4,586Updated 4 years ago
- Automatic SSRF fuzzer and exploitation tool☆3,060Updated 7 months ago