Local File Inclusion Exploitation Tool (mirror)
☆127Feb 13, 2017Updated 9 years ago
Alternatives and similar repositories for liffy
Users that are interested in liffy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- [DEPRECATED] Kadabra is my automatic LFI Exploiter and Scanner, written in C++ and a couple extern module in Python.☆37Oct 7, 2019Updated 6 years ago
- kadimus is a tool to check and exploit lfi vulnerability.☆577Aug 17, 2020Updated 6 years ago
- Portable and flexible web application security assessment tool.It parses Burp Suite log and performs various tests depending on the modul…☆124Apr 4, 2018Updated 8 years ago
- Project "Flashbang" - An open-source Flash-security helper☆205Apr 19, 2015Updated 11 years ago
- A Cross-Platform Forensic Framework for Google Chrome☆70Mar 15, 2015Updated 11 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.☆548Jun 12, 2017Updated 9 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Jan 31, 2017Updated 9 years ago
- Cknife☆28Feb 2, 2018Updated 8 years ago
- Burp Extender plugin that generates a sitemap of a website using Wayback Machine☆227May 8, 2018Updated 8 years ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆261May 16, 2025Updated last year
- Setup script for Regon-ng☆941Nov 17, 2020Updated 5 years ago
- Unix Based Command☆18May 8, 2026Updated 3 months ago
- rdp2tcp is a tunneling tool on top of remote desktop protocol (RDP). It uses RDP virtual channel capabilities to multiplex several ports …☆40Jun 26, 2017Updated 9 years ago
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆257Feb 23, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- This tool can be used to brute discover GET and POST parameters☆1,396Aug 24, 2019Updated 7 years ago
- Finds unknown classes of injection vulnerabilities☆717Apr 30, 2025Updated last year
- Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.☆326Oct 20, 2021Updated 4 years ago
- BinProxy is a proxy for arbitrary TCP connections. You can define custom message formats using the BinData gem.☆176Dec 1, 2022Updated 3 years ago
- The repository for Building visualisation platforms for OSINT data using open source solutions☆29Aug 21, 2018Updated 8 years ago
- Actarus is a custom tool for bug bounty☆76Nov 14, 2019Updated 6 years ago
- fimap is a little python tool which can find, prepare, audit, exploit and even google automatically for local and remote file inclusion b…☆595Jul 12, 2026Updated last month
- An automation framework for running multiple open sourced subdomain bruteforcing tools (in parallel) using your own wordlists via Docker …☆260Aug 22, 2021Updated 5 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆35Nov 17, 2018Updated 7 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Chrome Extension for XSS Hunter Payloads☆42Sep 7, 2016Updated 9 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆31Dec 17, 2015Updated 10 years ago
- A collection of all the lists, scripts and techniques I use while doing web application penetration tests.☆170Feb 29, 2016Updated 10 years ago
- Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]☆303Oct 14, 2018Updated 7 years ago
- psychoPATH - an advanced path traversal tool. Features: evasive techniques, dynamic web root list generation, output encoding, site map-s…☆277Feb 12, 2021Updated 5 years ago
- Vulnerability scanner based on vulners.com search API☆901Oct 1, 2025Updated 10 months ago
- ☆184Nov 14, 2013Updated 12 years ago
- A Generic Windows Memory Scraping Tool☆69Apr 20, 2017Updated 9 years ago
- Automated All-in-One OS Command Injection Exploitation Tool☆5,829Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- XXE attack tool☆31Feb 20, 2016Updated 10 years ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,198Apr 21, 2024Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆141Feb 18, 2021Updated 5 years ago
- WEB SERVICE SECURITY ASSESSMENT TOOL☆390Sep 24, 2021Updated 4 years ago
- 0x88 exploit pack Decoded☆27Aug 13, 2014Updated 12 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,506Oct 12, 2024Updated last year
- OWASP Mth3l3m3nt Framework is a penetration testing aiding tool and exploitation framework. It fosters a principle of attack the web usin…☆164Jan 21, 2021Updated 5 years ago