kurobeats / fimap
fimap is a little python tool which can find, prepare, audit, exploit and even google automatically for local and remote file inclusion bugs in webapps.
☆534Updated 2 years ago
Alternatives and similar repositories for fimap:
Users that are interested in fimap are comparing it to the libraries listed below
- BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source c…☆546Updated 2 years ago
- Herramienta para evadir disable_functions y open_basedir☆411Updated last year
- Local file inclusion exploitation tool☆849Updated last year
- Finds unknown classes of injection vulnerabilities☆655Updated 2 weeks ago
- A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, al…☆1,224Updated last year
- ReverShellGenerator - A tool to generate various ways to do a reverse shell☆560Updated 10 months ago
- kadimus is a tool to check and exploit lfi vulnerability.☆528Updated 4 years ago
- A unique automated LFi Exploiter with Bind/Reverse Shells☆275Updated 9 years ago
- This repository contains all the supplement material for the book "The art of sub-domain enumeration"☆645Updated 6 years ago
- RSMangler will take a wordlist and perform various manipulations on it similar to those done by John the Ripper with a few extras.☆223Updated 5 years ago
- Content discovery wordlists generated using BigQuery☆565Updated 4 years ago
- Simple php reverse shell implemented using binary .☆406Updated last year
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆702Updated last year
- Automated script for performing Padding Oracle attacks☆768Updated 8 months ago
- A Powerful Subdomain Takeover Tool☆941Updated last year
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆527Updated 6 years ago
- Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and us…☆573Updated 9 months ago
- HTTP file upload scanner for Burp Proxy☆401Updated last year
- Exploitation for XSS☆711Updated 3 years ago
- Search for Directory Traversal Vulnerabilities☆431Updated 9 months ago
- A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.☆973Updated 7 years ago
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,773Updated 2 years ago
- Username tools for penetration testing☆971Updated 6 months ago
- Apache Tomcat auto WAR deployment & pwning penetration testing tool.☆425Updated 11 months ago
- Python 3.5+ DNS asynchronous brute force utility☆652Updated last year
- Modified version of the passing-the-hash tool collection made to work straight out of the box☆571Updated 10 years ago
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆358Updated last year
- Tool to help exploit XXE vulnerabilities☆555Updated 2 years ago
- simple script to extract all web resources by means of .SVN folder exposed over network.☆462Updated last year
- bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.☆529Updated 2 years ago