mattiasgeniar / php-exploit-scripts
A collection of PHP exploit scripts, found when investigating hacked servers. These are stored for educational purposes and to test fuzzers and vulnerability scanners. Feel free to contribute.
☆851Updated last year
Alternatives and similar repositories for php-exploit-scripts
Users that are interested in php-exploit-scripts are comparing it to the libraries listed below
Sorting:
- A collection of PHP backdoors. For educational or testing purposes only.☆2,227Updated last year
- Advanced Web Shell☆575Updated 8 years ago
- Common PHP webshells you might need for your Penetration Testing assignments or CTF challenges. Do not host the file(s) on your server!☆1,903Updated 4 years ago
- Wordpress XMLRPC System Multicall Brute Force Exploit (0day) by 1N3 @ CrowdShield☆463Updated 2 years ago
- A Ruby framework designed to aid in the penetration testing of WordPress systems.☆1,033Updated 5 years ago
- Web Shell Detector – is a php script that helps you find and identify php/cgi(perl)/asp/aspx shells. Web Shell Detector has a “web shells…☆821Updated 9 years ago
- Detect potentially malicious PHP files☆1,478Updated last year
- Nano is a family of PHP web shells which are code golfed for stealth.☆442Updated 5 years ago
- Wordpress Attack Suite☆965Updated 4 years ago
- Plecost - Wordpress finger printer Tool☆339Updated 2 years ago
- PHP Security Check List [ EN ] 🌋 ☣️☆297Updated 5 years ago
- PHP Secure Configuration Checker☆818Updated last year
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆317Updated 3 years ago
- Miscellaneous exploit code☆1,551Updated last year
- Bypassing disabled exec functions in PHP (c) CRLF☆401Updated 4 years ago
- Various webshells. We accept pull requests for additions to this collection.☆928Updated last year
- PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container☆403Updated 2 years ago
- PHPIDS (PHP-Intrusion Detection System) is a simple to use, well structured, fast and state-of-the-art security layer for your PHP based …☆798Updated 9 years ago
- Exploitation for XSS☆715Updated 3 years ago
- A black box, Ruby powered, Joomla vulnerability scanner☆271Updated 6 years ago
- An automatic XSS discovery tool☆403Updated 7 years ago
- A plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstripe.☆1,330Updated last year
- SQL Injection Exploitation Tool☆752Updated 6 years ago
- Your interpreter isn’t safe anymore — The PHP module backdoor☆221Updated 6 years ago
- small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns☆330Updated last year
- Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor☆2,341Updated last year
- CMS auto detect and exploit.☆397Updated 3 years ago
- massive SQL injection vulnerability scanner☆1,197Updated 6 years ago
- CMS Scanner: Scan Wordpress, Drupal, Joomla, vBulletin websites for Security issues☆1,007Updated 3 years ago
- OWASP Joomla Vulnerability Scanner Project https://www.secologist.com/☆1,119Updated 8 months ago