ripsscanner / rips
RIPS - A static source code analyser for vulnerabilities in PHP scripts
☆347Updated 8 years ago
Related projects ⓘ
Alternatives and complementary repositories for rips
- Security-related PHP7 OPcache abuse tools and demo☆309Updated last year
- A tool that can scan php vulnerabilities automatically using static analysis methods☆486Updated 6 years ago
- PHP Runtime Vulnerability Detection☆481Updated 5 years ago
- Php Codz Hacking☆656Updated 9 years ago
- A PHP7 extension that can hook most functions/classes and parts of opcodes☆239Updated 3 years ago
- 分享PHP WebShell 绕过WAF 的一些经验 Share some experience about PHP WebShell bypass WAF and Anti-AV☆293Updated 7 years ago
- Taint is a PHP extension, used for detecting XSS codes☆611Updated 4 months ago
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆311Updated 2 years ago
- a simple tool to detect potential security threat in php code☆308Updated 2 months ago
- webshell sample for WebShell Log Analysis☆415Updated 2 years ago
- small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns☆319Updated 7 months ago
- Content hijacking proof-of-concept using Flash, PDF and Silverlight☆381Updated 5 years ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromjpeg()☆148Updated 9 years ago
- PHP Secure Configuration Checker☆814Updated 7 months ago
- SHELLING - a comprehensive OS command injection payload generator☆438Updated 4 years ago
- Pixy is a scanner static code analysis tools that scans PHP applications for security vulnerabilities.☆138Updated 10 months ago
- procfs-based PHP sandbox bypass☆133Updated 6 years ago
- Code-Audit-Challenges☆975Updated 6 years ago
- A Control Flow Graph implementation in PHP☆245Updated 5 months ago
- Add headers to all Burp requests to bypass some WAF products☆330Updated 6 years ago
- CMS渗透测试框架-A CMS Exploit Framework☆583Updated 6 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆350Updated 2 years ago
- MySQL fake server for read files of connected clients☆584Updated 7 years ago
- [DEPRECATED]A novel SQL injection detection engine built on top of SQL tokenizing and syntax analysis.☆252Updated 8 months ago
- Simple php backdoor based on extension☆73Updated 10 years ago
- Rogue MySql Server☆467Updated 11 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆646Updated last year
- A static analysis tool for security☆330Updated 3 months ago
- My CTF Challenges☆207Updated 11 months ago
- 一个各种方式突破Disable_functions达到命令执行的shell☆1,184Updated last year