security-checklist / php-security-check-listLinks
PHP Security Check List [ EN ] π β£οΈ
β298Updated 5 years ago
Alternatives and similar repositories for php-security-check-list
Users that are interested in php-security-check-list are comparing it to the libraries listed below
Sorting:
- Nano is a family of PHP web shells which are code golfed for stealth.β444Updated 5 years ago
- This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabiβ¦β356Updated 5 months ago
- Sample vulnerable code and its exploit codeβ191Updated 4 years ago
- A series of python scripts for generating weird character combinations for bypassing web application firewalls (WAF) and XSS blockersβ279Updated 6 years ago
- RIPS - A static source code analyser for vulnerabilities in PHP scriptsβ318Updated 3 years ago
- Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn reaβ¦β456Updated 3 years ago
- Tulpar - Web Vulnerability Scannerβ202Updated 5 years ago
- OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.β345Updated 5 months ago
- CMS Detection and Exploit Kit based on Whatcms.org APIβ256Updated 8 months ago
- Bypassing disabled exec functions in PHP (c) CRLFβ402Updated 4 years ago
- π€ Security Trivia that rare people know.β162Updated 5 years ago
- Free web-application vulnerability and version scannerβ574Updated 5 months ago
- A deliberately vulnerable web application for learning web application security.β131Updated 3 months ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromjpeg()β150Updated 10 years ago
- Pentest/BugBounty progress control with scanning modulesβ281Updated 5 years ago
- From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extrasβ426Updated 5 years ago
- list of sql-injection and XSS stringsβ115Updated 9 years ago
- A web crawler (for bug hunting) that gathers more than you can imagine.β150Updated 2 years ago
- Clear all your logs in [linux/windows] servers π‘οΈβ313Updated 4 years ago
- A collection of useful Serverless functions I use when pentestingβ388Updated 2 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is fβ¦β160Updated 3 years ago
- OSINT scanning tool which discovers and maps directories found in javascript files hosted on a website.β229Updated 6 years ago
- Penetration Testing Playbook (PTP)β175Updated 6 years ago
- Damn Small XSS Scannerβ431Updated 4 years ago
- Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.β470Updated 5 years ago
- SQL Injection Payloads for Burp Suite, OWASP Zed Attack Proxy,...β232Updated 5 years ago
- Fast subdomain bruteforce enumerator in PHP 7.1β33Updated 8 years ago
- Exploits for various CVEsβ210Updated 5 years ago
- Commodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLTβ403Updated 3 months ago
- A collection of web pages vulnerable to SQL injection flawsβ348Updated 3 years ago