security-checklist / php-security-check-list
PHP Security Check List [ EN ] π β£οΈ
β297Updated 4 years ago
Related projects β
Alternatives and complementary repositories for php-security-check-list
- This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabiβ¦β346Updated 6 years ago
- Sample vulnerable code and its exploit codeβ189Updated 3 years ago
- Bypassing disabled exec functions in PHP (c) CRLFβ400Updated 4 years ago
- A collection of useful Serverless functions I use when pentestingβ381Updated last year
- Nano is a family of PHP web shells which are code golfed for stealth.β435Updated 4 years ago
- Toolset for detecting reflected xss in websitesβ109Updated 6 years ago
- Fuzzing Payloads to Assist in Web Application Testing.β166Updated 5 years ago
- Penetration Testing Notes and Playbook (PTP)β174Updated 5 years ago
- exploit for ImageMagick's uninitialized memory disclosure in gif coderβ278Updated 7 years ago
- Burp Suite extension to discover assets from HTTP response.β219Updated 3 years ago
- A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.β394Updated 4 years ago
- Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.β465Updated 5 years ago
- Simple shell script for automated domain recognition with some toolsβ300Updated 4 years ago
- Pentest/BugBounty progress control with scanning modulesβ282Updated 4 years ago
- Some tools to automate recon - 003randomβ295Updated 6 years ago
- Local File Inclusion Exploitation Tool (mirror)β122Updated 7 years ago
- From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extrasβ423Updated 4 years ago
- psychoPATH - an advanced path traversal tool. Features: evasive techniques, dynamic web root list generation, output encoding, site map-sβ¦β270Updated 3 years ago
- Lesser Known Web Attack Labβ330Updated 4 years ago
- Wordlist for content(directory) bruteforce discovering with Burp or dirsearchβ212Updated last month
- Red Teaming :: Penetration Testing :: Offensive Security :: OSCP :: OSCE :: CheatSheets :: Tools :: etc...β148Updated 5 years ago
- kadimus is a tool to check and exploit lfi vulnerability.β514Updated 4 years ago
- SQL Injection Payloads for Burp Suite, OWASP Zed Attack Proxy,...β226Updated 4 years ago