Skip to content
View p0dalirius's full-sized avatar
🦋
🦋

Sponsors

@mxrch
@Zamanry
Private Sponsor

Highlights

  • Pro

Block or report p0dalirius

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Web

38 repositories

An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code of sites.

Go 406 47 Updated Jan 22, 2025

Command line tool to fetch, decode and brute-force CodeIgniter session cookies by guessing and bruteforcing secret keys.

Python 16 2 Updated Jan 31, 2025

Awesome list of step by step techniques to achieve Remote Code Execution on various apps!

Dockerfile 1,948 217 Updated Oct 7, 2023

A python script to check if URLs are allowed or disallowed by a robots.txt file.

Python 24 2 Updated Feb 11, 2025

A webshell plugin and interactive shell for pentesting a WordPress website.

Python 115 21 Updated Jan 30, 2026

CVE-2022-30780 - lighttpd remote denial of service

Perl 17 4 Updated Mar 16, 2024

A webshell plugin and interactive shell for pentesting a SweetRice website.

PHP 8 2 Updated Feb 11, 2025

Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.

PHP 25 3 Updated Jan 31, 2025

A webshell plugin and interactive shell for pentesting a LimeSurvey application.

Python 23 5 Updated Oct 31, 2024

A webshell plugin and interactive shell for pentesting a Joomla website.

Python 60 10 Updated May 23, 2022

A webshell plugin and interactive shell for pentesting a Moodle instance.

PHP 43 6 Updated Feb 11, 2025

This Python script can be used to bypass IP source restrictions using HTTP headers.

Python 401 54 Updated Sep 16, 2025

A webshell plugin and interactive shell for pentesting JoGet application.

Java 14 2 Updated May 19, 2022

A webshell application and interactive shell for pentesting Apache Tomcat servers.

Java 133 17 Updated Feb 11, 2025

A collection of http fuzzing python scripts to fuzz HTTP servers for bugs.

Python 16 1 Updated Oct 1, 2023

A Python script to extract the serial number of a remote Fortinet device.

Python 34 5 Updated Apr 3, 2025

A python exploit to automatically dump all the data stored by the auto-completion plugin of Ametys CMS to a local sqlite database file.

Python 14 3 Updated May 3, 2022

Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability

Python 85 17 Updated Mar 16, 2024

A script to exploit CVE-2020-14144 - GiTea authenticated Remote Code Execution using git hooks

Python 32 7 Updated Mar 17, 2026

This Python script can enumerate all URLs present in robots.txt files, and test whether they can be accessed or not.

Python 48 4 Updated Feb 11, 2025

Hydra wrapper for bruteforcing Microsoft Outlook Web Application.

Shell 72 16 Updated Oct 2, 2023

A python script to extract information from a Microsoft Remote Desktop Web Access (RDWA) application

Python 120 17 Updated Jan 5, 2026

A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.

Python 78 15 Updated Mar 16, 2024

MailMasta wordpress plugin Local File Inclusion vulnerability (CVE-2016-10956)

Python 21 2 Updated May 3, 2022

Python script to check if there is any differences in responses of an application when the request comes from a search engine's crawler.

Python 26 3 Updated Oct 1, 2023

A script to automatically dump all URLs present in /server-status to a file locally.

Python 24 4 Updated Feb 11, 2025

A python script to scan for Apache Tomcat server vulnerabilities.

Python 895 104 Updated Jan 12, 2026

Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.

Rust 333 25 Updated Sep 9, 2024

A complete table of results of types comparison in multiple languages

Python 37 2 Updated Sep 28, 2022

IIS shortname scanner written in Go

Go 356 43 Updated Mar 25, 2023