Skip to content
View p0dalirius's full-sized avatar
🦋
🦋

Sponsors

@mxrch
@Zamanry
Private Sponsor

Highlights

  • Pro

Block or report p0dalirius

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Web

38 repositories

An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code of sites.

Go 404 47 Updated Jan 22, 2025

Command line tool to fetch, decode and brute-force CodeIgniter session cookies by guessing and bruteforcing secret keys.

Python 15 2 Updated Jan 31, 2025

Awesome list of step by step techniques to achieve Remote Code Execution on various apps!

Dockerfile 1,932 225 Updated Oct 7, 2023

A python script to check if URLs are allowed or disallowed by a robots.txt file.

Python 21 2 Updated Feb 11, 2025

A webshell plugin and interactive shell for pentesting a WordPress website.

Python 102 20 Updated Jun 14, 2023

CVE-2022-30780 - lighttpd remote denial of service

Perl 17 4 Updated Mar 16, 2024

A webshell plugin and interactive shell for pentesting a SweetRice website.

PHP 8 2 Updated Feb 11, 2025

Exploit to trigger RCE for CVE-2018-16763 on FuelCMS <= 1.4.1 and interactive shell.

PHP 23 3 Updated Jan 31, 2025

A webshell plugin and interactive shell for pentesting a LimeSurvey application.

Python 22 5 Updated Oct 31, 2024

A webshell plugin and interactive shell for pentesting a Joomla website.

Python 58 11 Updated May 23, 2022

A webshell plugin and interactive shell for pentesting a Moodle instance.

PHP 36 5 Updated Feb 11, 2025

This Python script can be used to bypass IP source restrictions using HTTP headers.

Python 399 55 Updated Sep 16, 2025

A webshell plugin and interactive shell for pentesting JoGet application.

Java 13 2 Updated May 19, 2022

A webshell application and interactive shell for pentesting Apache Tomcat servers.

Java 123 18 Updated Feb 11, 2025

A collection of http fuzzing python scripts to fuzz HTTP servers for bugs.

Python 15 1 Updated Oct 1, 2023

A Python script to extract the serial number of a remote Fortinet device.

Python 31 5 Updated Apr 3, 2025

A python exploit to automatically dump all the data stored by the auto-completion plugin of Ametys CMS to a local sqlite database file.

Python 13 3 Updated May 3, 2022

Exploit tool for CVE-2021-43008 Adminer 1.0 up to 4.6.2 Arbitrary File Read vulnerability

Python 87 16 Updated Mar 16, 2024

A script to exploit CVE-2020-14144 - GiTea authenticated Remote Code Execution using git hooks

Python 30 7 Updated May 3, 2022

This Python script can enumerate all URLs present in robots.txt files, and test whether they can be accessed or not.

Python 45 4 Updated Feb 11, 2025

Hydra wrapper for bruteforcing Microsoft Outlook Web Application.

Shell 69 16 Updated Oct 2, 2023

A python script to extract information from a Microsoft Remote Desktop Web Access (RDWA) application

Python 110 17 Updated Sep 19, 2025

A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.

Python 77 15 Updated Mar 16, 2024

MailMasta wordpress plugin Local File Inclusion vulnerability (CVE-2016-10956)

Python 20 2 Updated May 3, 2022

Python script to check if there is any differences in responses of an application when the request comes from a search engine's crawler.

Python 23 3 Updated Oct 1, 2023

A script to automatically dump all URLs present in /server-status to a file locally.

Python 24 4 Updated Feb 11, 2025

A python script to scan for Apache Tomcat server vulnerabilities.

Python 883 106 Updated Nov 1, 2025

Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.

Rust 334 27 Updated Sep 9, 2024

A complete table of results of types comparison in multiple languages

Python 36 2 Updated Sep 28, 2022

IIS shortname scanner written in Go

Go 350 43 Updated Mar 25, 2023