Fuxploider is an open source penetration testing tool that automates the process of detecting and exploiting file upload forms flaws.
This tool is able to detect the file types allowed to be uploaded and is able to detect which technique will work best to upload web shells or any malicious file on the desired web server.
You will need Python 3.6 at least.
git clone https://github.com/almandin/fuxploider.git
cd fuxploider
pip3 install -r requirements.txt
If you have problems with pip (and if you use windows apparently) :
python3 -m pip install -r requirements.txt
For Docker installation
# Build the docker image
docker build -t almandin/fuxploider .
To get a list of basic options and switches use :
python3 fuxploider.py -h
Basic example :
python3 fuxploider.py --url https://awesomeFileUploadService.com --not-regex "wrong file type"
GoDoxy is a lightweight, straightforward, and high-performance reverse proxy tool written in the Go programming…
Web hacking and bug bounty hunting involve identifying vulnerabilities in web applications to enhance their…
The Defender-for-Cloud-Apps Toolbox is a robust collection of PowerShell functions designed to streamline and automate…
The OdinLdr and Draugr tools, alongside Cobalt Strike's User-Defined Reflective Loader (UDRL), represent advanced mechanisms…
PebbleOS is an open-source software framework originally developed by Pebble Technology for their smartwatch ecosystem.…
Obfuscar is an open-source obfuscation tool specifically designed for .NET assemblies. Released under the MIT…