Topic: "path-traversal"
nemesida-waf/waf-bypass
Check your WAF before an attacker does
Language: Python - Size: 729 KB - Last synced at: 12 days ago - Pushed at: 13 days ago - Stars: 1,372 - Forks: 173

chrispetrou/FDsploit 📦
File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
Language: Python - Size: 1.12 MB - Last synced at: 2 months ago - Pushed at: about 4 years ago - Stars: 271 - Forks: 76

bayotop/off-by-slash
Burp extension to detect alias traversal via NGINX misconfiguration at scale.
Language: Python - Size: 88.9 KB - Last synced at: about 2 months ago - Pushed at: over 3 years ago - Stars: 259 - Forks: 35

VainlyStrain/Vailyn
A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python
Language: Python - Size: 994 KB - Last synced at: 7 months ago - Pushed at: over 3 years ago - Stars: 198 - Forks: 25

usdAG/slipit
Utility for creating ZipSlip archives
Language: Python - Size: 54.7 KB - Last synced at: 30 days ago - Pushed at: over 2 years ago - Stars: 72 - Forks: 5

AikidoSec/firewall-node
Zen protects your Node app against attacks with one line of code. Get peace of mind— at runtime.
Language: TypeScript - Size: 9.6 MB - Last synced at: about 8 hours ago - Pushed at: about 9 hours ago - Stars: 69 - Forks: 12

snsttr/diwa
A Deliberately Insecure Web Application
Language: PHP - Size: 2.12 MB - Last synced at: 2 months ago - Pushed at: over 5 years ago - Stars: 67 - Forks: 59

BitTheByte/BitTraversal
Burpsuite Plugin to detect Directory Traversal vulnerabilities
Language: Java - Size: 47.9 KB - Last synced at: 7 months ago - Pushed at: almost 4 years ago - Stars: 28 - Forks: 4

vladan-stojnic/ML-based-WAF
Simple machine learning based web application firewall (WAF) created in python
Language: Jupyter Notebook - Size: 16.8 MB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 27 - Forks: 10

AikidoSec/firewall-java
Zen protects your Java app against attacks with one line of code. Get peace of mind— at runtime.
Language: Java - Size: 3.99 MB - Last synced at: 28 days ago - Pushed at: 28 days ago - Stars: 24 - Forks: 2

dogancanbakir/metamaska
μετάμάσκα - malevolent payload classifier
Language: Jupyter Notebook - Size: 30.2 MB - Last synced at: 20 days ago - Pushed at: almost 2 years ago - Stars: 24 - Forks: 2

treddis/dotdotfarm
Fast Path Traversal exploitation tool
Language: Python - Size: 110 KB - Last synced at: 26 days ago - Pushed at: about 1 year ago - Stars: 21 - Forks: 1

polarspetroll/EscapeAPI
An API for escaping different kind of queries
Language: Ruby - Size: 3.91 KB - Last synced at: about 2 months ago - Pushed at: almost 4 years ago - Stars: 13 - Forks: 1

sp34rh34d/WebRunner
Web scraping | Website cloner | Path Traversal Scanner
Language: Python - Size: 62.5 KB - Last synced at: 17 days ago - Pushed at: 3 months ago - Stars: 11 - Forks: 4

nathan-watson-uk/DirTras
DirTras is an automated directory/path traversal exploitation tool.
Language: Python - Size: 207 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 11 - Forks: 1

jvlsg/HeadPage
A (purpousely) vulnerable, social-media-like, django web application
Language: Python - Size: 2.1 MB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 10 - Forks: 8

Mr-xn/CVE-2024-36991
Path Traversal On The "/Modules/Messaging/" Endpoint In Splunk Enterprise On Windows
Size: 2.93 KB - Last synced at: 2 months ago - Pushed at: 11 months ago - Stars: 7 - Forks: 2

gatomod/path_trav
🤨🔎 A simple path traversal checker made with Rust. Useful for APIs that serve dynamic files.
Language: Rust - Size: 28.3 KB - Last synced at: about 17 hours ago - Pushed at: 4 months ago - Stars: 6 - Forks: 0

verylazytech/CVE-2024-45241
Size: 338 KB - Last synced at: 7 months ago - Pushed at: 7 months ago - Stars: 6 - Forks: 2

ThatNotEasy/Shell-Scanner
Perform With Shell Scanner Using Path Traversal & Strings
Language: Python - Size: 143 KB - Last synced at: over 1 year ago - Pushed at: almost 2 years ago - Stars: 5 - Forks: 2

Ls4ss/CVE-2020-29134
Exploit CVE-2020-29134 - TOTVS Fluig Platform - Path Traversal
Language: Shell - Size: 1.09 MB - Last synced at: about 1 year ago - Pushed at: almost 3 years ago - Stars: 5 - Forks: 0

twseptian/cve-2021-41773
CVE-2021-41773: Path Traversal Zero-Day in Apache HTTP Server Exploited
Size: 2.93 KB - Last synced at: 4 months ago - Pushed at: over 3 years ago - Stars: 4 - Forks: 3

mathis2001/LighTraversal
LighTraversal is a tool designed to find basic directory traversal vulnerabilities
Language: Python - Size: 14.6 KB - Last synced at: 3 months ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

ColdFusionX/CVE-2021-34429
POC for CVE-2021-34429 - Eclipse Jetty 11.0.5 Sensitive File Disclosure
Language: Java - Size: 41 KB - Last synced at: over 2 years ago - Pushed at: over 3 years ago - Stars: 3 - Forks: 2

sec-it/exploit-CVE-2019-14530
OpenEMR < 5.0.2 - (Authenticated) Path Traversal - Local File Disclosure
Language: Ruby - Size: 10.7 KB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 3 - Forks: 1

clevernyyyy/zip-slip-poc
Quick and Dirty POC for Zip Slip
Language: JavaScript - Size: 38.1 KB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 3 - Forks: 1

FOGSEC/Mobile-Security-Framework-MobSF Fork of R3dFruitRollUp/Mobile-Security-Framework-MobSF
Mobile Security Framework is an intelligent, all-in-one open source mobile application (Android/iOS/Windows) automated pen-testing framework capable of performing static, dynamic analysis and web API testing.
Language: Python - Size: 206 MB - Last synced at: over 1 year ago - Pushed at: over 7 years ago - Stars: 3 - Forks: 2

luismiguelcasadodiaz/42Barcelona_CiberDiscovery
Size: 94.7 KB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 2 - Forks: 0

E1A/LFI2Keys
LFI2Keys automates the process of extracting user accounts from /etc/passwd and attempts to locate private SSH keys through LFI
Language: Python - Size: 41 KB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 2 - Forks: 0

Kasim200429/GoBypass403
GoBypass403 is a tool designed to help security professionals test and bypass 403 Forbidden errors on web applications. It streamlines the penetration testing process, making it easier to identify vulnerabilities and enhance web security. 🛠️💻
Language: Go - Size: 4.43 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 1 - Forks: 0

TheAlgorythm/path-ratchet
Prevent path traversal attacks at type level
Language: Rust - Size: 51.8 KB - Last synced at: 24 days ago - Pushed at: 2 months ago - Stars: 1 - Forks: 0

Cappricio-Securities/CVE-2024-24919
Check Point Security Gateway (LFI)
Language: Python - Size: 14.6 KB - Last synced at: about 1 month ago - Pushed at: 12 months ago - Stars: 1 - Forks: 1

opabravo/dfuf
Dump files via Directory Traversal / LFI in a breeze with the help of ffuf
Language: Python - Size: 18.6 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

I2rys/xdet
Detect SQLi, CRLF, path traversal, xss & many more in a URL.
Language: JavaScript - Size: 69.3 KB - Last synced at: about 1 year ago - Pushed at: almost 3 years ago - Stars: 1 - Forks: 0

bhaveshAn/linux_path_traversal
Linux Path Traversal
Language: Python - Size: 5.16 MB - Last synced at: 3 months ago - Pushed at: over 6 years ago - Stars: 1 - Forks: 0

mailvlous/go-directory-traversal
Language: PHP - Size: 856 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 0 - Forks: 0

MGreif/path-traversal-list-gen
Just a small collection of path traversal patterns
Language: Shell - Size: 15.6 KB - Last synced at: 25 days ago - Pushed at: 25 days ago - Stars: 0 - Forks: 0

mitsuki31/deepget
A lightweight and safe utility for retrieving values from deeply nested JavaScript objects using dot and array notation, ensuring undefined safety.
Language: TypeScript - Size: 129 KB - Last synced at: 7 days ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

pwnosec/ApachSAL
Path Traversal automation vulnerability scanner tool.
Language: Python - Size: 679 KB - Last synced at: 4 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

ks-santosh/Courier-Service-Robot
An autonomous robot designed to navigate a grid, pick up and deliver virtual packages, and respond to traffic signals for an efficient courier service.
Language: Python - Size: 3.26 MB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

mbadanoiu/CVE-2020-12640
CVE-2020-12640: Local PHP File Inclusion via "Plugin Value" in Roundcube Webmail
Size: 198 KB - Last synced at: 3 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

Gill-Singh-A/SHARN-Web-Desktop
A Simple CTF Challenge that expects user to see Client Side Login Algorithm, Path Traversal and Command Injection
Language: HTML - Size: 1.53 MB - Last synced at: 4 months ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

flimtix/php-pathtraversal
PHP - Path Traversal
Language: PHP - Size: 149 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

patmejia/cat-dir-content
Bash script for viewing code or file content using cat command. Designed for Data, DAG and Prompt Engineering.
Language: Shell - Size: 21.5 KB - Last synced at: 8 days ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

faisalkhan91/Insecure-File-Extraction
This code is the demonstration of using path traversal to exploit a poorly coded upload file fuction for malicious code injection on to a web server.
Language: Python - Size: 3.84 MB - Last synced at: over 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0
