All Projects → commixproject → Commix

commixproject / Commix

Licence: other
Automated All-in-One OS Command Injection Exploitation Tool.

Programming Languages

python
139335 projects - #7 most used programming language

Projects that are alternatives of or similar to Commix

Fuxploider
File upload vulnerability scanner and exploitation tool.
Stars: ✭ 1,997 (-33.79%)
Mutual labels:  pentesting, detection, exploitation, vulnerability-scanner
Sqlmap
Automatic SQL injection and database takeover tool
Stars: ✭ 21,907 (+626.36%)
Mutual labels:  pentesting, detection, exploitation, vulnerability-scanner
Sqli Hunter
SQLi-Hunter is a simple HTTP / HTTPS proxy server and a SQLMAP API wrapper that makes digging SQLi easy.
Stars: ✭ 340 (-88.73%)
Mutual labels:  pentesting, detection, exploitation, vulnerability-scanner
Arissploit
Arissploit Framework is a simple framework designed to master penetration testing tools. Arissploit Framework offers simple structure, basic CLI, and useful features for learning and developing penetration testing tools.
Stars: ✭ 114 (-96.22%)
Mutual labels:  pentesting, exploitation, vulnerability-scanner
Poc T
渗透测试插件化并发框架 / Open-sourced remote vulnerability PoC/EXP framework
Stars: ✭ 1,722 (-42.9%)
Mutual labels:  pentesting, exploitation, vulnerability-scanner
sub404
A python tool to check subdomain takeover vulnerability
Stars: ✭ 205 (-93.2%)
Mutual labels:  pentesting, bugbounty, vulnerability-scanner
Sifter
Sifter aims to be a fully loaded Op Centre for Pentesters
Stars: ✭ 403 (-86.64%)
Mutual labels:  pentesting, exploitation, vulnerability-scanner
Shuriken
Cross-Site Scripting (XSS) command line tool for testing lists of XSS payloads on web apps.
Stars: ✭ 114 (-96.22%)
Mutual labels:  pentesting, detection, exploitation
Shellab
Linux and Windows shellcode enrichment utility
Stars: ✭ 225 (-92.54%)
Mutual labels:  pentesting, exploitation
Quiver
Quiver is the tool to manage all of your tools for bug bounty hunting and penetration testing.
Stars: ✭ 140 (-95.36%)
Mutual labels:  pentesting, bugbounty
Mida Multitool
Bash script purposed for system enumeration, vulnerability identification and privilege escalation.
Stars: ✭ 144 (-95.23%)
Mutual labels:  pentesting, exploitation
Archerysec
Centralize Vulnerability Assessment and Management for DevSecOps Team
Stars: ✭ 1,802 (-40.25%)
Mutual labels:  pentesting, opensource
Reconness
ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on schedule or events.
Stars: ✭ 131 (-95.66%)
Mutual labels:  pentesting, bugbounty
Jaeles Signatures
Default signature for Jaeles Scanner
Stars: ✭ 172 (-94.3%)
Mutual labels:  vulnerability-scanner, bugbounty
Awesome Mobile Security
An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners. I'm just maintaining it.
Stars: ✭ 1,837 (-39.09%)
Mutual labels:  pentesting, bugbounty
Rescope
Rescope is a tool geared towards pentesters and bugbounty researchers, that aims to make life easier when defining scopes for Burp Suite and OWASP ZAP.
Stars: ✭ 156 (-94.83%)
Mutual labels:  pentesting, bugbounty
Xerror
fully automated pentesting tool
Stars: ✭ 173 (-94.26%)
Mutual labels:  pentesting, exploitation
Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning
Stars: ✭ 2,312 (-23.34%)
Mutual labels:  pentesting, vulnerability-scanner
Getjs
A tool to fastly get all javascript sources/files
Stars: ✭ 190 (-93.7%)
Mutual labels:  pentesting, bugbounty
Knary
A simple HTTP(S) and DNS Canary bot with Slack/Discord/MS Teams & Pushover support
Stars: ✭ 187 (-93.8%)
Mutual labels:  pentesting, bugbounty

CommixProject

Builds Tests Python 2.6|2.7|3.x GPLv3 License GitHub closed issues Twitter

Commix (short for [comm]and [i]njection e[x]ploiter) is an open source penetration testing tool, written by Anastasios Stasinopoulos (@ancst), that automates the detection and exploitation of command injection vulnerabilities.

Screenshot

Screenshot

Installation

You can download commix on any platform by cloning the official Git repository :

$ git clone https://github.com/commixproject/commix.git commix

Alternatively, you can download the latest tarball or zipball.

Note: Python (version 2.6, 2.7 or 3.x) is required for running commix.

Usage

To get a list of all options and switches use:

$ python commix.py -h

To get an overview of commix available options, switches and/or basic ideas on how to use commix, check usage, usage examples and filters bypasses wiki pages.

Links

Translations

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].