awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
D35m0nd142 avatar

D35m0nd142/LFISuite

0
View on GitHub↗
1,945 stars·405 forks·Python·GPL-3.0·10 views

LFISuite

Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner

Features

  • Vulnerability Scanners - Automatic LFI exploiter and scanner.
  • Exploitation and Payloads - Automatic LFI exploiter and scanner.
  • File Inclusion - Automated scanner and exploiter for local file inclusion.
  • Vulnerability Exploitation Frameworks - Automated LFI exploitation and scanning tool.
  • Web Exploitation Tools - Scanner and exploiter for local file inclusion vulnerabilities.

Star history

Star history chart for d35m0nd142/lfisuiteStar history chart for d35m0nd142/lfisuite

How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Projects sharing features with LFISuite

These projects share indexed features with LFISuite. Shared tags can include platform or build tooling; verify the primary use case before treating a result as a replacement.
  • epinna/tplmapepinna avatar

    epinna/tplmap

    4,169View on GitHub↗

    tplmap is a security tool designed for the detection and exploitation of server-side template injection vulnerabilities. It functions as an automated scanner to identify vulnerable template engine contexts and provides a framework for achieving remote code execution. The tool focuses on translating high-level requests into engine-specific syntax to execute operating system commands and bypass application sandboxes. It further enables remote file system access, allowing users to read, write, and transfer files between a local machine and a target server. Additional capabilities include the ab

    Python
    View on GitHub↗4,169
  • commixproject/commixcommixproject avatar

    commixproject/commix

    5,757View on GitHub↗

    Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It probes user-supplied input vectors with heuristic test payloads, analyzes response differences to identify injection points, and then automates the execution of arbitrary operating system commands on the target server. The tool distinguishes itself through a multi-layer filter bypass engine that evaluates input constraints independently per filter type and composes tailored evasion strategies into a single payload. A modular payload tamper pipeline transforms raw injection str

    Python
    View on GitHub↗5,757
  • andresriancho/w3afandresriancho avatar

    andresriancho/w3af

    4,850View on GitHub↗

    w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities in web applications. It functions as a vulnerability scanner that crawls targets to find injection points and a fuzzer used to discover hidden endpoints and test input validation. The project distinguishes itself by providing an intercepting HTTP proxy for capturing and modifying traffic, combined with a knowledge-base driven exploitation system. It enables the execution of security exploits to gain remote shell access and supports post-exploitation activities, such as routing

    Pythonappseccross-site-scriptingscanner
    View on GitHub↗4,850
  • jaykali/maskphishjaykali avatar

    jaykali/maskphish

    3,020View on GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    View on GitHub↗3,020
Compare all 30 related projects→

Frequently asked questions

What does d35m0nd142/lfisuite do?

Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner

What are the main features of d35m0nd142/lfisuite?

The main features of d35m0nd142/lfisuite are: Vulnerability Scanners, Exploitation and Payloads, File Inclusion, Vulnerability Exploitation Frameworks, Web Exploitation Tools.

Which projects share features with d35m0nd142/lfisuite?

Projects with overlapping indexed features include: commixproject/commix — Commix is an automated tool for detecting and exploiting OS command injection vulnerabilities in web applications. It… epinna/tplmap — tplmap is a security tool designed for the detection and exploitation of server-side template injection… andresriancho/w3af — w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… hahwul/a2sv — Auto Scanning to SSL Vulnerability. codingo/nosqlmap — Automated NoSQL database enumeration and web application exploitation tool.