Local file inclusion exploitation tool
The main features of mzfr/liffy are: Exploitation Tools, File Inclusion, Infrastructure Exploitation, Web Application Exploitation, Web Vulnerability Tools.
Open-source alternatives to mzfr/liffy include: swisskyrepo/ssrfmap — Automatic SSRF fuzzer and exploitation tool. luisfontes19/xxexploiter — Tool to help exploit XXE vulnerabilities. nickstadb/barmie — BaRMIe is a tool for enumerating and attacking Java RMI (Remote Method Invocation) services. hansmach1ne/lfimap — Local File Inclusion discovery and exploitation tool. beefproject/beef — BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It… tarunkant/gopherus — This tool generates gopher link for exploiting SSRF and gaining RCE in various servers.
BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and
BaRMIe is a tool for enumerating and attacking Java RMI (Remote Method Invocation) services.