phpsploit

Backdoor framework

A tool allowing attackers to remotely execute commands and maintain persistence on compromised web servers using stealthy PHP backdoors.

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

GitHub

2k stars
104 watching
442 forks
Language: Python
last commit: over 2 years ago
Linked from 6 awesome lists

advanced-persistent-threatbackdoorblackhatc2command-and-controlhackinghacking-frameworkhacktoolpersistencephp-backdoorphp-webshellphp-webshell-backdoorpost-exploitationprivilege-escalationredteamstealthweb-hackingwebshell

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
bartblaze/php-backdoorsA collection of PHP backdoors for educational and testing purposes only.2,211
wahyuhadi/beacon-c2-goA backdoor tool designed to facilitate remote access and command execution on Windows systems38
kaiyuanzh/flipA framework for defending against backdoor attacks in federated learning systems48
paulsec/twittorA tool that uses Twitter as a covert command and control server for remotely executing commands on compromised systems.765
netero1010/quser-bofA proof-of-concept implementation of a Windows API-based backdoor using the quser.exe utility83
snovvcrash/bofsA collection of C code snippets demonstrating various Windows backdoors and command execution methods52
ebagdasa/backdoor_federated_learningThis project provides an implementation of backdoor attacks in federated learning frameworks using Python and PyTorch.277
spidermate/b-xssrfA toolkit to detect and track vulnerabilities in web applications295
ybdai7/chameleon-durable-backdoorA federated learning system implementation that enables planting durable backdoors in global models by adapting to peer images.34
0ang3el/websocket-smuggleA tool to expose security vulnerabilities in WebSocket reverse proxying allowing HTTP requests to be smuggled through341
ethz-spylab/rlhf_trojan_competitionDetecting backdoors in language models to prevent malicious AI usage109
justinas/nosurfProtects against Cross-Site Request Forgery (CSRF) attacks in web applications by verifying user input1,603
rew-sploit/rew-sploitAnalyzes and dissects malware and obfuscated code from various attack frameworks like Metasploit and Cobalt Strike139
kudaes/lolbitsA C2 framework using BITS and direct syscalls to establish a covert communication channel215
slimphp/slim-csrfA middleware solution to protect against Cross-Site Request Forgery attacks in HTTP requests341