small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns
-
Updated
Apr 8, 2024 - PHP
small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns
This repository is a Dockerized php application containing a LFI (Local File Inclusion) vulnerability which can lead to RCE (Remote Code Execution).
Repositori ini berisi file-file vulnerable terhadap bug tertentu yang saya jadikan demo pada artikel yang saya tulis di abaykan.com
A side note about LFI and Leaking the php source of some sites
The main goal of VWA is to provide a hands-on experience for security rookies on vulnerable web applications available for practicing and learning, so that they can attack realistic web environments… without going to jail :)
A vulnerable lab for understanding difference between LFI and File Retrieval
Dépôt des challenges que j'ai réalisés pour l'évènement CTF Hacky'Nov à Aix-en-Provence 2022.
Add a description, image, and links to the lfi topic page so that developers can more easily learn about it.
To associate your repository with the lfi topic, visit your repo's landing page and select "manage topics."