Commix Logo

Commix

0
Free
Visit Website

Commix (short for [comm]and [i]njection e[x]ploiter) is an open source penetration testing tool that automates the detection and exploitation of command injection vulnerabilities. It was written by Anastasios Stasinopoulos (@ancst). To install Commix, you can clone the official Git repository or download the latest tarball or zipball. Python (version 2.6, 2.7 or 3.x) is required for running Commix. For usage, you can refer to the user's manual and issues tracker on GitHub.

FEATURES

ALTERNATIVES

An open-source shellcode and PE packer for creating and managing portable executable files.

Maintaining account persistence via XSS and Oauth

Open-source project for building instrumented environments to simulate attacks and test detections.

A tool for interacting with the MSBuild API, enabling malicious activities and evading detection.

Performs network mapping of attack surfaces and external asset discovery using open source information gathering and active reconnaissance techniques.

Full-featured C2 framework for stealthy communication and control on web servers.

A blog post discussing the often overlooked dangers of CSV injection in applications.

Explore the top million websites, ranked by referring subnets, and gain insights into online influence and popularity.