Commix (short for [comm]and [i]njection e[x]ploiter) is an open source penetration testing tool that automates the detection and exploitation of command injection vulnerabilities. It was written by Anastasios Stasinopoulos (@ancst). To install Commix, you can clone the official Git repository or download the latest tarball or zipball. Python (version 2.6, 2.7 or 3.x) is required for running Commix. For usage, you can refer to the user's manual and issues tracker on GitHub.
FEATURES
SIMILAR TOOLS
SharpShares efficiently enumerates and maps network shares and resolves names within a domain.
A digital archive of the internet, allowing users to capture and browse archived web pages.
SharpPrinter enables efficient discovery of network printers for security and management purposes.
SharpEDRChecker scans system components to detect security products and tools.
Generates randomized C2 profiles for Cobalt Strike to evade detection.
A command that builds and executes command lines from standard input, allowing for the execution of commands with multiple arguments.
BeEF is a specialized penetration testing tool for exploiting web browser vulnerabilities to assess security.
Interactive online malware sandbox for real-time analysis and threat intelligence
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.