Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie
Help Keep Boards Alive. Support us by going ad free today. See here: https://subscriptions.boards.ie/.
If we do not hit our goal we will be forced to close the site.

Current status: https://keepboardsalive.com/

Annual subs are best for most impact. If you are still undecided on going Ad Free - you can also donate using the Paypal Donate option. All contribution helps. Thank you.

Fimap v.0.9 released

  • 27-05-2011 03:44PM
    #1
    Registered Users, Registered Users 2 Posts: 367 ✭✭


    fimap_bigger.jpg



    A little tool for local and remote file inclusion auditing and exploitation.


    Fimap is a little python tool which can find, prepare, audit, exploit and even google automaticly for local and remote file inclusion bugs in webapps. Fimap should be something like sqlmap just for LFI/RFI bugs instead of sql injection.


    Fimap 0.9 Changelog
    Details

    New in this version:
    • Cookie scanning and attacking.
    • New 'AutoAwesome' operating mode.
    • Dot-Truncation mode for breaking suffixes on windows servers.
    • New --force-os switch which lets you define in advance which OS to assume.
    • Better logfile kickstarter injection.
    • Dynamic RFI encoder for webservers which interpret your (PHP) code (--rfi_encode=php_b64).
    • Tons of bugfixes.
    • Lots of stuff I forgot to mention.

    Download link:
    http://code.google.com/p/fimap/downloads/list


Comments

Advertisement