Example Usage
python3 commix.py --url "https://example.com/page?ip=127.0.0.1" --level=3 python3 commix.py --url "https://example.com" --data="field=value" --os-shell
See also
GraphQL Voyager / InQL
Open Source
InQL is a Burp Suite and standalone GraphQL security scanner. Analyzes introspection queries, genera…
OWASP ZAP
Open Source
Kali
OWASP's Zed Attack Proxy — one of the world's most popular free web application security scanners. F…
aizawa
Open Source
Aizawa is a command-line webshell designed to execute commands through HTTP header…
Evilginx2
Open Source
Standalone man-in-the-middle attack framework that bypasses 2FA by proxying authentication sessions …
Burp Suite Extensions (BApp Store)
Freemium
Marketplace of extensions for Burp Suite covering active/passive scanning, custom insertion points, …
BurpAPISecuritySuite
Open Source
Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzi…