Example Usage
usage: lfimap.py [-U [url]] [-F [urlfile]] [-R [reqfile]] [-C <cookie>] [-D <data>] [-H <header>]
[-M <method>] [-P <proxy>] [--useragent <agent>] [--referer <referer>]
[--placeholder <name>] [--delay <milis>] [--max-timeout <seconds>]
[--http-ok <number>] [--csrf-param <param>] [--csrf-method <method>]
[--csrf-url <url>] [--csrf-data <data>] [--second-method <method>]
[--second-url <url>] [--second-data <data>] [--force-ssl] [--no-stop] [-f] [-i]
[-d] [-e] [-t] [-r] [-c] [-file] [-heur] [-a] [-n <U|B>] [-q] [-x]
[--lhost <lhost>] [--lport <lport>] [--callback <hostname>] [-wT <path>]
[--use-long] [--log <file>] [-v] [-h]
LFImap, Local File Inclusion discovery and exploitation tool
TARGET OPTIONS:
-U [url] Single url to test
-F [urlfile] Load multiple urls to test from a file
-R [reqfile] Load single request to test from a file
REQUEST OPTIONS:
-C <cookie> HTTP session Cookie header
-D <data> HTTP request FORM-data
-H <header> Additional HTTP heade
See also
public-skills-builder
Free
Generate Claude Code bug bounty skills from public HackerOne reports and GitHub writeups — 18 vuln c…
365
Free
BlueTeam, RedTeam, Bug bounty, CTI, OSINT, Threat Hunting, Network and Web Recon, Discovery, Enumera…
Impacket
Open Source
Kali
Collection of Python classes for working with network protocols. Includes tools for SMB, MSRPC, LDAP…
365-Stealer
Free
365-Stealer is a phishing simualtion tool written in python3. It can be used to execute Illicit Cons…
API-Pentesting-Tools
Open Source
API Pentesting Tools are specialized security tools used to test and analyze the security of Applica…
BlueToolkit
Free
BlueToolkit is an extensible Bluetooth Classic vulnerability testing framework that helps uncover ne…