LogoAISecKit
  • Search
  • Collection
  • Category
  • Tag
  • Blog
  • Pricing
  • Submit
LogoAISecKit

Newsletter

Join the Community

Subscribe to our newsletter for the latest news and updates

LogoAISecKit

Curated directory of 1700+ AI tools, models, frameworks, MCP servers, and cybersecurity resources

GitHub
Product
  • Search
  • Collection
  • Category
  • Tag
Resources
  • Blog
  • Pricing
  • Submit
Company
  • About Us
  • Privacy Policy
  • Terms of Service
  • Sitemap
Copyright © 2026 All Rights Reserved.
Sponsored Resources
  1. Home
  2. Category
  3. Webshell-Upload-and-Web-RCE-Techniques

Webshell-Upload-and-Web-RCE-Techniques

Classic Web shell upload techniques & Web RCE techniques for web security testing and vulnerability exploitation

Visit Website
Visit Website

Introduction

Webshell Upload and Web RCE Techniques

This repository contains methods for web shell upload and remote code execution (RCE) techniques that can be employed during penetration testing and security assessments.

Key Features:
  • Detailed techniques for uploading web shells to various web consoles, including PHPMyAdmin, Apache Tomcat, and WordPress.
  • Methods to exploit Remote Code Execution vulnerabilities through configurations like insecure Java RMI and open JDWP interfaces.
  • Instructions for setting up a test environment using Docker and common paths for DocumentRoot directories.
Benefits:
  • Provides a comprehensive guide for security professionals to understand and implement attack vectors in controlled environments.
  • Supports the identification of vulnerabilities that can be exploited in web applications and services.
  • Helps in developing better security measures against these attacks by understanding how they are conducted.
Highlights:
  • Techniques for different application frameworks including PHP, ASP.NET, and Java.
  • Links to useful GitHub resources for web shells.
  • Structured documentation for easy navigation and implementation of techniques.
Back

Information

  • Publisher
    AISecKit
  • Websitegithub.com
  • Published date2025/04/28

Categories

  • Penetration Testing
  • Vulnerability Scanners
  • Web Security

Tags

  • Exploit Development
  • Security Auditing
  • Incident Response
  • Penetration Testing

More Products

image of Phantom
DevSecOps ToolsPenetration TestingVulnerability Scanners
Visit Website
icon of Phantom

Phantom

A browser extension for SRC vulnerability mining, collecting sensitive information and suspicious clues from web pages.

Security AuditingOpen SourceIncident ResponseVulnerability ScanningAPI Security+1
E
Penetration TestingSecurity Training PlatformsAI Security Monitoring
Visit Website
icon of Exploiting AI

Exploiting AI

An introductory class on understanding AI security risks and mitigation strategies.

Prompt InjectionGenerative AIRed Team TestingData Poisoning
F
Input Validation & FilteringPenetration TestingAI Security Monitoring
Visit Website
icon of Folly

Folly

Open-source LLM Prompt-Injection and Jailbreaking Playground for testing LLM security vulnerabilities.

Prompt InjectionOpen SourceAPI SecuritySecurity TestingLLM Security+1