Profile Hanger | Authenticated Profile Upload Testing Tool for Ethical Cybersecurity Learning
-
Updated
Feb 26, 2026 - Python
Profile Hanger | Authenticated Profile Upload Testing Tool for Ethical Cybersecurity Learning
🔍Find potential vulnerable/exploitable PHP functions in PHP projects automatically!
Advanced PHP Exploitation Scanner - Static analysis framework for detecting SQL Injection, XSS, RCE, Command Injection, File Inclusion and more vulnerabilities in PHP applications
PHPInfo Insecure Configurations Checker.
Educational RCE (Remote Command Execution) demo using User-Agent injection.
REDACTS | REDCap Arbitary Code Threat Scan — baseline-driven differential analysis to detect tampering, backdoors, and the INFINITERED malware campaign. NOT a replacement for manual review.
WordPress threat detection engine. 30 scanning modules, 158 signatures, recursive payload decoding, ML risk scoring, cross-file correlation, real-time watch mode, and SQLite evidence store. Built for security researchers and WordPress administrators.
Mirsad — a lightweight, dependency-free, taint-aware PHP static security scanner (SAST). Single Python file, no install. Outputs SARIF for GitHub code scanning. MIT.
A real CVE-backed, leakage-free benchmark dataset for WordPress plugin vulnerability detection (labels, loader, folds, expert-verified subset).
Add a description, image, and links to the php-security topic page so that developers can more easily learn about it.
To associate your repository with the php-security topic, visit your repo's landing page and select "manage topics."