View Revisions: Issue #5765

Summary 0005765: filegps - The only HTTP filename guesser for your webshells
Revision 2019-12-02 13:18 by g0tmi1k
Additional Information Here is a brief description of the tool from the documentation:

When you upload a shell on a web-server using a file upload functionality, usually the file get renamed in various ways in order to prevent direct access to the file, RCE and file overwrite.

fileGPS is a tool that uses various techniques to find the new filename, after the server-side script renamed and saved it.

Some of the techniques used by fileGPS are:

   * Various hash of the filename
   * Various timestamps tricks
   * Filename + PHP time() up to 5 minutes before the start of the script
   * So many more
Revision 2019-10-28 22:44 by 0blio
Additional Information Here is a brief description of the tool from the documentation:

When you upload a shell on a web-server using a file upload functionality, usually the file get renamed in various ways in order to prevent direct access to the file, RCE and file overwrite.

fileGPS is a tool that uses various techniques to find the new filename, after the server-side script renamed and saved it.

Some of the techniques used by fileGPS are:

   * Various hash of the filename
   * Various timestamps tricks
   * Filename + PHP time() up to 5 minutes before the start of the script
   * So many more