View Issue Details

IDProjectCategoryView StatusLast Update
0009253Kali LinuxNew Tool Requestspublic2025-07-25 14:32
Reportermqz Assigned To 
PrioritynormalSeverityminorReproducibilityhave not tried
Status newResolutionopen 
Summary0009253: phpmap - fast, modular PHP vulnerability scanner and exploitation framework
Description

Name: phpmap
Repo: https://github.com/mqz0211/phpmap
Author: Qhaleesh Zhariif (MQZ)
License: Apache 2.0
Language: Python 3
Description: phpmap is a modular vulnerability scanner for PHP-based web applications. It supports LFI detection, and upcoming modules include upload bypass and deserialization flaw detection. Designed for CLI, modular use, and Debian packaging compatibility.

Rationale:
There is currently no dedicated, modular PHP-focused vuln scanner included in Kali. This tool fills that gap with LFI scanning, and planned features like RFI, upload bypasses, and eval injection. It follows Debian standards and includes a working Debian package.

Packaging: A debian/ folder is already included in the repository. The tool has been tested with dpkg-buildpackage and meets Kali packaging standards.

Let me know if any changes or improvements are needed for inclusion.

Activities

mqz

mqz

2025-07-25 09:39

reporter   ~0020754

Last edited: 2025-07-25 14:32

Issue History

Date Modified Username Field Change
2025-07-19 15:27 mqz New Issue
2025-07-22 11:43 daniruiz Summary New Tool Submission: phpmap => phpmap - fast, modular PHP vulnerability scanner and exploitation framework
2025-07-25 09:39 mqz Note Added: 0020754
2025-07-25 14:32 mqz Note Edited: 0020754