{"id":18678626,"url":"https://github.com/elliottophellia/aizawa","last_synced_at":"2025-03-17T14:14:57.531Z","repository":{"id":156716339,"uuid":"574290720","full_name":"elliottophellia/aizawa","owner":"elliottophellia","description":"Aizawa is a command-line webshell designed to execute commands through HTTP header","archived":false,"fork":false,"pushed_at":"2025-02-20T11:31:06.000Z","size":5200,"stargazers_count":60,"open_issues_count":0,"forks_count":9,"subscribers_count":2,"default_branch":"main","last_synced_at":"2025-03-02T13:08:04.885Z","etag":null,"topics":["1kb-webshell","bypass","bypass-disable-function","bypass-webshell","command-line","command-line-tool","hacking","hacktoberfest","mini-shell","pantest","pantesting","penetration-testing-tools","php","php-backdoor","php-webshell","tiny-shell","web-security","webshell","webshell-bypass-403","webshells"],"latest_commit_sha":null,"homepage":"","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"cc-by-sa-4.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/elliottophellia.png","metadata":{"files":{"readme":"readme.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2022-12-05T01:13:58.000Z","updated_at":"2025-02-28T21:50:29.000Z","dependencies_parsed_at":null,"dependency_job_id":"ee3baa18-4825-43c7-8ec8-33c49f58884d","html_url":"https://github.com/elliottophellia/aizawa","commit_stats":null,"previous_names":[],"tags_count":8,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/elliottophellia%2Faizawa","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/elliottophellia%2Faizawa/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/elliottophellia%2Faizawa/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/elliottophellia%2Faizawa/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/elliottophellia","download_url":"https://codeload.github.com/elliottophellia/aizawa/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":244047646,"owners_count":20389206,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["1kb-webshell","bypass","bypass-disable-function","bypass-webshell","command-line","command-line-tool","hacking","hacktoberfest","mini-shell","pantest","pantesting","penetration-testing-tools","php","php-backdoor","php-webshell","tiny-shell","web-security","webshell","webshell-bypass-403","webshells"],"created_at":"2024-11-07T09:39:31.119Z","updated_at":"2025-03-17T14:14:57.508Z","avatar_url":"https://github.com/elliottophellia.png","language":"Python","funding_links":["https://www.paypal.com/paypalme/elliottophellia"],"categories":[],"sub_categories":[],"readme":"\u003cp align='center'\u003e\n\u003cimg src='./images/aizawa.png' width='300'/\u003e\u003cbr/\u003e\u003cimg src=\"https://img.shields.io/badge/AIZAWA%20BYPASS%20WEBSHELL-2e3440?style=for-the-badge\"/\u003e\u003cbr/\u003e\nAizawa is a super simple command-line webshell that executes commands via the HTTP request in order to \u003cb\u003eavoid any WAF or IDS while bypassing disable_function\u003c/b\u003e. The name Aizawa itself is taken from virtual youtuber \u003ca href=\"https://www.youtube.com/channel/UCPkKpOHxEDcwmUAnRpIu-Ng\"\u003eAizawa Ema\u003c/a\u003e from \u003ca href=\"https://vspo.jp/\"\u003eVirtual Esport Project\u003c/a\u003e. Ema herself is a girl who likes bread and cats. She's always trying to improve her game skills. She wants to be a neat and tidy character, but is she really?\u003cbr/\u003e\u003cbr/\u003e\u003cimg src=\"https://img.shields.io/badge/PYTHON-3.10-bf616a?style=flat-square\"/\u003e \u003cimg src=\"https://img.shields.io/badge/LICENE-GPL2.0-ebcb8b?style=flat-square\"/\u003e \u003cimg src=\"https://img.shields.io/badge/VERSION-1.4.1-a3be8c?style=flat-square\"/\u003e\u003cbr/\u003e\u003ca href=\"https://www.paypal.com/paypalme/elliottophellia\"\u003e\u003cimg src=\"https://img.shields.io/badge/BUY%20ME%20A%20COFFEE-79B8CA?style=for-the-badge\u0026logo=paypal\u0026logoColor=white\"/\u003e\u003c/a\u003e \u003ca href=\"https://saweria.co/elliottophellia\"\u003e\u003cimg src=\"https://img.shields.io/badge/TRAKTIR%20SAYA%20KOPI-FAC76C?style=for-the-badge\u0026logo=BuyMeACoffee\u0026logoColor=black\"/\u003e\u003c/a\u003e\n\u003c/p\u003e\n\u003ch1\u003e\u003c/h1\u003e\n\u003cp align='center'\u003e\n\u003ca href=\"#Changelogs\"\u003e\u003cimg src=\"https://img.shields.io/badge/CHANGELOGS-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#Prerequisites\"\u003e\u003cimg src=\"https://img.shields.io/badge/PREREQUISITES-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#Installing\"\u003e\u003cimg src=\"https://img.shields.io/badge/INSTALLING-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#Screenshot\"\u003e\u003cimg src=\"https://img.shields.io/badge/SCREENSHOT-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#References\"\u003e\u003cimg src=\"https://img.shields.io/badge/REFERENCES-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#Licence\"\u003e\u003cimg src=\"https://img.shields.io/badge/LICENCE-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e \u003ca href=\"#Disclaimer\"\u003e\u003cimg src=\"https://img.shields.io/badge/DISCLAIMER-2e3440?style=for-the-badge\"/\u003e\u003c/a\u003e\n\u003c/p\u003e\n\u003ch1\u003e\u003c/h1\u003e\n\n# TODO - v2.0.0\n\n# Minor\n- [ ] Find a better code execution method with eval to replace the current one (aizawa_ninja_eval_.php) which not that effective in newer versions of PHP\n- [ ] Find a PoC to bypass disable_function in PHP 8.2.X \n\n# Major\n- [ ] Remove both HTTP_USER_AGENT and HTTP_ACCEPT_LANGUAGE methods entirely from the code base\n- [ ] Replace httpx with HackRequests\n- [ ] Replace Headers.create with random-header-generator\n- [ ] Implement a http proxy rotator with support from [elliottophellia/yakumo](https://github.com/elliottophellia/yakumo) for each request to make it difficult to track\n- [ ] Implement a replacement for HTTP_USER_AGENT and HTTP_ACCEPT_LANGUAGE which will be using AIZAWA_NINJA like the other NINJA Shell\n- [ ] Moving the webshell itself into new repository to reduce confusion\n\n# Misc\n- [ ] Implement an Authentication for the webshells\n\n# Prerequisites\n\n- Python 3.10\n- Pip 22.0.2 \n- Httpx[http2] 0.25.0\n- Validators 0.22.0\n\n# Installing\n\n### 1. Clone this repository\n```\ngit clone http://github.com/elliottopellia/aizawa\n```\n### 2. Change directory to aizawa\n```\ncd aizawa\n```\n### 3. Install dependencies\n```\nWindows, Linux, Mac, Termux:\npip install -r requirements.txt\n\nArch Linux based:\npacman -S python-httpx python-validators python-h2\n```\n### 4. Run aizawa\n```\npython main.py / python main.py [webshell url]\n```\n\n# Screenshot\n\n![1](./images/ss1.png)\n![2](./images/ss2.png)\n\n# References\n\n- [s0md3v](https://github.com/s0md3v/nano)\n- [Acunetix](https://bit.ly/AcunetiX)\n- [mm0r1](https://github.com/mm0r1/exploits)\n\n# Licence\n\nThis project is licensed under the GPL 2.0 License - see the [LICENCE](https://github.com/elliottophellia/aizawa/blob/main/LICENSE) file for details\n\n# Disclaimer\n\nThis project is for educational purposes only. I will not be responsible for any misuse of this project by any party, or any damage caused by this project.\n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Felliottophellia%2Faizawa","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Felliottophellia%2Faizawa","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Felliottophellia%2Faizawa/lists"}