This script is a python tool designed to generate pictures trojans.It helps penetration testers custom-made their trojans quickly. In some cases like include in php|parsing vulnerability|.htaccess in web app or server.Of course, whatever your ways, only parsing it as php file type can you get a webshell with current catalog info.php.
git clone https://github.com/Who1sCarl/Pictures-Trojans.git
chmod + x pic.py
Short Form | Long Form | Description |
---|---|---|
-i | —image | Image path |
-p | —password | Webshell password |
- To generate a picture trojan with password:
python pic.py -i [image_path] -p [password]
connect the current catalog info.php with your password.
Up to now(2019.4) it can bypass safe dog and most security vendor.
This script is licensed under the GNU GPL license.
Current version is 0.1