Commix (short for [comm]and [i]njection e[x]ploiter) is an automated tool written by Anastasios Stasinopoulos (@ancst) that can be used from web developers, penetration testers or even security researchers in order to test web-based applications with the view to find bugs, errors or vulnerabilities related to command injection attacks. By using this tool, it is very easy to find and exploit a command injection vulnerability in a certain vulnerable parameter or HTTP header.
This tool is only for testing and academic purposes and can only be used where strict consent has been given. Do not use it for illegal purposes!
How to run container:
docker container run --name commix --rm -ti djerfy/commix:latest --help
Content type
Image
Digest
sha256:cb3740dbc…
Size
41.3 MB
Last updated
9 months ago
docker pull djerfy/commix