almandin/fuxploider
File upload vulnerability scanner and exploitation tool. observed · 2026-08-28
Health v2 · maintenance only
32/100
- Activity 20
- Release rhythm 8
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3337
- days_rel: n/a
- days_push: 482
- n_releases_24m: 0
Adoption not part of the score
3328 stars · 509 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
Fuxploider is an open-source penetration testing tool that automates detection and exploitation of file upload form vulnerabilities. It identifies allowed file types and determines the best technique to upload web shells or malicious files to a target web server.
Use cases
- scan a website for file upload vulnerabilities
- test if a file upload form allows web shell uploads
- find which file types an upload endpoint accepts
- automate pentesting of file upload forms
- detect exploitable upload forms during a security assessment
When to choose
- you are doing authorized penetration testing on web apps with upload forms
- you need to automate detection of file upload flaws and shell upload techniques
When to avoid
- you lack explicit permission to test the target (illegal use)
- you need a general-purpose web vulnerability scanner beyond upload flaws
Facets
cli-tool · maturity active
penetration-testing vulnerability-scanning security security penetration-testing web-development python cli windows file-upload web-shell pentesting exploitation web-security linux macos docker
1 source
- readme: https://github.com/almandin/fuxploider · fetched 2026-08-28 · 213f15e5dfe7
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| almandin/fuxploider | main | 32 |
For agents
markdown · JSON · MCP: product_card(name="almandin/fuxploider")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem