c0ny1/upload-labs resource
一个想帮你总结所有类型的上传漏洞的靶场 observed · 2026-08-28
Health v2 · maintenance only
23/100
- Activity 0
- Release rhythm 8
- Longevity 100
Flags: no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3022
- days_rel: n/a
- days_push: 1164
- n_releases_24m: 0
Adoption not part of the score
4190 stars · 826 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
A PHP-based deliberately vulnerable training range (CTF-style lab) that collects 20 levels of file upload vulnerabilities found in penetration testing and CTF challenges. It helps learners systematically understand and practice exploiting different types of upload vulnerabilities.
Use cases
- practice exploiting file upload vulnerabilities
- learn web security through hands-on CTF challenges
- train penetration testing skills on upload bypass techniques
- set up a local vulnerable lab for security education
- study how different upload filtering mechanisms can be bypassed
When to choose
- you want hands-on practice with file upload vulnerabilities in a safe lab
- you are preparing for CTF competitions or pentest certifications
- you are teaching or learning web security concepts around uploads
When to avoid
- you need a production-ready secure file upload solution
- you want a modern framework rather than a legacy PHP 5.x lab
- you are looking for automated vulnerability scanning rather than manual practice
Facets
learning-resource · maturity maintenance
security penetration-testing security penetration-testing education web-development php windows self-hosted vulnerable-app ctf file-upload-vulnerabilities security-training wargame pentest-lab docker linux
1 source
- readme: https://github.com/c0ny1/upload-labs · fetched 2026-08-28 · cb33a33071e1
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| c0ny1/upload-labs | main | 23 |
For agents
markdown · JSON · MCP: product_card(name="c0ny1/upload-labs")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem