{"repo":"vladko312/SSTImap","free":true,"listed":false,"github":"https://github.com/vladko312/SSTImap","clone":"git clone https://github.com/vladko312/SSTImap.git","description":"Automatic SSTI detection tool with interactive interface","language":"Python","stars":1615,"topics":["information-security","penetration-testing","penetration-testing-tools","pentest","pentest-tool","pentesting","pentesting-tools","rce","ssti","python"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"SSTImap ====== This project is based on Tplmap. SSTImap is a penetration testing software that can check websites for Code Injection and Server-Side Template Injection vulnerabilities and exploit them, giving access to the operating system itself. This tool was developed to be used as an interactive penetration testing tool for SSTI detection and exploitation, which allows more advanced exploitation. More payloads for SSTImap can be found here. Payloads and techniques came from: - James Kettle's [Server-Side Template Injection: RCE For The Modern Web App][5] - Other public researches [\\[1\\]][1] [\\[2\\]][2] [\\[8\\]][8] - Contributions to Tplmap [\\[3\\]][3] [\\[4\\]][4] - My own research [\\[9\\]][9] This tool is capable of exploiting some code context escapes and blind injection scenarios. It also supports eval() -like code injections in Java, JavaScript, PHP, Python, Ruby and generic unsandboxed template engines. Key differences with Tplmap ----------------------- Even though this software is based on Tplmap's code, backwards compatibility is not provided. - Added two new techniques for SSTI detection and exploitation - Interactive mode ( -i ) allowing for easier exploitation and detection - Simple evaluation payloads as response markers in case of payload reflection - Added new payloads for generic templates, to test all contexts use --generic - Generic evaluating template injection detection using Eval generic module - Base language eval() -like shell ( -x ) or single command ( -X","default_branch":null,"files":null,"tree":[],"storefront":"/r/vladko312","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/vladko312/SSTImap/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}