Lkwa - Lesser Known Web Attack Lab

✨ deeznutz

✨ Master ✨
Staff member
Joined
May 15, 2017
Messages
981
Likes
760
Points
1,045
LKWA_1_lkwa.png

Lesser Known Web Attack Lab is for intermediate pentester that can test and practice lesser known web attacks such as Object Injection, XSSI, PHAR Deserialization, variables variable ..etc. Write-ups are welcome.
Installation
Just clone the git with git clone https://github.com/weev3/LKWA and move it to your web server and you are good to go.
Current Vulns
  • Blind RCE
  • XSSI
  • PHAR Deserialization
  • PHP Object Injection
  • PHP Object Injection via Cookies
  • PHP Object Injection (Object Reference)
  • SSRF
  • Variables variable
Download LKWA
 
Top Bottom