random gallery image
random tutorial
preview

..how to make a multi bridge between THC_DO, THC_SS and THC_II and keep track of the output in realtime using iframes. So what exactly are we going to do? First of all if you don't know..

read more

random information gathering
THC Discover

Discovers interesting locations, paths and data of a website

more about this module
more of this category
more modules

HackSuite File Library
File Library
Here you can find the latest files and structure of the THC HackSuite, note that if you have an earlier version of the suite it's not recommended to update files manually. Instead you should overwrite your existing HackSuite environment.
<?php
/*
Exploitable file upload server

Author: Remco Kouw
Site: http://www.hacksuite.com
Last Edit: 25-02-2015
*/
define('IN_SCRIPT',1);
// set some paths
$_ROOT str_replace("/TestServers","",substr($_SERVER['SCRIPT_FILENAME'],0,strrpos($_SERVER['SCRIPT_FILENAME'],"/")));
$sCurrentFile substr($_SERVER['SCRIPT_FILENAME'],strrpos($_SERVER['SCRIPT_FILENAME'],"/")+1);
// get the current log folder
$_DYNAMIC_ROOT "..";
include_once(
"../vars.php");
include_once(
"../paths.php");
$aLogFolder explode("/",$_PATHS['log_root']);
$sLogFile $_ROOT."/".$aLogFolder[(count($aLogFolder)-1)]."/".$sCurrentFile;
// include setup based upon file path
include_once($_ROOT."/Includes/server_setup.php");
// did we sent the form in order to login?
if(isset($_FILES[$_CONFIG['sFileUploadVar']])){
    
$aExtensions explode(",",$_CONFIG['sExtensions']);
    if(
$_FILES[$_CONFIG['sFileUploadVar']]['size']>$_CONFIG['iMaxB']){
        die(
"File is too big");
    }
    if(
$_CONFIG['iCheckExtension']==1){
        if(
$_CONFIG['iAllowFakeExtension']==0){
            if(!
in_array($_FILES[$_CONFIG['sFileUploadVar']]['type'],$aExtensions)){
                die(
"Invalid file type");
            }
        }
    }
    
$sDest $_ROOT."/Uploads/".basename($_FILES[$_CONFIG['sFileUploadVar']]['name']);
    if(
move_uploaded_file($_FILES[$_CONFIG['sFileUploadVar']]['tmp_name'],$sDest)){
        echo
"File " .basename($_FILES[$_CONFIG['sFileUploadVar']]['name']). " has been successfully uploaded";
    }
    else{
        echo
"Failed to upload file";
    }
}
else{
    
// create login form
    
echo"<html>\n";
    echo
"<head>\n";
    echo
"<title>Very Basic Upload System</title>\n";
    echo
"<meta http-equiv=\"Content-Type\" content=\"text/html; charset=iso-8859-1\">\n";
    echo
"<style type=\"text/css\">\n";
    echo
"<!--\n";
    echo
"body { font-family:Arial,Verdana,Helvetica;font-size:10px;color:#c0c0c0; }\n";
    echo
"-->\n";
    echo
"</style>\n";
    echo
"</head>\n";
    echo
"<body>\n";
    echo
"<form method=\"post\" enctype=\"multipart/form-data\" target=\"_blank\">\n";
    echo
"<b>file:</b> <input type=\"file\" name=\"".$_CONFIG['sFileUploadVar']."\"><input type=\"hidden\" name=\"MAX_FILE_SIZE\" value=\"".$_CONFIG['iMaxB']."\"><br />\n";
    echo
"<b>allowed files:</b> ".$_CONFIG['sExtensions']."<br />\n";
    echo
"<input type=\"submit\" name=\"submit\" value=\"Upload\">\n";
    echo
"</form>\n";
    echo
"</body>\n";
    echo
"</html>";
}
?>
powered by
site stats
cms statistics:
version: 0.6.0
downloads: 3882
native: 26
modules: 21
apps: 2
support development
It takes lots of calories in order to create new things for the hacksuite, so it would be grand if you could buy me a protein shake or extra energy to keep me going. Thanks!
disclaimer
We are not responsible for any direct or indirect damage caused by abusing the tools provided on hacksuite.com. The suite is developed for educational purposes, use at your own risk!
Created by Remco Kouw. Powered by protein shakes and a high calorie diet.