tennc/webshell
24.2
Critical · 26 September 2026
298.6k
lines of production code
PHP
primary language
4
measurements over time
What this system is
This release significantly expands the repository's collection of webshells and backdoors, adding extensive implementations for PHP, ASP, ASPX, JSP, and Perl, including tools like Behinder, Godzilla, and WSO. It also introduces WebSocket-based in-memory shells and various reverse shell utilities for Python and C. While the majority of changes introduce new offensive capabilities, the release also includes the removal of a specific RadHat backdoor and the addition of several external webshell repositories as submodules.
Features
Add AntSword shell scripts for PHP, JSP, JSPX, and Python
Added a collection of server-side scripts for the AntSword tool, including PHP (php1.php, php2.php, php3.php, php\_assert.php, php\_create\_function.php, php\_custom\_script\_for\_mysql\_fix.php, php\_custom\_spy\_for\_mysql.php), JSP (jsp\_custom\_script\_for\_oracle.jsp, jsp\_custom\_spy\_for\_mysql.jsp), JSPX (jspx\_custom\_script\_for\_mysql.jspx), and Python (python2\_custom\_script.py) variants, along with a README and a WebLogic Shiro shell example. These scripts provide functionality for file management, terminal access, and database interaction (MySQL, Oracle) with support for various encoders (base64, hex, AES).
antSword-shells · high confidence
Add Netspy JSP tool for internal network scanning
A new JSP-based utility named 'Netspy' has been added to the application. This tool provides a web interface for internal network reconnaissance, including HTTP proxying, web scanning, and port scanning capabilities, designed to assist with internal network penetration testing scenarios.
jsp/netspy · high confidence
Add WeakNet PHP Execution Shell (WPES) v0.2
Introduced a new post-exploitation PHP execution shell (WPES) that provides a web-based interface for executing commands on the host system. The tool supports multiple execution methods (exec, system, passthru, shell\_exec) and includes features for directory traversal, file content viewing, and file downloading.
php/wpes · high confidence
Add YAPS PHP reverse shell and documentation
Added the YAPS (Yet Another PHP Shell) reverse shell tool, a single-file PHP script that provides a command-line interface for remote code execution, file enumeration, and privilege escalation assistance. The release includes the \yaps.php\ script and a \readme.md\ containing usage instructions, feature lists, and changelog details.
php/YAPS · high confidence
Add new webshell variants and C\# web service handlers to caidao-shell
The caidao-shell directory was expanded with numerous new PHP, ASP, JSP, and C\# webshell files (e.g., 3802.php, 404.php, a.asp, customize.ashx, customize.asmx, guest.jsp, ice.php, p.php, qun01.php, redirect.asp). These files provide additional methods for remote command execution, file management, and system interaction, often using obfuscation or specific language features (like ASP.NET WebMethods or JSP scriptlets) to facilitate penetration testing.
caidao-shell · high confidence
Added ASP webshell files
The 'asp' directory now contains multiple ASP files, including '08小组内部交流专用.asp.txt', '1d.asp', and others, which appear to be webshells or penetration testing tools. These files contain server-side script code designed for remote command execution and file management on a web server.
asp · high confidence
Added Ani-Shell v1.5 PHP web shell
Introduced the Ani-Shell v1.5 PHP web shell, providing a suite of administrative and offensive capabilities including a file manager, mass mailer, web-server fuzzer, bind shell, back connect, and PHP code evaluation. The shell includes a secure login mechanism, email traceback alerts, and anti-crawler protection, with default credentials set to 'lionaneesh'/'lionaneesh'.
php/Ani-Shell · high confidence
Added Axis2 web shell utility
Added a new Axis2 web shell implementation in the \other/Axis2Shell\ directory, including a \README.md\ and \Utils.java\. This tool provides remote command execution, reverse shell capabilities (with OS-specific handling for Linux and Windows), file upload/download functionality, and classpath inspection, intended for use against Apache Axis2 services.
other/Axis2Shell · high confidence
Added B4TM4N TOOLZ backconnect shells
The repository now includes a new 'backconnect' directory containing multi-language backdoor implementations (C, Java, JavaScript, PHP, Perl, Python, and Ruby) designed to establish reverse shell connections. A 'list.json' manifest and a README file were also added to catalog these tools.
b4tm4n-toolz · high confidence
Added Cat webshell with command execution, file management, and reverse shell capabilities
Added a new JSP-based webshell named 'Cat' in the jsp/cat directory, including the main Cat.java and cat.jsp files that provide system command execution, file browsing and editing, remote file downloading, automatic download-and-execute functionality, and reverse shell capabilities. Also added simplified command execution scripts (cmd1.jsp, cmd2.jsp), a PHP file manager (test.php), and documentation (readme.md, catjsp.md) describing the tool's features.
jsp/cat · high confidence
Added JDK 1.3 Webshell with basic file and command execution capabilities
A new webshell implementation for JDK 1.3 (tested with Tomcat 7 and WebLogic 8) has been added to the repository. This tool provides basic file operations including browsing, uploading, downloading, deleting, and editing files, as well as command execution capabilities.
other/jdk1.3webshell · high confidence
Added JSP webshells and utility scripts to the hackk8 directory
Added multiple JSP files to the jsp/hackk8 directory, including command execution shells (cmdjsp.jsp, Customize.jsp, thx.jsp), a reverse shell (jsp-reverse.jsp), a file upload utility (minupload.jsp), a Jython-based interactive shell (Java Shell.jsp), and various administrative tools (JspWebshell 1.2.jsp, jspspy variants, download.jsp, other/thx.jsp). These files provide remote command execution, file system management, database interaction, and reverse TCP shell capabilities.
jsp/hackk8 · high confidence
Added JSP-based webshell components to the codebase
Added a new Java servlet class (Chropper.java) and multiple JSP script files (including '文明版', '无压缩版', and '更新版') that implement remote file and database management capabilities. The JSP files contain embedded Java code that allows for executing system commands, managing files, and querying databases (supporting Oracle, MySQL, MSSQL, etc.), effectively introducing a new type of server-side script component to the 'jsp' directory.
jsp/Chropper for jsp · high confidence
Added JspSpy web shell tools to the JSP directory
Added the JspSpy web shell suite, including JspSpy.jsp, JspSpy1.jsp, JspSpyJDK5.jsp, JspSpyJDK51.jsp, and Jspspyweb.jsp, which provide remote administration capabilities such as file management, database connectivity, command execution, and port scanning. A Chinese-language usage guide (使用说明.txt) was also added to document the tool's features.
jsp/jspspy · high confidence
Added PHP and Perl web shell backdoors with client scripts
The repository now includes several PHP-based web shell backdoors (e.g., \odd.php\, \server.php\, \idc.php\) that execute arbitrary PHP code via HTTP POST data or GET parameters, often using \include('php://input')\ or \eval()\ to bypass detection. Corresponding client scripts (\phpkit.py\, \phpkitcli.py\, \wsb.pl\, \client.py\) are added to interact with these backdoors, providing remote shell access, file upload capabilities, and command execution. The PHP backdoors are designed to evade standard security checks by avoiding direct calls to \eval()\ or \system()\ in the server-side script, instead relying on PHP's \include()\ function and \php://input\ stream. The Perl script \wsb.pl\ provides a command-line interface for interacting with the \idc.php\ backdoor, which uses MD5-hashed credentials for authentication. These additions represent a new capability for remote code execution and file management on compromised PHP servers.
(repo-wide) · high confidence
Added PHP exception-based webshell example
A new PHP file (Exception.php) was added to the webshell-free project, containing a PHP script that uses exception handling and eval to execute POST data, serving as a webshell example. A README.md was also added to the project root, providing a title, a visitor badge, a legal disclaimer, and links to related webshell projects.
webshell-free · high confidence
Added PHP webshell and code-fetching scripts
Added three new files: a PHP webshell (webshell.php) that fetches and executes remote PHP code, a script (getcode.php) that returns a base64-encoded payload, and a readme.md explaining the setup. The webshell uses call\_user\_func to execute the fetched code, which is assert($\_POST\[c\]).
php/tank96a · high confidence
Added PHP webshell and exploit code to php/wso-ng
The directory php/wso-ng now contains wso-ng.php, a PHP webshell providing file management, remote file inclusion, and FPM socket exploitation, along with wsoExGently.php, a proof-of-concept exploit targeting PHP 7.0–8.0 to bypass disable\_functions restrictions. These files introduce new capabilities for remote code execution and system administration on affected PHP environments.
php/wso-ng · high confidence
Added PHP webshell scripts for encryption and decryption
Two new PHP files, encrypt.php and decrypt.php, have been added to the upsi1on/webshell/sungux/ directory. The decrypt.php file provides a web-based interface for file management, including directory browsing, file uploads, and PHP info display. The encrypt.php file contains obfuscated PHP code designed to execute arbitrary commands, representing a significant security risk as it enables remote code execution on the server.
upsi1on · high confidence
Added PHP webshell variants (404super, v1) to blackbin
The php/blackbin directory now includes new PHP webshell files: 404super.php, and a v1 suite (code.php, dev\_core.php, make2.php). These scripts provide remote administration capabilities, including authentication (via password or cookie), file management, and code execution. The v1 implementation uses obfuscated strings and base64/gzipped payloads to hide its functionality, while 404super.php uses a similar obfuscation technique to execute commands.
php/blackbin · high confidence
Added PHP webshells and file managers to php/zxc
Added several PHP-based webshells and file managers to the php/zxc directory, including .v.php (a WSO-style shell with encrypted POST data and obfuscated login), kyo.php (a base64-encoded shell using eval with obfuscated function names), bypass403.php (a file manager with hex-encoded parameters and directory traversal), shell.php (a private webshell with session-based authentication and system info display), and a README.md listing these tools. These files provide remote command execution, file management, and system administration capabilities on the server.
php/zxc · high confidence
Added Python-based reverse shells and SMTP proxy utilities
Added several new Python scripts to the repository: a Python 2 reverse/bind shell (d00r.py), a Python 3 compatible version (d00r\_py3.py), a CGI shell (cgi-python.py), an SCTP reverse shell (sctp\_reverse.py.txt), a darkBC shell (darkBC.py.txt), and an SMTP proxy server (smtpd.py). These additions provide various methods for establishing reverse shells via TCP, SCTP, and CGI, as well as an SMTP proxy implementation.
py · high confidence
Added SaiProbe v1.0 PHP utility script
A new PHP file, SaiProbe\_v1.0.php, was added to the php/SaiProbe directory. This script provides a suite of server-side utilities including server information collection, command execution, port scanning, host liveness detection, proxy access, and shell rebound capabilities.
php/SaiProbe · high confidence
Added WSO webshell versions 4.0.5 and 2.2.0
The repository now includes new versions of the WSO webshell: WSO 4.0.5 and WSO 2.2.0 (base64 encoded). These files provide updated or alternative implementations of the webshell, allowing users to deploy different versions depending on their environment or requirements.
php/wso · high confidence
Added WebShell submodule and documentation
The xl7dev area now includes the WebShell project as a Git submodule, making it available within the repository. Additionally, a new read.me file has been added to the webshell/other/webshell directory, providing basic documentation or notes for that component.
xl7dev · medium confidence
Added WebSocket-based in-memory shells and proxy capabilities
The wsMemShell directory now includes Java and JSP files that implement WebSocket-based in-memory shells. This includes a generic WebSocket command shell (WsCmd.java), a 'Godzilla' style WebSocket handler (Godzilla.java), and JSP-based injectors for Tomcat and WebLogic servers. Additionally, a WebSocket proxy implementation (wsproxy.jsp) is provided to facilitate network tunneling. These components enable remote command execution and proxying via WebSocket connections, bypassing traditional shell detection mechanisms.
wsMemShell · high confidence
Added b374k PHP shell scripts
Added the b374k PHP shell, including a README, a minified version (b374k-2.2.min.php), and a polyglot version (b374k-2.2.poly.php).
php/b374k · high confidence
Added database extraction scripts for multiple platforms
The 'drag' directory now contains a collection of scripts for extracting data from various database systems. This includes ASP, PHP, and JSP files for MySQL, MSSQL, Oracle, and general system access, as well as a C\# (.aspx) utility for exporting table data. These scripts allow users to connect to databases, query tables, and export the resulting data to files or web responses, facilitating data extraction workflows.
drag · high confidence
Added devilzShell backdoor implementations for ASP, ASPX, CGI, and JSP
Added new files for the 'devilzShell' backdoor, providing implementations in four web server environments: ASP (devilzShell.asp), ASPX (devilzShell.aspx), CGI (devilzShell.cgi), and JSP (devilzShell.jsp). Each file contains the same functional logic, including hardcoded credentials and embedded binary payloads, tailored to the respective server-side scripting language.
Backdoor Dev Shells · high confidence
Added documentation for bytecode enhancement and memory horse injection
Added a new markdown file in the java directory that documents the process of using bytecode enhancement tools (inject.jar and agent.jar) to deploy a memory horse. The documentation provides instructions for copying the JAR files to a target server, running the injection tool, and connecting to the injected endpoint to execute commands.
java · medium confidence
Added multiple ASP.NET webshells and a Unicode encoding bypass guide
The aspx directory now contains numerous new ASPX files (e.g., AspxSpy2014Final.aspx, abcd.aspx, a3.aspx) and a markdown file (.NET WebShell 免杀系列之Unicode编码.md) detailing how to bypass webshell detection tools using Unicode encoding. These files introduce new capabilities for remote command execution, file management, and network sniffing, representing a significant expansion of the repository's content.
aspx · high confidence
Added multiple PHP web shells and database management interfaces
The repository now includes a collection of PHP-based remote administration tools and database interfaces. This adds several distinct web shells—including Antichat Shell v1.3, Crystal Shell, Dx Shell, NIX REMOTE WEB-SHELL, NetworkFileManagerPHP, and PH Vayv—each providing command execution, file management, or system information capabilities. Additionally, two MySQL web interfaces (versions 0.8 and 1.0) are added, offering database browsing, table management, and SQL query execution through a web browser.
php/PHPshell · high confidence
Added multiple Perl-based web shells and utility scripts
Added several new Perl scripts to the \pl\ directory, including web shells (\Silic Group\_cgi.pl\, \WebShell.cgi.pl\, \perlweb\_shell.pl\, \lurm\_safemod\_on.cgi.pl\, \pps-pl/pps-v1.0.pl\), a mass defacement tool (\hmass (priv8 mass defacor).pl\), a directory scanner (\inc.pl\), and a memory exploitation script (\exim.pl\). These additions introduce new capabilities for remote command execution, file system browsing, and automated defacement across the application.
pl · high confidence
Added multiple versions of the PHPspy webshell
The repository added several new PHP files representing different versions of the PHPspy webshell (2008, 2009lite, 2009mssql, 2011, 2013 encrypted, 2013 unencrypted, and 2014). These files provide remote administration capabilities for PHP environments, including features such as file management, database backup and download, PHP information display, and authentication mechanisms.
php/phpspy · high confidence
Added multiple webshell repositories as submodules
The repository now includes a collection of external webshell projects as Git submodules. This adds several distinct repositories to the project, including AwesomeScript, BlackArch/webshells, DeEpinGh0st/PHP-bypass-collection, JohnTroony/php-webshells, JoyChou93/webshell, LandGrey/webshell-detect-bypass, WangYihang/Webshell-Sniper, bartblaze/PHP-backdoors, lcatro/PHP-WebShell-Bypass-WAF, lhlsec/webshell, malwares/WebShell, oneoneplus/webshell, tanjiti/webshellSample, tdifg/WebShell, threedr3am/JSP-Webshells, vnhacker1337/Webshell, and webshellpub/awsome-webshell.
(repo-wide) · high confidence
Added new chat room and ASP backdoor scripts
Added a new chat room interface implemented in both ASP and PHP, which allows users to submit messages that are then written to a file on the server. Additionally, a new ASP script was added that executes arbitrary code via a 'pass' parameter, representing a significant behavioral change to the application's capabilities.
net-friend · high confidence
Added webshell and password list files
Added several files containing webshell code snippets and password lists. The 'other' directory now includes 'pwd.txt' and 'webshell-pwd.txt' containing common passwords and webshell credentials, 'bypass\_waf.txt' with PHP/ASPX/ASP code snippets for WAF bypass, 'small\_shell.txt' with ASP/ASPX/PHP one-liners, and 'ololo.cfm' which is a ColdFusion webshell. These additions provide tools for penetration testing and security analysis.
other · high confidence
Added webshell detection bypass resources
Added a new directory 'webshell-detect-bypass' containing a link to the 'LandGrey/webshell-detect-bypass' project, which provides methods and techniques for bypassing WAF and webshell detection. Additionally, a 'readme.md' file was added to the content directory to archive PDFs related to webshell evasion and detection bypass techniques.
content · high confidence
Added webshell scripts for command execution, file browsing, and file upload across ASP, C, CFM, and JSP platforms
The fuzzdb-webshell directory now includes a collection of webshell scripts designed for remote command execution, directory listing, and file uploads. New files have been added for ASP (cmd.asp, cmdasp.asp, cmd-asp-5.1.asp, list.asp, up.asp, ntdaddy.asp), C (cmd.c), ColdFusion (cfExec.cfm, cfSQL.cfm, cmd.cfm), and JSP (CmdServlet.java, ListServlet.java, UpServlet.java, browser.jsp, cmd.jsp, cmdjsp.jsp, jsp-reverse.jsp, list.jsp, up.jsp, and Windows-specific JSPs). These scripts allow users to execute system commands, browse the file system, and upload files on the respective web server platforms.
fuzzdb-webshell · high confidence
Addition of numerous PHP webshell scripts and obfuscation techniques
The repository has been populated with a large number of PHP scripts designed to function as webshells, providing remote command execution capabilities. These files demonstrate various obfuscation and evasion techniques, including the use of \assert\, \preg\_replace\ with the 'e' modifier, \array\_walk\, \call\_user\_func\, and other dynamic function calls to execute arbitrary code. Some scripts utilize base64 decoding, string manipulation, and variable variables to bypass security filters and WAF rules. The addition of these files significantly increases the risk associated with this repository.
php · high confidence
Expanded webshell collection with new submodules, tools, and documentation
The repository has been significantly expanded to include a large number of external webshell repositories as Git submodules, including projects like xl7dev/WebShell, JohnTroony/php-webshells, and BlackArch/webshells. Additionally, the project now provides a curated list of related tools and other webshell collections in the main README, and introduces new documentation files covering webshell evasion techniques, a Python proxy script, and a security policy. The project's license has also been updated to MIT.
(repo-wide) · high confidence
Update Antak Webshell and add Nishang payloads
The Antak ASP.NET webshell in aspx/nishang/Antak-WebShell has been updated, including its README and source code. Additionally, several new Nishang PowerShell payloads have been added to the repository: backdoors (DNS\_TXT\_Pwnage, Execute-OnTime, HTTP-Backdoor), execution scripts (Download-Execute-PS, Download\_Execute, Execute-Command-MSSQL, Execute-DNSTXT-Code), escalation tools (Enable-DuplicateToken, Remove-Update), and a VM detection script (Check-VM). A CHANGELOG.txt file has also been added to the nishang directory.
aspx/nishang · high confidence
Security
Add multiple PHP web shell scripts to the php/twitter directory
The repository now includes ten new PHP files (e.g., 1n73ction.php, 404 shell code.php, bh.php) that function as remote administration tools or web shells. These scripts provide unauthorized remote access capabilities, including file management, command execution, and system information gathering, often disguised with login authentication or 404 error page headers to evade detection.
php/twitter · high confidence
Added ASP webshell file
A new ASP file named 'shell.asp' has been added to the 'asp/ajs/' directory. This file contains encoded VBScript code, which is commonly used in webshells to execute system commands on a server. The addition of this file represents a significant security risk, as it provides a mechanism for remote code execution.
(repo-wide) · high confidence
Added PHP in-memory webshell with self-deletion and remote code execution
A new PHP script (memWebshell.php) was added that deletes its own file after execution, runs indefinitely in the background, and continuously fetches and evaluates remote PHP code from a specified URL. Accompanying documentation (readme.md) explains the attack principle, detection methods, and includes a test payload (test.txt) that writes timestamps to a file. This introduces a significant security risk as it enables persistent, fileless code execution on affected servers.
php/MemShellForPHP · high confidence
Added multiple Godzilla backdoor scripts across various web server environments
The repository now includes several new files in the Godzilla directory, including PHP scripts (123.php, 20220213.php, 20220213\_02.php, 20220213\_03.php), ASP.NET handlers (123.ashx), ASP.NET Web Services (123.asmx), ASP.NET pages (123.aspx), JSP (123.jsp), and JSF pages (123.jspx). These files contain obfuscated code designed to execute arbitrary commands on the server, representing a significant security risk if deployed.
Godzilla · high confidence
Added webshell scripts to the www-7jyewu-cn directory
New webshell files have been added to the www-7jyewu-cn directory, including a PHP script (DOC\_ZIBSZXBIEG.php) and ASP scripts (UnKnown 高级Vip防删收费版.asp and its variant). These scripts provide remote administration capabilities, including file management, command execution, and database interaction, effectively introducing a backdoor into the application.
www-7jyewu-cn · high confidence
Removal of RadHat webshell backdoor
The ASP script located at asp/RadHat-webshell-del-backdoor has been removed from the codebase. This file contained obfuscated code designed to provide unauthorized remote access to the server, effectively acting as a backdoor. Its removal eliminates a critical security vulnerability that could allow attackers to execute arbitrary commands on the affected system.
asp/RadHat-webshell-del-backdoor · high confidence
Behavioural changes
Added ASP.NET backdoor implementation and configuration instructions
Added a C\# class (Customize.cs) and global.asax file that implement a web shell backdoor, along with documentation (httpHandlers.md, httpModules.md, readme.md) explaining how to configure web.config to route requests to this handler. The backdoor accepts commands via form parameters (023, Z1, Z2) and provides file system and process execution capabilities.
_aspx/httpHandlers\backdoor · high confidence
Added Behinder webshells and documentation
Added multiple PHP, ASP, ASPX, and JSP webshell files (shell.php, shell.asp, shell.aspx, shell.jsp, shell2020-12-06.php, shell-2021-03-18.php, shell-2021-04-23.php) along with a readme and a guide on modifying Behinder traffic encryption. These files implement encrypted command execution capabilities for the Behinder tool, allowing users to deploy and manage backdoors on various web server environments.
Behinder · high confidence
Added JSP shell with arbitrary Java code execution
A new JSP file, jshell.jsp, was added to the site, which executes arbitrary Java code provided via the 'src' request parameter using the Java 9+ JShell API. The accompanying readme.md provides a test case demonstrating remote command execution (e.g., running 'pwd'), indicating this is a webshell designed for unauthorized code execution.
jsp/p2j.cn · high confidence
Added Node.js shell script enabling remote command execution
A new file, nodejs/shell.js, was added to the project. This script establishes a network connection to a remote host and pipes standard input/output between a spawned shell (/bin/sh) and a TCP socket. This change introduces a behavioral change by adding a component that facilitates remote shell access.
nodejs · medium confidence
Added collection of JSP webshells and file browser utilities
The repository now includes a variety of JSP-based webshells and administrative tools, such as 'JspSpy', 'JSP\_KIT', and 'jsp File browser 1.2'. These files provide capabilities for remote command execution, file system browsing, and file management on a JSP-enabled server.
jsp · high confidence
Added multiple JSP webshell scripts to the jspx directory
The jspx directory now contains several new JSP files (cmd.jspx, jjw.jspx, jspspy.jspx, jspx.jspx, jsp一句话.txt, jw.jspx, paxmac.jspx) that implement remote command execution capabilities. These scripts allow users to execute system commands on the server by passing parameters through HTTP requests, effectively creating backdoors that can run arbitrary processes and return their output.
jspx · high confidence
Added new web shell and backdoor scripts to the malware collection
The web-malware-collection-13-06-2012 directory was updated with several new ASP-based web shells and backdoors, including 3fexe.txt, ASpy.txt, EFSO.txt, ELMALISEKER Backd00r.asp, NTDaddy.v1.9.txt, RHTools.v1.5-BETA.txt, RemExp.asp, Server Variables.asp, and aspSH.v1.txt. These files contain malicious code designed to provide remote administration, file management, and command execution capabilities on compromised Windows servers.
web-malware-collection-13-06-2012 · high confidence
Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.
How this codebase got here
This is the PUBLIC form of this artifact. Findings are listed in full, but the details of SECURITY findings — which rule fired, in which file, on which line, and how to fix it — are deliberately withheld, and any secret-scanner results are excluded entirely. Where detail is absent here it was REMOVED FOR PUBLICATION; it is not missing from the analysis. The complete artifact is available from the repository owner.
Score
- CAI 26 → 24 (-2.1)
- Rubric changed (rubric-2026.08.15 → rubric-2026.09.15) — scores are not directly comparable.
Lenses
- Code Health 97 → 87 (-10.4)
- Architecture 96 → 100 (+3.5)
- Maturity 48 → 32 (-16.2)
- Readiness 9 → 8 (-0.8)
- Security 13 → 33 (+19.2)
- Accessibility 30 (new)
Resolved (98)
- ADR not followed: 404 (web-malware-collection-13-06-2012/PHP/404.txt)
- ADR not followed: Home page: http://devilzc0de.com/ (web-malware-collection-13-06-2012/PHP/27.9.txt)
- Coverage not measured — test suite did not build
- Dimension evaluation failed
- Embedded base64 eval script fragment (not an ADR) (asp/2022-08-12.aspx.txt)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- High: security finding (details withheld)
- …and 78 more
New (5926)
- 0.actionBruteforce (cognitive 46) (php/wso/wso-4.2.0.php)
- 0.actionBruteforce (cyclomatic 16) (php/wso/wso-4.2.0.php)
- 0.actionConsole (cognitive 17) (php/wso/wso-4.2.0.php)
- 0.actionFilesMan (cognitive 143) (php/wso/wso-4.2.0.php)
- 0.actionFilesMan (cyclomatic 64) (php/wso/wso-4.2.0.php)
- 0.actionFilesTools (cognitive 93) (php/wso/wso-4.2.0.php)
- 0.actionFilesTools (cyclomatic 51) (php/wso/wso-4.2.0.php)
- 0.actionSafeMode (cognitive 19) (php/wso/wso-4.2.0.php)
- 0.actionSecInfo (cognitive 36) (php/wso/wso-4.2.0.php)
- 0.actionSecInfo (cyclomatic 18) (php/wso/wso-4.2.0.php)
- 0.actionSql (cognitive 129) (php/wso/wso-4.2.0.php)
- 0.actionSql (cyclomatic 53) (php/wso/wso-4.2.0.php)
- 0.actionStringTools (cognitive 18) (php/wso/wso-4.2.0.php)
- 0.actionStringTools (cyclomatic 17) (php/wso/wso-4.2.0.php)
- 0.auth_error (cognitive 17) (b4tm4n-toolz/database/adminer-4.5.0.php)
- 0.connect_error (cognitive 44) (b4tm4n-toolz/database/adminer-4.5.0.php)
- 0.connect_error (cyclomatic 16) (b4tm4n-toolz/database/adminer-4.5.0.php)
- 0.edit_fields (cognitive 44) (b4tm4n-toolz/database/adminer-4.5.0.php)
- 0.edit_fields (cyclomatic 26) (b4tm4n-toolz/database/adminer-4.5.0.php)
- 0.edit_form (cognitive 69) (b4tm4n-toolz/database/adminer-4.5.0.php)
- …and 5906 more
Written by watchdog.canine.dev from the codebase's own history, inside the signed delivery this page is composed from.
Survey your own repository
tennc/webshell was measured the same way every project in this corpus was: the same rubric, at a pinned commit, with the result published in full. Point a surveyor at a repository you know and see whether you agree with it.
About this page
- The score is its most recent published measurement, taken on 26 September 2026 at a pinned commit. It is not a live figure and does not change until the project is measured again.
- Measured at commit 6b17eae4a0bc792f996a38ce32772e4db9c7c799 — the exact code this score is about.
- Scored under rubric-2026.09.15 — the same rubric and the same method as every other entry in this index.
- Measured by watchdog.canine.dev using codehealth-analyzer preprod-a15879f6f801.