About LFIMap

LFIMap is a professional, open-source framework designed for the detection, exploitation, and post-exploitation of Local File Inclusion (LFI) vulnerabilities. It is built by RelunSec to serve penetration testers, bug bounty hunters, and cybersecurity researchers.

</div>

Mission

To provide a modular, extensible, and automation-ready LFI exploitation toolkit, bridging the gap between research and real-world offensive testing.

Why LFIMap?

  • 🔍 Covers over 18 LFI techniques, including advanced edge cases
  • 🛡️ Comes with 30+ powerful bypass plugins
  • 🔗 Supports log/session poisoning, wrapper techniques, and remote inclusion
  • 🧠 Designed to be intelligent and stealth-aware
  • 🧩 Plugin architecture for custom exploitation modules

Community and Ethics

LFIMap is developed under the principles of ethical hacking and responsible disclosure. It must be used only for authorized testing, educational purposes, or with proper permission from the target.

Any use of LFIMap for unauthorized exploitation is strictly prohibited and goes against the project’s mission and ethical foundation.

Author

Thank you for using LFIMap. Together, we can make the web more secure.