Skip to content
SecArsenal
Educational and ethical use only. Only test systems you own or are explicitly authorized to test. Full disclaimer.

lfi-fuzzploit

A simple tool to help in the fuzzing for, finding, and exploiting of local file inclusion vulnerabilities in Linux-based

webappRed Team
Official docs ↗Download ↗

Platforms: Linux · Last verified September 6, 2026

A simple tool to help in the fuzzing for, finding, and exploiting of local file inclusion vulnerabilities in Linux-based PHP applications.

Only use this tool against systems you own or are explicitly authorized to test — see the disclaimer.

Getting started

Install on BlackArch with `pacman -S lfi-fuzzploit` (or add the BlackArch repository to an existing Arch Linux install). See the official BlackArch tool listing and upstream homepage linked above for details.

Commonly preinstalled on

BlackArch

Arch Linux-based distribution with one of the largest pentest tool repositories