Skip to content
← LibraryTechnique entry
W-RFIInitial Access

Remote File Inclusion (RFI)

Include a remote URL into a server-side include — server fetches and executes attacker-controlled code.

§ Where this technique fits

W-RFI is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.