boyhack
340e250fb1
Support for chunked requests ( #3536 )
...
* Add the `--chunk` option to send requests in chunks
* solve the httplib&urllib2 content-legnth
* remove info
* Solve the error caused by the mix of get mode and chunk
* add CHUNKED_KEYWORDS `union`
2019-03-19 13:26:29 +01:00
Miroslav Stampar
c7bb44b0a2
Switching from old odict (non-concise ordering compared to collections) to ordereddict
2019-03-11 14:36:01 +01:00
Miroslav Stampar
729247fd95
Fixes #3525
2019-03-10 14:49:22 +01:00
Miroslav Stampar
9b9902bc6a
Fixes #3522
2019-03-07 14:58:55 +01:00
Miroslav Stampar
09e8c26f8a
Fixes #3519
2019-03-06 17:35:19 +01:00
Miroslav Stampar
663c15a1bf
Minor patch related to the #3518
2019-03-06 12:31:06 +01:00
Miroslav Stampar
8189a10a5c
Fixes #3517
2019-03-06 11:20:57 +01:00
Miroslav Stampar
3f6b53f5f3
Fixes #3515 (and reimplements #1062 )
2019-03-05 12:24:41 +01:00
Miroslav Stampar
8cd257c893
Implementation for #3505
2019-03-04 15:24:12 +01:00
Miroslav Stampar
c89c1e7abf
Fallback for --randomize in case of empty value
2019-02-28 02:29:13 +01:00
Miroslav Stampar
58acc4a0bc
Fixes #3503
2019-02-28 01:05:23 +01:00
Miroslav Stampar
034bac2a11
Fixes #3498
2019-02-26 01:36:56 +01:00
Miroslav Stampar
1248fe5eee
Bug fix (CFM tends to HTML encode non-alphanumeric chars in error reports - paths weren't recognized)
2019-02-21 02:50:11 +01:00
Miroslav Stampar
8fe37f3564
Update for #3486
2019-02-15 17:08:55 +01:00
Miroslav Stampar
5eb9f5729c
Couple of patches related to the #3473
2019-02-07 16:45:16 +01:00
Miroslav Stampar
e8f505b701
First memory leak patched (related to the #3459 )
2019-01-29 17:40:06 +01:00
Miroslav Stampar
e01a7908aa
Trivial renaming update
2019-01-26 12:36:03 +01:00
Miroslav Stampar
ba356baab0
Minor stability patch for multi-threading console output ( #3284 )
2019-01-22 13:45:16 +01:00
Miroslav Stampar
8f13bda035
Some more preparing for 2to3 (keys() is iter in 3)
2019-01-22 03:00:44 +01:00
Miroslav Stampar
7074365f8e
More refactoring like the last couple of commits
2019-01-22 02:08:02 +01:00
Miroslav Stampar
fd705c3dff
Baby steps
2019-01-22 01:28:24 +01:00
Miroslav Stampar
db3bed3f44
Update related to the last commit
2019-01-22 01:20:27 +01:00
Miroslav Stampar
7672b9a0a2
Baby steps (2 to 3 at a time)
2019-01-22 00:40:48 +01:00
Miroslav Stampar
5274c88c7d
Minor patch of --identify-waf mechanism
2019-01-09 16:26:11 +01:00
Miroslav Stampar
590e8ed5ae
update_copyright_year()
2019-01-05 21:38:52 +01:00
Miroslav Stampar
e18b41fc82
Fixes #3421
2018-12-31 01:03:40 +01:00
Miroslav Stampar
586c461ae6
Minor patch
2018-12-31 01:01:19 +01:00
Miroslav Stampar
ddee027afb
Minor message update
2018-12-26 23:23:49 +01:00
Miroslav Stampar
6ce0350abc
Fixes #3420
2018-12-26 22:12:13 +01:00
Miroslav Stampar
37de01e993
Fixes #3417
2018-12-23 10:18:27 +01:00
Miroslav Stampar
9564c8e8b1
Refactoring regarding casting warnings
2018-12-21 11:29:57 +01:00
Miroslav Stampar
d1426a023f
Fixes #3408
2018-12-14 10:09:40 +01:00
Miroslav Stampar
2c95b65eac
Implementation for #2552 (sorry @mg98)
2018-12-10 14:53:11 +01:00
Miroslav Stampar
560ff4154b
Fixes #3388 (and refactors #1578 )
2018-11-29 00:09:05 +01:00
Miroslav Stampar
f1a3c81aec
Bug fix for handling of custom headers
2018-11-28 00:29:17 +01:00
Miroslav Stampar
3f1bf742fc
Fixes #3379
2018-11-22 08:07:27 +01:00
Miroslav Stampar
6cc52cc12a
Fixes #3366
2018-11-12 14:07:41 +01:00
Miroslav Stampar
e6535d359d
Update related to the #3358
2018-11-04 14:17:53 +01:00
Miroslav Stampar
83081b5e14
Minor patch related to the #3316
2018-10-26 14:00:51 +02:00
Miroslav Stampar
48b407c0fa
Updates regarding the #3316
2018-10-26 12:09:21 +02:00
Miroslav Stampar
8abae02111
Improvement of anti-CSRF token extraction
2018-09-18 22:05:52 +02:00
Miroslav Stampar
a5e3dce26f
Proper naming
2018-09-14 10:01:31 +02:00
Miroslav Stampar
a633bc7f32
Trivial cleanup
2018-09-13 11:41:19 +02:00
Miroslav Stampar
c9a73aeed1
Minor patch for #3226
2018-09-10 11:51:00 +02:00
Miroslav Stampar
470b68a83c
Implementation for Issue #3226
2018-09-10 11:47:19 +02:00
Miroslav Stampar
12012b36b1
Automatic disabling of socket-preconnect for known problematic server (SimpleHTTPServer)
2018-09-04 23:01:17 +02:00
Miroslav Stampar
43c9e21c56
Performance improvement and reducing number of false-positives in heavily dynamic pages
2018-09-04 22:39:07 +02:00
Miroslav Stampar
36e62fe8a7
Minor update
2018-08-22 10:20:26 +02:00
Miroslav Stampar
9e00202823
Minor patch (use redirection code for comparison)
2018-08-09 15:39:37 +02:00
Miroslav Stampar
e8336ecfe1
Fix of a pesky often 'statistical model' retrieval
2018-06-29 23:57:20 +02:00
Miroslav Stampar
38ea0686a8
Minor patch (Issue #3149 )
2018-06-29 22:48:43 +02:00
Miroslav Stampar
73b0de67b5
Fixes #3149
2018-06-29 22:37:57 +02:00
Miroslav Stampar
f1254fef4b
Finalizes implementation for #739
2018-06-19 16:39:10 +02:00
Miroslav Stampar
ccda26a567
Minor commit regarding #739
2018-06-19 16:23:17 +02:00
Miroslav Stampar
0265b3fcfa
Second commit regarding #739
2018-06-19 16:11:49 +02:00
Miroslav Stampar
c268663bd9
Minor code style updates
2018-06-09 23:38:00 +02:00
Miroslav Stampar
b93284530e
Patch related to the #3139
2018-06-08 15:13:50 +02:00
Miroslav Stampar
eb498e6c03
Fixes #2819
2018-05-29 14:54:43 +02:00
Miroslav Stampar
42042fb5de
Removing encoding report part (enough time has been passed to collect major problems)
2018-05-24 10:41:20 +02:00
Miroslav Stampar
d8196cf7e6
Fixes #3110
2018-05-21 23:17:32 +02:00
Miroslav Stampar
331ccc5549
Fixes #3100
2018-05-17 23:07:52 +02:00
Miroslav Stampar
4a8f01c9dc
Minor updates
2018-05-08 14:06:34 +02:00
Miroslav Stampar
2a810fb796
Trivial modifications (thou shalt not judge people by trivial commits)
2018-05-03 14:10:55 +02:00
Miroslav Stampar
3fde205cd4
Generic patch for #2886 (cause still unknown)
2018-04-24 19:45:53 +02:00
Miroslav Stampar
1822cc05f6
Patch for #3060
2018-04-22 01:12:56 +02:00
Miroslav Stampar
148d1c9ff9
Fixes #3037
2018-04-11 15:19:44 +02:00
Miroslav Stampar
a8cb14ed4a
Minor patch (disable tamper script usage in WAF/IDS/IPS check phase)
2018-04-11 14:48:54 +02:00
Miroslav Stampar
4f2669a45a
Fixes #3030
2018-04-06 01:13:04 +02:00
Miroslav Stampar
641838ed73
Minor update
2018-04-06 01:06:58 +02:00
Miroslav Stampar
4147f44e63
Potential patch for Issues like #3013 and #3017
2018-04-01 12:45:47 +02:00
Miroslav Stampar
241f7321de
Proper patch related to the #3009
2018-03-26 15:39:48 +02:00
Miroslav Stampar
f287ff3767
Trivial comment update
2018-03-21 14:29:54 +01:00
Miroslav Stampar
e088fe08ec
Update related to the #2995
2018-03-19 00:33:30 +01:00
Miroslav Stampar
6875c40a06
Minor update of permission problems detection
2018-03-16 14:20:43 +01:00
Miroslav Stampar
fa4c1c5251
Some more PEPing (I hope that I haven't broke anything)
2018-03-13 13:45:42 +01:00
Miroslav Stampar
ae2b02952f
Dealing with deprecated raises
2018-03-13 11:13:38 +01:00
Miroslav Stampar
11b52c85e1
Patch of bug introduced with 76905e8728
2018-03-11 02:46:37 +01:00
Miroslav Stampar
881b49afd2
Fixes #2969
2018-03-08 01:21:34 +01:00
Miroslav Stampar
76905e8728
Patch related to the #2953
2018-03-05 10:53:24 +01:00
Miroslav Stampar
34d2fb1c8f
Fixes #2957
2018-03-03 00:01:26 +01:00
Miroslav Stampar
a16663f9a1
Minor refactoring
2018-02-07 16:05:41 +01:00
Miroslav Stampar
a59198d1e4
Minor just in case patch (to prevent junk reports)
2018-01-15 09:48:07 +01:00
Miroslav Stampar
8a122401aa
Update of copyright years
2018-01-02 00:48:10 +01:00
Miroslav Stampar
764d114b3c
Fixes #2858
2018-01-02 00:42:20 +01:00
Miroslav Stampar
6e9fe27fa0
Minor patch related to the #2856
2017-12-30 16:35:45 +01:00
Miroslav Stampar
009f13742e
Dirty patch for safe-encoded unicode characters
2017-12-27 12:23:35 +01:00
Miroslav Stampar
acd764fee8
Fixes #2828
2017-12-13 10:46:46 +01:00
Miroslav Stampar
8cef17b583
Minor just in case patch (error set in case of --string)
2017-12-12 11:18:17 +01:00
Miroslav Stampar
638dbf255a
Fixes #2818
2017-12-06 13:42:15 +01:00
Miroslav Stampar
220dffbcfa
Couple of wording updates
2017-12-04 13:59:35 +01:00
Miroslav Stampar
d7677f322d
Fixes #2793
2017-11-22 13:07:04 +01:00
Miroslav Stampar
ec83837342
Fixes #2786
2017-11-19 02:51:29 +01:00
Miroslav Stampar
323f1285b6
Fixes #2774
2017-11-13 14:07:12 +01:00
Miroslav Stampar
d148694a4b
Minor refactoring
2017-11-09 12:24:58 +01:00
Miroslav Stampar
58b87e4b6b
Some more refactoring
2017-11-08 15:58:23 +01:00
Miroslav Stampar
66d37112d1
If it works, don't touch. I touched
2017-10-31 11:38:09 +01:00
Miroslav Stampar
22907d5085
Some more trivial refactoring
2017-10-31 11:05:25 +01:00
Miroslav Stampar
496075ef20
Trivial refactoring
2017-10-31 10:10:22 +01:00
Miroslav Stampar
4e611133c6
Fixes #2747
2017-10-17 16:34:09 +02:00
Miroslav Stampar
8c6b761044
Replacing doc/COPYING to LICENSE
2017-10-11 14:50:46 +02:00
Miroslav Stampar
94a337b2e3
Implementation for an Issue #1306
2017-10-10 16:08:13 +02:00
Miroslav Stampar
db94d24db1
Initial support for #2709 (more work to be done)
2017-09-21 14:35:24 +02:00
Miroslav Stampar
f67f26cebd
Minor update
2017-09-11 10:00:35 +02:00
Miroslav Stampar
3e4130c5e6
Update for #2665
2017-08-28 11:08:36 +02:00
Miroslav Stampar
400339a884
Fixes #2665
2017-08-23 13:52:51 +02:00
Miroslav Stampar
8b0c50f25d
Update related to the #2663
2017-08-23 13:17:37 +02:00
Miroslav Stampar
b8f88a079a
Fixes #2659
2017-08-20 10:00:04 +02:00
Miroslav Stampar
a761e1d165
Fixes #2656
2017-08-16 03:08:58 +02:00
Miroslav Stampar
68ee1f361b
Fixes #2640
2017-07-31 14:20:59 +02:00
Miroslav Stampar
23081f83db
Fixes #2626
2017-07-28 00:16:06 +02:00
Miroslav Stampar
1745bac0ab
Fixes #2625
2017-07-26 00:54:29 +02:00
Miroslav Stampar
36f3fd72e6
Update for an Issue #2616
2017-07-20 02:41:47 +02:00
Miroslav Stampar
4a4fa07bdd
Minor update
2017-07-05 12:35:48 +02:00
Miroslav Stampar
a4ebd5418f
Patch for an Issue reported privately via email
2017-07-05 12:15:14 +02:00
Miroslav Stampar
614f290217
Update for #2597
2017-07-04 12:14:17 +02:00
Miroslav Stampar
ce48217ada
Minor update
2017-07-01 23:46:28 +02:00
Miroslav Stampar
0961f6a5e9
Fixes #2592
2017-06-23 23:46:25 +02:00
Miroslav Stampar
71457fea0e
Fixes #2585
2017-06-18 13:19:11 +02:00
Miroslav Stampar
e0401104f2
Minor update
2017-06-07 12:55:14 +02:00
Miroslav Stampar
996ad59126
Minor patch
2017-06-05 16:28:19 +02:00
Miroslav Stampar
6d48df2454
Fixes #2562
2017-06-05 10:38:05 +02:00
Miroslav Stampar
6dd9d5b2dd
Fixes #2547
2017-05-26 14:34:32 +02:00
Miroslav Stampar
0864387885
Minor update
2017-05-26 14:25:22 +02:00
Miroslav Stampar
359bfb2704
Minor adjustment
2017-05-26 14:14:35 +02:00
Miroslav Stampar
071132cd56
Fixes #2543
2017-05-21 22:52:44 +02:00
Miroslav Stampar
4ce08dcfa3
Patch for an Issue #2536
2017-05-17 00:22:18 +02:00
Miroslav Stampar
addb2445b7
Minor patch
2017-05-15 00:34:13 +02:00
Miroslav Stampar
d3a08a2d22
Implementation for an Issue #2505
2017-05-07 23:12:42 +02:00
Miroslav Stampar
ee5b5cdcbc
Fixes #2514
2017-05-04 15:50:34 +02:00
Miroslav Stampar
f3f2c81cec
Minor patch (UTF8 used for HTTP params)
2017-05-04 15:45:15 +02:00
Miroslav Stampar
fc8eede952
Minor cleanup and one bug fix
2017-04-19 14:46:27 +02:00
Miroslav Stampar
5f2bb88037
Some code refactoring
2017-04-18 15:48:05 +02:00
Miroslav Stampar
a702dafd03
Fixes #2481
2017-04-14 12:47:24 +02:00
Miroslav Stampar
c1c7ea33fe
Minor update
2017-03-30 12:05:05 +02:00
Miroslav Stampar
aebae6e27b
Added (heuristic) support for #1679
2017-03-30 10:16:35 +02:00
Miroslav Stampar
f82c0497fa
Fixes #2447
2017-03-27 22:36:04 +02:00
Miroslav Stampar
4aae5d9a9d
Fixes #2444
2017-03-19 21:34:47 +01:00
Miroslav Stampar
5dba32b2e1
Fixes #2431
2017-03-12 09:52:37 +01:00
Miroslav Stampar
b18444f215
Issue #2417 (most probably -> most likely)
2017-02-27 22:14:52 +01:00
Miroslav Stampar
7ea524800a
Taking couple of suggestions from #2417
2017-02-27 22:03:15 +01:00
Brie Carranza
1475ba441c
Correct typo in basic.py
2017-02-26 09:05:36 -05:00
Miroslav Stampar
2ed144ec85
Patch for wrong encoding reported privately via email
2017-02-16 15:52:07 +01:00
Miroslav Stampar
a35d1e5373
Minor patch related to the email from ML
2017-02-14 13:14:35 +01:00
Miroslav Stampar
f5cf22a536
Update for an Issue #2377
2017-02-06 13:57:33 +01:00
Miroslav Stampar
38f16decef
Update for an Issue #2384
2017-02-06 13:28:33 +01:00
Miroslav Stampar
15f86e85b1
Minor update for #2379
2017-02-06 12:03:18 +01:00
Miroslav Stampar
5217efc69b
Fixes #2379
2017-02-06 12:01:46 +01:00
Miroslav Stampar
138aa6db65
Patch for an Issue #2351
2017-01-16 15:23:38 +01:00
Miroslav Stampar
121f0376ea
Implementation for #2351
2017-01-16 14:29:23 +01:00
Miroslav Stampar
750d57ec96
Fixed bug reported privately via email
2017-01-13 14:41:41 +01:00
Miroslav Stampar
9a86365d92
Fixes #2333
2017-01-08 01:21:31 +01:00
Miroslav Stampar
55272f7a3b
New version preparation
2017-01-02 14:19:18 +01:00
Miroslav Stampar
17c556a63d
Minor patches (and one bug from ML)
2016-12-20 09:53:44 +01:00
Miroslav Stampar
edc6f47758
Some refactoring
2016-12-19 23:47:39 +01:00
Miroslav Stampar
f6815df5c3
Fixes #2302
2016-12-09 23:10:14 +01:00
Miroslav Stampar
2a754eef1c
Adding switch --ignore-redirects (Issue #2286 )
2016-11-25 13:32:28 +01:00
Miroslav Stampar
6da2e49100
Fixes #2261
2016-11-04 15:04:38 +01:00
Miroslav Stampar
d2bbe80455
Fixes #2243
2016-10-22 22:07:29 +02:00
Miroslav Stampar
0398cbdc76
Minor refactoring
2016-10-22 21:52:18 +02:00
Roberto Salgado
a6cbbc5ea9
Support for timeout param when using Websockets
...
A fix for the timeout parameter being ignored when using Web-sockets.
2016-10-20 12:13:39 -07:00
Miroslav Stampar
5c80e988ba
Fixes #2238
2016-10-20 00:47:53 +02:00
Miroslav Stampar
10ffcb8b00
Fixes #2237
2016-10-20 00:19:16 +02:00
Miroslav Stampar
5b14eecd25
Bug fix (reconnecting in case of timeouted direct connection)
2016-10-17 22:55:07 +02:00
Miroslav Stampar
91ad71b1e0
Minor cosmetics
2016-10-17 12:36:42 +02:00
Miroslav Stampar
748e94dcee
Minor update for #2224
2016-10-13 23:25:46 +02:00
Miroslav Stampar
f389bd71c0
Implementation for an Issue #2224
2016-10-13 23:17:54 +02:00
Miroslav Stampar
79377fedab
Minor update
2016-10-13 23:06:04 +02:00
Miroslav Stampar
6130185ac6
Minor consistency update with the wiki
2016-10-11 00:35:39 +02:00
Miroslav Stampar
dc8301689e
Implementation for an Issue #2204
2016-10-02 11:13:40 +02:00
Miroslav Stampar
7a89433251
Minor patch
2016-09-29 18:02:20 +02:00
Miroslav Stampar
571ae174bd
Minor language update
2016-09-29 14:55:43 +02:00
Miroslav Stampar
212c1ec1f2
Couple of fixes and some testing stuff
2016-09-27 14:03:59 +02:00
Miroslav Stampar
09617c8243
Introducing extra validation property in case of time-based SQLi (HTTP code) - Issue #1973
2016-09-27 10:20:36 +02:00
Miroslav Stampar
035137ef4e
Bug fix in detection engine (abstract URI header sometimes caused problems - e.g. when automatic --string used)
2016-09-23 17:38:14 +02:00
Miroslav Stampar
9930f1b55b
Speed optimization(s)
2016-09-09 11:06:38 +02:00
Miroslav Stampar
78e398d9c4
Fixes #2136
2016-09-06 15:03:17 +02:00
Miroslav Stampar
577e346774
Fixes #2144
2016-09-02 14:20:17 +02:00
Miroslav Stampar
ad5b8017f5
Minor refactoring
2016-08-26 12:28:35 +02:00
Miroslav Stampar
ef79bbf7d2
Minor patch
2016-08-02 12:38:57 +02:00
Miroslav Stampar
10eafa35fd
Adding CloudFlare CAPTCHA warning
2016-07-23 23:02:15 +02:00
Miroslav Stampar
e21d751834
Fixes #2049
2016-07-20 20:04:44 +02:00
Miroslav Stampar
cb43c03712
Definite patch for MemoryError(s) ( fixes #1991 )
2016-06-30 14:57:56 +02:00
Miroslav Stampar
6bdef1b7da
Minor update
2016-06-26 01:46:49 +02:00
Miroslav Stampar
9d9592a69b
Fixes #1963
2016-06-17 16:51:23 +02:00
Miroslav Stampar
cb42294a7e
Minor message update
2016-06-15 07:57:10 +02:00
Miroslav Stampar
146762c109
Minor update
2016-06-15 07:54:47 +02:00
Miroslav Stampar
494b9d1586
Fixes #1943
2016-06-13 15:30:38 +02:00
Miroslav Stampar
c6eec8db97
Fixes #1938
2016-06-10 17:52:22 +02:00
Miroslav Stampar
350baf0a0a
Minor update
2016-06-03 14:29:32 +02:00
Miroslav Stampar
8114c14755
Removing leftover
2016-06-01 16:32:22 +02:00
Miroslav Stampar
ec8cf6aadc
Adding support for detecting CAPTCHA
2016-06-01 15:48:04 +02:00
Miroslav Stampar
77f0b5dfa8
Fixes #1919
2016-06-01 10:56:42 +02:00
Miroslav Stampar
b0ea74dc63
Minor warning message update
2016-06-01 10:53:32 +02:00
Miroslav Stampar
9fad72f28b
Adding support for MsAccess usage of parsed FROM table names (e.g. in case of ColdFusion)
2016-05-31 11:08:23 +02:00
Miroslav Stampar
1782bf8e64
Adding support for parsing ODBC/JDBC error messages
2016-05-31 10:49:34 +02:00
Miroslav Stampar
2fa4b22645
Patch for URL encoding cookie values (asking the user to choose)
2016-05-30 17:47:08 +02:00
Miroslav Stampar
935cb9c8cb
Patch for a custom header cookie urlencoding
2016-05-30 14:09:53 +02:00
Miroslav Stampar
b6a4bd91fe
Minor text update
2016-05-30 10:51:35 +02:00
Miroslav Stampar
6327063bd0
Minor patch
2016-05-27 16:43:01 +02:00
Miroslav Stampar
154ed2c4e2
Minor patch
2016-05-27 13:33:14 +02:00