Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							262996fc5b 
							
						 
					 
					
						
						
							
							bug fix  
						
						
						
					 
					
						2011-08-16 06:14:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							df4abf1af1 
							
						 
					 
					
						
						
							
							lowering constant value from 10 to 7 for da peace in da houz  
						
						
						
					 
					
						2011-08-12 17:19:19 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							702ed73a65 
							
						 
					 
					
						
						
							
							Added --code switch to match in boolean-based tests against the HTTP response code  
						
						
						
					 
					
						2011-08-12 16:48:11 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							fff4c34e33 
							
						 
					 
					
						
						
							
							Search for --string and --regexp matches also in HTTP response headers  
						
						
						
					 
					
						2011-08-12 15:33:37 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							5e5133b8e7 
							
						 
					 
					
						
						
							
							Should be fixed now  
						
						
						
					 
					
						2011-08-12 15:00:11 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							1505cb2a80 
							
						 
					 
					
						
						
							
							typo  
						
						
						
					 
					
						2011-08-12 14:51:39 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							702ca22d54 
							
						 
					 
					
						
						
							
							Minor bug fix for URI injections  
						
						
						
					 
					
						2011-08-12 14:48:44 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							28bba9f5e6 
							
						 
					 
					
						
						
							
							More verbose warning message  
						
						
						
					 
					
						2011-08-12 13:47:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							10bdd90e60 
							
						 
					 
					
						
						
							
							minor speed optimizations (as a result of profiling)  
						
						
						
					 
					
						2011-08-12 13:40:37 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							36280b33fa 
							
						 
					 
					
						
						
							
							Ask the user wheather or not to adjust the time delay - there have been a case where the forcing of conf.timeSec screwed the result in an extremely lagged and unreliable site  
						
						
						
					 
					
						2011-08-12 13:06:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							41ae9bc7ff 
							
						 
					 
					
						
						
							
							minor bug fix  
						
						
						
					 
					
						2011-08-09 14:20:25 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2ad267132a 
							
						 
					 
					
						
						
							
							minor update for empty normal responses (like AJAX requests)  
						
						
						
					 
					
						2011-08-05 10:55:21 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e849b71027 
							
						 
					 
					
						
						
							
							minor typo  
						
						
						
					 
					
						2011-08-03 14:31:42 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							538b49bcc5 
							
						 
					 
					
						
						
							
							removing word "dramatically". i was too excited at the moment :). it is cool and all but we shouldn't put "highly subjective" attribs in reports  
						
						
						
					 
					
						2011-08-03 13:26:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f7562da754 
							
						 
					 
					
						
						
							
							from now on proper union column count should be displayed in injection info output  
						
						
						
					 
					
						2011-08-03 10:34:50 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9423d15fb3 
							
						 
					 
					
						
						
							
							ORDER BY technique used for finding proper UNION col count (dramatical improvement of speed and capabilities) and one minor bug fix  
						
						
						
					 
					
						2011-08-03 09:08:16 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							07afcd5440 
							
						 
					 
					
						
						
							
							fix for a bug reported by Ahmed Shawky (when user uses --suffix intermixing test default comments with the provided suffix is a big no no)  
						
						
						
					 
					
						2011-08-02 18:20:21 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							07c3d4fb18 
							
						 
					 
					
						
						
							
							minor adjustment  
						
						
						
					 
					
						2011-08-02 17:35:43 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							edab7d01a5 
							
						 
					 
					
						
						
							
							minor fix  
						
						
						
					 
					
						2011-08-02 17:31:13 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							c15439ab7f 
							
						 
					 
					
						
						
							
							Minor improvement to --passwords output  
						
						
						
					 
					
						2011-08-02 09:04:34 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							cb0981d858 
							
						 
					 
					
						
						
							
							proper way of handling 0 length results (as in __goInferenceProxy)  
						
						
						
					 
					
						2011-08-02 08:39:32 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0643ced651 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-08-02 08:12:43 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							457f501bbd 
							
						 
					 
					
						
						
							
							proper fix  
						
						
						
					 
					
						2011-08-01 23:48:38 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							cbd0ea0866 
							
						 
					 
					
						
						
							
							Possible fix for a minor bug  
						
						
						
					 
					
						2011-08-01 23:24:39 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							018d7ed646 
							
						 
					 
					
						
						
							
							improvement for limited queries (more stable to have TOP/LIMIT/OFFSET mechanisms as part of a subquery)  
						
						
						
					 
					
						2011-07-31 23:40:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0627bb02cb 
							
						 
					 
					
						
						
							
							minor beautification  
						
						
						
					 
					
						2011-07-31 10:21:47 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							93ae1dfa2b 
							
						 
					 
					
						
						
							
							minor bug fix  
						
						
						
					 
					
						2011-07-31 08:52:48 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							68ae8ea5b2 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2011-07-29 10:54:25 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e522263640 
							
						 
					 
					
						
						
							
							fix for a neverending data retrieval in large full inband cases  
						
						
						
					 
					
						2011-07-29 10:45:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							3fc603843e 
							
						 
					 
					
						
						
							
							minor fix  
						
						
						
					 
					
						2011-07-27 23:26:36 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							107089c00b 
							
						 
					 
					
						
						
							
							bug fix  
						
						
						
					 
					
						2011-07-27 08:25:51 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f7eaffcec5 
							
						 
					 
					
						
						
							
							i believe that this could be ok  
						
						
						
					 
					
						2011-07-26 21:28:48 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							a2483b3bc4 
							
						 
					 
					
						
						
							
							Aligned OS takeover functionalities to recent Metasploit improvements  
						
						
						
					 
					
						2011-07-26 10:29:14 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							938716e361 
							
						 
					 
					
						
						
							
							Proper fix for --start and --stop consistency amongst different techniques  
						
						
						
					 
					
						2011-07-26 10:06:28 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							e71f96afe7 
							
						 
					 
					
						
						
							
							Reverted dumb "fix"  
						
						
						
					 
					
						2011-07-26 09:42:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6bbb8139a0 
							
						 
					 
					
						
						
							
							update (smaller memory footprint in postprocessing phase because of safecharencode part)  
						
						
						
					 
					
						2011-07-25 20:40:31 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							5770c08784 
							
						 
					 
					
						
						
							
							minor optimization and refactoring  
						
						
						
					 
					
						2011-07-25 20:17:44 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							0a7a648694 
							
						 
					 
					
						
						
							
							Minor bug fix for --start, now all techniques return the same result (before blind techniques returned from one entry behind)  
						
						
						
					 
					
						2011-07-25 11:15:18 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							6cbb927012 
							
						 
					 
					
						
						
							
							Partial fix for -o not resumed at following runs if missing from command line  
						
						
						
					 
					
						2011-07-25 11:05:49 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2033a28ae7 
							
						 
					 
					
						
						
							
							minor update regarding last commit (cleaner code)  
						
						
						
					 
					
						2011-07-24 20:44:17 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							3a3561fdaa 
							
						 
					 
					
						
						
							
							doing proper big table support for partial union too  
						
						
						
					 
					
						2011-07-24 20:36:44 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							ec1bc0219c 
							
						 
					 
					
						
						
							
							hello big tables, this is sqlmap, sqlmap this is big tables  
						
						
						
					 
					
						2011-07-24 09:19:33 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							82e1e61554 
							
						 
					 
					
						
						
							
							minor speedup  
						
						
						
					 
					
						2011-07-23 19:51:19 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							094dc91e2d 
							
						 
					 
					
						
						
							
							minor update (prior to some changes regarding large content retrieval)  
						
						
						
					 
					
						2011-07-23 19:04:59 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a89140e1ce 
							
						 
					 
					
						
						
							
							revisit of Oracle error-based payloads (added replace for '@' as a problematic char for XMLType function)  
						
						
						
					 
					
						2011-07-23 06:07:00 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							8a00ca83af 
							
						 
					 
					
						
						
							
							refactoring. nothing special changed  
						
						
						
					 
					
						2011-07-21 10:18:11 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							963f54e6d2 
							
						 
					 
					
						
						
							
							minor fix for parameters containing '=' inside values itself (remark: no parameter name will have '=' nor '%3d' inside; tested and it does a good job)  
						
						
						
					 
					
						2011-07-21 10:06:52 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							7881ded60d 
							
						 
					 
					
						
						
							
							quick fix (this other library was doing problems)  
						
						
						
					 
					
						2011-07-20 22:20:16 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							d6b52242c7 
							
						 
					 
					
						
						
							
							Meterpreter's sniffer extension freezes 64-bit systems  
						
						... 
						
						
						
						Meterpreter's priv extension is loaded by default since Metasploit 3.5 or so.
There is no shellcodeexec 64-bit yet, anyway as the Metasploit payload is encoded with a 32-bit encoded (alphanumeric), it's all fine. 
						
					 
					
						2011-07-20 13:50:02 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9d996c07fb 
							
						 
					 
					
						
						
							
							another quick fix  
						
						
						
					 
					
						2011-07-20 13:00:34 +00:00