| 
							
							
								 Miroslav Stampar | f83f1a1e06 | minor just in case update | 2011-02-04 13:08:54 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c69b76776e | minor refactoring | 2011-02-04 13:04:19 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | accf4e6ce0 | one important fix (URI injection parameter '*' now can go anywhere) | 2011-02-04 12:43:18 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c19d481bb1 | little clean up | 2011-02-04 12:25:14 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 27601babb4 | Minor adjustments to levels of boundaries | 2011-02-04 11:57:47 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c229efba05 | revert | 2011-02-04 11:33:21 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | d211def899 | minor adjustment (accepting strange new looking uri formats) | 2011-02-04 10:55:03 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 1af418d444 | huge bug fix | 2011-02-04 10:18:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 76ab14f20f | revert of r3203 | 2011-02-04 09:30:20 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e4933f0c92 | refactoring | 2011-02-03 23:25:56 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9a1a28c804 | adding comments to filtering function | 2011-02-03 23:09:08 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 1aecbe6b08 | minor refactoring (now at the most basic level at least junky <script> and <style> tags are removed for the sake of better blind based detection) | 2011-02-03 22:59:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 78d696fd4f | i believe that this one should be the first level 1 boundary | 2011-02-03 21:27:03 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e5f54644f0 | minor "statistical" update | 2011-02-03 16:59:49 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3bd6e538f8 | more appropriate | 2011-02-03 16:48:27 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 64f18724ad | new default UNION test(s) ranges | 2011-02-03 16:26:35 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3a13fd87fd | new UNION column detection is going into wild | 2011-02-03 16:16:38 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b56a77e573 | removing obsolete switches (--threshold, --excl-reg, --excl-str) | 2011-02-03 15:55:19 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 253a8d0679 | Minor bug fix | 2011-02-03 15:24:36 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a8fea8e4a8 | fix for a bug noticed when using --keep-alive --threads on IIS/MSSQL | 2011-02-03 15:09:53 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | b3859824d9 | Updated MySQL/Linux 64-bit shared object | 2011-02-03 15:03:00 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | f8556063c7 | Updated MySQL/Linux 32-bit shared object | 2011-02-03 15:02:30 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 06bb369da5 | GCC 4.3 makes Linux/MySQL shared objects smaller | 2011-02-03 14:59:31 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 12090a86bc | Done with PostgreSQL/Linux 64bit shared objects too | 2011-02-03 14:53:07 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 0edb4ee314 | minor fix | 2011-02-03 13:28:10 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 4bb7ffcb3a | minor update | 2011-02-03 13:18:43 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 8cf88dd0da | Ready with PgSQL/Linux/32bit shared object too now | 2011-02-03 12:28:00 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 1b9850b73a | revert of last commit (conf dictionary has a method "update" which caused if conf.update to True always :) ) | 2011-02-03 12:21:29 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5edba2ffbc | minor change (conf.updateAll to conf.update) | 2011-02-03 11:13:39 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 402c1b622e | removing urlencode from UA | 2011-02-02 15:18:06 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5f49e20cc8 | adding --random-agent and removing -a | 2011-02-02 14:51:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2dae57a56d | cosmetics | 2011-02-02 14:35:21 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 6c87bd1c63 | added maskSensitiveData function | 2011-02-02 14:25:16 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 5f0114a2a8 | Minor bug fix | 2011-02-02 14:06:40 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 8134c2154a | adding WHERE enum for payloads | 2011-02-02 13:34:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | d6c9515f78 | minor update | 2011-02-02 13:03:24 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 847b648e4a | minor update | 2011-02-02 12:42:55 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e73a147fb5 | minor update | 2011-02-02 11:49:59 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e33428b833 | adding __findUnionCharCount function | 2011-02-02 11:22:35 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 99aa38b58f | minor refactoring | 2011-02-02 10:10:28 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 23c95107ed | we must do this because people tend to use ignorantly huge number threads resulting in lots of CRITICAL (timeout) connection messages (also, avoiding DoS) | 2011-02-02 09:24:37 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | af99105c27 | lol. sybase and maxdb were just ignored while fingerprinted because they weren't in dbmsDict screwing half of dbms related functions (most notably aliasToDbmsEnum) | 2011-02-01 22:45:38 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | a37f5e05b9 | Refactoring | 2011-02-01 22:27:36 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 9b342a4c95 | Bug fixes and proper packing/unpacking of custom statements and predefined queries for both error-based and UNION query techniques. Now it deals in UNION query also with --start and --stop and resume has been enhanced for both techniques too. | 2011-02-01 22:07:42 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 2619e4895f | Properly handle --technique at save/resume phase | 2011-02-01 22:05:48 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 3d966bd569 | You never know.. | 2011-02-01 22:05:12 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | d875d848ce | Better sort | 2011-02-01 22:04:48 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 705d45f4db | minor cosmetics | 2011-02-01 11:10:23 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 196e2d35b2 | maybe we could ask user "are you willing to import local data content into error report" and use this function respectably | 2011-02-01 11:06:56 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 6761933f75 | Just.. cosmetics ;) | 2011-01-31 22:51:14 +00:00 |  |