Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							8fe069b495
							
						
					 | 
					
						
						
							
							minor fix
						
						
						
						
						
					 | 
					
						2011-08-23 21:48:39 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							cfc1f2b70b
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2011-08-22 22:43:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							f4127a80d7
							
						
					 | 
					
						
						
							
							improvement of UNION based injection detection (with non-NULL kb.uChar values searching of the content inside -1 UNION.. pages is used)
						
						
						
						
						
					 | 
					
						2011-08-22 21:43:46 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							cb32d46f2a
							
						
					 | 
					
						
						
							
							minor minor update
						
						
						
						
						
					 | 
					
						2011-08-18 06:09:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							9d31322f3d
							
						
					 | 
					
						
						
							
							update regarding special case when conf.uChar appears only in testable pages
						
						
						
						
						
					 | 
					
						2011-08-17 21:40:42 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e1dbb4443b
							
						
					 | 
					
						
						
							
							minor update related to the last commit
						
						
						
						
						
					 | 
					
						2011-08-16 07:01:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							7cc5743c5d
							
						
					 | 
					
						
						
							
							minor adjustment of a time based char retrievals (no more infinite increasing of timeSec value for problematic characters)
						
						
						
						
						
					 | 
					
						2011-08-16 06:50:20 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							702ed73a65
							
						
					 | 
					
						
						
							
							Added --code switch to match in boolean-based tests against the HTTP response code
						
						
						
						
						
					 | 
					
						2011-08-12 16:48:11 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							fff4c34e33
							
						
					 | 
					
						
						
							
							Search for --string and --regexp matches also in HTTP response headers
						
						
						
						
						
					 | 
					
						2011-08-12 15:33:37 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e849b71027
							
						
					 | 
					
						
						
							
							minor typo
						
						
						
						
						
					 | 
					
						2011-08-03 14:31:42 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							538b49bcc5
							
						
					 | 
					
						
						
							
							removing word "dramatically". i was too excited at the moment :). it is cool and all but we shouldn't put "highly subjective" attribs in reports
						
						
						
						
						
					 | 
					
						2011-08-03 13:26:38 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							9423d15fb3
							
						
					 | 
					
						
						
							
							ORDER BY technique used for finding proper UNION col count (dramatical improvement of speed and capabilities) and one minor bug fix
						
						
						
						
						
					 | 
					
						2011-08-03 09:08:16 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							edab7d01a5
							
						
					 | 
					
						
						
							
							minor fix
						
						
						
						
						
					 | 
					
						2011-08-02 17:31:13 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							cb0981d858
							
						
					 | 
					
						
						
							
							proper way of handling 0 length results (as in __goInferenceProxy)
						
						
						
						
						
					 | 
					
						2011-08-02 08:39:32 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							018d7ed646
							
						
					 | 
					
						
						
							
							improvement for limited queries (more stable to have TOP/LIMIT/OFFSET mechanisms as part of a subquery)
						
						
						
						
						
					 | 
					
						2011-07-31 23:40:09 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e522263640
							
						
					 | 
					
						
						
							
							fix for a neverending data retrieval in large full inband cases
						
						
						
						
						
					 | 
					
						2011-07-29 10:45:09 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							938716e361
							
						
					 | 
					
						
						
							
							Proper fix for --start and --stop consistency amongst different techniques
						
						
						
						
						
					 | 
					
						2011-07-26 10:06:28 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							6bbb8139a0
							
						
					 | 
					
						
						
							
							update (smaller memory footprint in postprocessing phase because of safecharencode part)
						
						
						
						
						
					 | 
					
						2011-07-25 20:40:31 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							5770c08784
							
						
					 | 
					
						
						
							
							minor optimization and refactoring
						
						
						
						
						
					 | 
					
						2011-07-25 20:17:44 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							2033a28ae7
							
						
					 | 
					
						
						
							
							minor update regarding last commit (cleaner code)
						
						
						
						
						
					 | 
					
						2011-07-24 20:44:17 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							3a3561fdaa
							
						
					 | 
					
						
						
							
							doing proper big table support for partial union too
						
						
						
						
						
					 | 
					
						2011-07-24 20:36:44 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							ec1bc0219c
							
						
					 | 
					
						
						
							
							hello big tables, this is sqlmap, sqlmap this is big tables
						
						
						
						
						
					 | 
					
						2011-07-24 09:19:33 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							a89140e1ce
							
						
					 | 
					
						
						
							
							revisit of Oracle error-based payloads (added replace for '@' as a problematic char for XMLType function)
						
						
						
						
						
					 | 
					
						2011-07-23 06:07:00 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							aedcf8c8d7
							
						
					 | 
					
						
						
							
							Changed homepage address
						
						
						
						
						
					 | 
					
						2011-07-07 20:10:03 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							067354b97f
							
						
					 | 
					
						
						
							
							Revert of last commit and proper fix to detect UNION query SQL injection against Microsoft Access
						
						
						
						
						
					 | 
					
						2011-07-07 13:20:40 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							9e1a6beb7a
							
						
					 | 
					
						
						
							
							Major bug fix in UNION detection, it was a leftover
						
						
						
						
						
					 | 
					
						2011-07-07 00:06:20 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							b8ffcf9495
							
						
					 | 
					
						
						
							
							few fixes here and there and multi-core processing for dictionary based hash attack
						
						
						
						
						
					 | 
					
						2011-07-04 19:58:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							34d9a91af1
							
						
					 | 
					
						
						
							
							bulk of fixes
						
						
						
						
						
					 | 
					
						2011-07-02 22:48:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							9eb683531d
							
						
					 | 
					
						
						
							
							Minor improvement at blind SQL inj technique for DB2
						
						
						
						
						
					 | 
					
						2011-06-27 22:28:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							9e232256f4
							
						
					 | 
					
						
						
							
							reverting that last commit because there is a  mess with default dumping (startLimit is set to 0 which is not so friendly with --start and --stop logic)
						
						
						
						
						
					 | 
					
						2011-06-21 18:29:23 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							3536320fc9
							
						
					 | 
					
						
						
							
							--stop is inclusive ("Last query output entry to retrieve")
						
						
						
						
						
					 | 
					
						2011-06-21 18:08:33 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							83af83da9e
							
						
					 | 
					
						
						
							
							minor beautification (WordsSet is considered as a bad english)
						
						
						
						
						
					 | 
					
						2011-06-18 15:47:19 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							f8c32cf6b9
							
						
					 | 
					
						
						
							
							Moved folder
						
						
						
						
						
					 | 
					
						2011-06-18 12:34:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							28ef61b997
							
						
					 | 
					
						
						
							
							Use getPageTextWordsSet() also in --common-columns
						
						
						
						
						
					 | 
					
						2011-06-18 12:30:26 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							cd07139919
							
						
					 | 
					
						
						
							
							Layout adjustments
						
						
						
						
						
					 | 
					
						2011-06-18 11:58:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							905fef0eae
							
						
					 | 
					
						
						
							
							now user can explicitly state number of UNION affected columns via --union-cols (e.g. --union-cols=5)
						
						
						
						
						
					 | 
					
						2011-06-18 10:51:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							fde3e4cece
							
						
					 | 
					
						
						
							
							better
						
						
						
						
						
					 | 
					
						2011-06-18 09:52:07 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							2f129b01c0
							
						
					 | 
					
						
						
							
							"Please consider to provide" is a bad English
						
						
						
						
						
					 | 
					
						2011-06-18 09:46:22 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							9498a3f259
							
						
					 | 
					
						
						
							
							little stabilization of multi threading
						
						
						
						
						
					 | 
					
						2011-06-17 12:50:28 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							d27afaed7e
							
						
					 | 
					
						
						
							
							some fixes
						
						
						
						
						
					 | 
					
						2011-06-16 14:27:44 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							6aade8e6fc
							
						
					 | 
					
						
						
							
							grammar fix, again
						
						
						
						
						
					 | 
					
						2011-06-08 16:40:22 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							d160888784
							
						
					 | 
					
						
						
							
							Grammar fix
						
						
						
						
						
					 | 
					
						2011-06-08 16:25:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							1c6ee1dc36
							
						
					 | 
					
						
						
							
							Rephrase
						
						
						
						
						
					 | 
					
						2011-06-08 16:22:16 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							0d8d6a4ace
							
						
					 | 
					
						
						
							
							Cosmetics
						
						
						
						
						
					 | 
					
						2011-06-08 16:08:20 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							4a9640160e
							
						
					 | 
					
						
						
							
							more concise
						
						
						
						
						
					 | 
					
						2011-06-08 14:35:23 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							6b81eef65a
							
						
					 | 
					
						
						
							
							refactoring
						
						
						
						
						
					 | 
					
						2011-06-08 14:30:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e7e23d1b79
							
						
					 | 
					
						
						
							
							fix for a Ctrl+C bug reported by nightman@email.de
						
						
						
						
						
					 | 
					
						2011-06-07 17:16:01 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							50dde39e68
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2011-06-07 10:32:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e9bf768f23
							
						
					 | 
					
						
						
							
							more refactoring
						
						
						
						
						
					 | 
					
						2011-06-07 10:08:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							7a3cc38e3c
							
						
					 | 
					
						
						
							
							refactoring and stabilization of multithreading
						
						
						
						
						
					 | 
					
						2011-06-07 09:50:00 +00:00 | 
					
					
						
						
							
							
							
						
					 |