| 
							
							
								 Miroslav Stampar | 457f501bbd | proper fix | 2011-08-01 23:48:38 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | cbd0ea0866 | Possible fix for a minor bug | 2011-08-01 23:24:39 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 018d7ed646 | improvement for limited queries (more stable to have TOP/LIMIT/OFFSET mechanisms as part of a subquery) | 2011-07-31 23:40:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 0627bb02cb | minor beautification | 2011-07-31 10:21:47 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 68ae8ea5b2 | minor refactoring | 2011-07-29 10:54:25 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e522263640 | fix for a neverending data retrieval in large full inband cases | 2011-07-29 10:45:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 107089c00b | bug fix | 2011-07-27 08:25:51 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 938716e361 | Proper fix for --start and --stop consistency amongst different techniques | 2011-07-26 10:06:28 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | e71f96afe7 | Reverted dumb "fix" | 2011-07-26 09:42:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 6bbb8139a0 | update (smaller memory footprint in postprocessing phase because of safecharencode part) | 2011-07-25 20:40:31 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5770c08784 | minor optimization and refactoring | 2011-07-25 20:17:44 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 0a7a648694 | Minor bug fix for --start, now all techniques return the same result (before blind techniques returned from one entry behind) | 2011-07-25 11:15:18 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 6cbb927012 | Partial fix for -o not resumed at following runs if missing from command line | 2011-07-25 11:05:49 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2033a28ae7 | minor update regarding last commit (cleaner code) | 2011-07-24 20:44:17 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3a3561fdaa | doing proper big table support for partial union too | 2011-07-24 20:36:44 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | ec1bc0219c | hello big tables, this is sqlmap, sqlmap this is big tables | 2011-07-24 09:19:33 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 82e1e61554 | minor speedup | 2011-07-23 19:51:19 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 094dc91e2d | minor update (prior to some changes regarding large content retrieval) | 2011-07-23 19:04:59 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a89140e1ce | revisit of Oracle error-based payloads (added replace for '@' as a problematic char for XMLType function) | 2011-07-23 06:07:00 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 8a00ca83af | refactoring. nothing special changed | 2011-07-21 10:18:11 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 963f54e6d2 | minor fix for parameters containing '=' inside values itself (remark: no parameter name will have '=' nor '%3d' inside; tested and it does a good job) | 2011-07-21 10:06:52 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9cf33ec997 | now status is no longer represented in percentage (impossible in cases where we need to support too small and too large dictionaries - technical issues regarding counting) but by the rotating char | 2011-07-15 13:24:13 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | ff8fc90ac7 | bug fix | 2011-07-13 06:44:15 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5c162efbd8 | more optimization | 2011-07-12 23:21:15 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9933edc718 | optimization of reflective removal mechanism | 2011-07-12 22:28:19 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3583d6dd1b | quick fixes, more work to do | 2011-07-12 20:32:19 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | f5e45bf113 | quick fix for a bug reported by jovon.itwaru@gmail.com | 2011-07-11 08:54:39 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 0d6afca7db | adding new switch '--smart' by request | 2011-07-10 15:16:58 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 1e182e6c72 | quick fix | 2011-07-08 22:34:44 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 651349e229 | More verbose critical message | 2011-07-08 13:12:53 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | b5dd4d4a63 | Minor bug fix for Microsoft Access case expressions (like --common-tables) in UNION query SQL injection | 2011-07-08 10:19:01 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 02bfd05b20 | more general approach | 2011-07-08 10:03:14 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5443e06430 | cosmetics (in debug mode [0] is used) | 2011-07-08 09:43:52 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c463c411b9 | minor update | 2011-07-08 09:32:58 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | ba2c06c9dc | quick fix | 2011-07-08 09:01:32 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c517e97a44 | few fixes and minor cosmetics | 2011-07-08 06:02:31 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | aedcf8c8d7 | Changed homepage address | 2011-07-07 20:10:03 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 067354b97f | Revert of last commit and proper fix to detect UNION query SQL injection against Microsoft Access | 2011-07-07 13:20:40 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | fcd4e94c04 | Higher chances to detect UNION query SQL injection against Microsoft Access | 2011-07-06 23:52:44 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 23b4efdcaf | Revamp of tamper scripts, now supporting dependencies() function as well. Improved a lot the docstring and retested all. Added a new one from Ahmad too. | 2011-07-06 21:04:45 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 6f6038b534 | Quick fix (revert..) | 2011-07-06 11:32:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 93b296e02c | few bug fixes (NTLM credential parsing was wrong), some switch reordering (few Misc to General), implemented --check-waf switch (irony is that this will also be called highly experimental/unstable while other things will be called "major/turbo/super bug fix/implementation") | 2011-07-06 05:44:47 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b8ffcf9495 | few fixes here and there and multi-core processing for dictionary based hash attack | 2011-07-04 19:58:41 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 34d9a91af1 | bulk of fixes | 2011-07-02 22:48:56 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 861cdb1b14 | cosmetics | 2011-07-01 10:04:34 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 4513ef409e | massive (like really massive) dictionary support | 2011-06-30 23:44:49 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 43db6b03a7 | update with a feature request (file with list of wordlist files) | 2011-06-30 08:42:43 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | be9b8bca78 | bug fix | 2011-06-29 17:39:58 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 4be55c811f | minor update | 2011-06-27 21:48:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5b4eaf48d9 | minor fix (for those blank suffixes out of nowhere at the end of payload - not related to "-- ") | 2011-06-27 21:34:49 +00:00 |  |