Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							ad00fe13c1
							
						
					 | 
					
						
						
							
							another fix for MySQL time based payloads
						
						
						
						
						
					 | 
					
						2010-12-08 12:00:27 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							8227e6d3cf
							
						
					 | 
					
						
						
							
							bug fix for BENCHMARK time-based vectors
						
						
						
						
						
					 | 
					
						2010-12-08 11:49:55 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							47bb31fb47
							
						
					 | 
					
						
						
							
							code refactoring
						
						
						
						
						
					 | 
					
						2010-12-08 11:30:25 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							1ae2fa7f1a
							
						
					 | 
					
						
						
							
							update regarding time based payloads
						
						
						
						
						
					 | 
					
						2010-12-08 11:26:54 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							bdff4aba6a
							
						
					 | 
					
						
						
							
							switching to quick_ratio
						
						
						
						
						
					 | 
					
						2010-12-07 23:57:43 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							c1b82cf09c
							
						
					 | 
					
						
						
							
							ratio() gives a considerable lag on real life cases, as real_quick_ratio() gives almost as good results
						
						
						
						
						
					 | 
					
						2010-12-07 23:53:44 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							a4a63f5b1e
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2010-12-07 23:49:00 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							293ce18fed
							
						
					 | 
					
						
						
							
							two major bug fixes regarding time calculation (previously comparison was also a part of "delta", which screwed results in cases with large pages; other was a standard distribution based one)
						
						
						
						
						
					 | 
					
						2010-12-07 23:32:33 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							b21eb88905
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2010-12-07 22:45:38 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							575e50673b
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2010-12-07 19:27:01 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							398b82644a
							
						
					 | 
					
						
						
							
							little explanation
						
						
						
						
						
					 | 
					
						2010-12-07 19:25:26 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							dc651d59ec
							
						
					 | 
					
						
						
							
							little mathematics here and there (used "Rules for normally distributed data")
						
						
						
						
						
					 | 
					
						2010-12-07 19:19:12 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							ee72838231
							
						
					 | 
					
						
						
							
							Removed debug print
						
						
						
						
						
					 | 
					
						2010-12-07 17:19:29 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							5f97312f29
							
						
					 | 
					
						
						
							
							Minor fix
						
						
						
						
						
					 | 
					
						2010-12-07 17:17:38 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							8ff7c9a5a1
							
						
					 | 
					
						
						
							
							Works on Oracle's GROUP BY too
						
						
						
						
						
					 | 
					
						2010-12-07 17:17:01 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							81e7465ed2
							
						
					 | 
					
						
						
							
							Cosmetics
						
						
						
						
						
					 | 
					
						2010-12-07 17:16:21 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							ecd4a5a532
							
						
					 | 
					
						
						
							
							added standard deviation check in time based tests
						
						
						
						
						
					 | 
					
						2010-12-07 16:39:31 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							294119d2ec
							
						
					 | 
					
						
						
							
							more advanced time technique(s)
						
						
						
						
						
					 | 
					
						2010-12-07 16:04:53 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							4959da3ce6
							
						
					 | 
					
						
						
							
							it's a must to double check time based payloads
						
						
						
						
						
					 | 
					
						2010-12-07 14:59:11 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							e53fef546e
							
						
					 | 
					
						
						
							
							update regarding session page templates
						
						
						
						
						
					 | 
					
						2010-12-07 14:35:31 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							add6235b16
							
						
					 | 
					
						
						
							
							removed pageTemplate from injection(s), it's not longer stored in session, and it's reloaded when resuming from session
						
						
						
						
						
					 | 
					
						2010-12-07 14:06:54 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							0dc630203f
							
						
					 | 
					
						
						
							
							code refactoring
						
						
						
						
						
					 | 
					
						2010-12-07 13:34:06 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							4f01d4c109
							
						
					 | 
					
						
						
							
							number crunching based time payloads are now affected by conf.timeSec
						
						
						
						
						
					 | 
					
						2010-12-07 13:24:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							d0936bc8ed
							
						
					 | 
					
						
						
							
							adding vectors for SQLite time-based payloads
						
						
						
						
						
					 | 
					
						2010-12-07 13:14:56 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							54b8cb76a1
							
						
					 | 
					
						
						
							
							Messed up with my last merge, all fixed now
						
						
						
						
						
					 | 
					
						2010-12-07 12:59:53 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							b38a634d95
							
						
					 | 
					
						
						
							
							bug fix
						
						
						
						
						
					 | 
					
						2010-12-07 12:55:31 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							7c32db6e9d
							
						
					 | 
					
						
						
							
							Forgot when merged with my last commit
						
						
						
						
						
					 | 
					
						2010-12-07 12:52:09 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							acac0d346f
							
						
					 | 
					
						
						
							
							Minor bug fixes and adjustments
						
						
						
						
						
					 | 
					
						2010-12-07 12:45:45 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							8e78057ac8
							
						
					 | 
					
						
						
							
							Added counter of total HTTP(s) requests done during detection phase
						
						
						
						
						
					 | 
					
						2010-12-07 12:33:47 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							effd2ca0e3
							
						
					 | 
					
						
						
							
							Cosmetics
						
						
						
						
						
					 | 
					
						2010-12-07 12:32:58 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							2b2b7dc3a6
							
						
					 | 
					
						
						
							
							added vectors for time-based Firebird payloads
						
						
						
						
						
					 | 
					
						2010-12-07 12:20:48 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							36a7fca8d5
							
						
					 | 
					
						
						
							
							added time-based payload vector for MSSQL
						
						
						
						
						
					 | 
					
						2010-12-07 12:06:25 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							485981c619
							
						
					 | 
					
						
						
							
							added vectors for PostgresSQL time-based payloads
						
						
						
						
						
					 | 
					
						2010-12-07 11:57:33 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							f9085e01e7
							
						
					 | 
					
						
						
							
							added vectors for Oracle time-based payloads
						
						
						
						
						
					 | 
					
						2010-12-07 11:47:29 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							2af8835a94
							
						
					 | 
					
						
						
							
							fix for a bug reported by ToR (origValue = paramDict[kb.injection.parameter] -> KeyError in resume with missing injection parameter)
						
						
						
						
						
					 | 
					
						2010-12-07 10:57:32 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							3d87489de5
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2010-12-07 08:05:03 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							90b776c1a2
							
						
					 | 
					
						
						
							
							update
						
						
						
						
						
					 | 
					
						2010-12-07 00:58:54 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							0da1ebde7d
							
						
					 | 
					
						
						
							
							introducing PostgreSQL time based blind
						
						
						
						
						
					 | 
					
						2010-12-07 00:51:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							1ba98dc9ec
							
						
					 | 
					
						
						
							
							found a fix for a OR time-based MySQL payload :)
						
						
						
						
						
					 | 
					
						2010-12-07 00:31:46 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							61f82fd274
							
						
					 | 
					
						
						
							
							introducing [DELAYED] for heavy query time based payloads when response time is non-deterministic
						
						
						
						
						
					 | 
					
						2010-12-07 00:27:26 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Bernardo Damele
							
						 
					 | 
					
						
						
						
						
							
						
						
							32f1909131
							
						
					 | 
					
						
						
							
							Some more "advanced" boundaries
						
						
						
						
						
					 | 
					
						2010-12-06 23:15:41 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							84a038d0a3
							
						
					 | 
					
						
						
							
							added one more subtag
						
						
						
						
						
					 | 
					
						2010-12-06 23:10:38 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							1031723c89
							
						
					 | 
					
						
						
							
							added one more time based blind for Oracle
						
						
						
						
						
					 | 
					
						2010-12-06 23:05:53 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							7697d19292
							
						
					 | 
					
						
						
							
							space replace is not needed in other two Oracle error based payloads; removing incorrect dbms_version for ctxsys.drithsx.sn as it also works on 10g
						
						
						
						
						
					 | 
					
						2010-12-06 22:52:18 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							2735848ab6
							
						
					 | 
					
						
						
							
							removed ERROR_SPACE
						
						
						
						
						
					 | 
					
						2010-12-06 22:40:07 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							f516c18a2a
							
						
					 | 
					
						
						
							
							minor update
						
						
						
						
						
					 | 
					
						2010-12-06 21:39:57 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							0c5c2aa807
							
						
					 | 
					
						
						
							
							adding one more error based payload for Oracle
						
						
						
						
						
					 | 
					
						2010-12-06 21:20:26 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							956a155377
							
						
					 | 
					
						
						
							
							adding one more error based payload for Oracle
						
						
						
						
						
					 | 
					
						2010-12-06 20:43:23 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							ff43a4a955
							
						
					 | 
					
						
						
							
							minor update to preserve consistency of payload naming
						
						
						
						
						
					 | 
					
						2010-12-06 20:28:26 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Miroslav Stampar
							
						 
					 | 
					
						
						
						
						
							
						
						
							c0e05d6869
							
						
					 | 
					
						
						
							
							update
						
						
						
						
						
					 | 
					
						2010-12-06 19:11:05 +00:00 | 
					
					
						
						
							
							
							
						
					 |