Miroslav Stampar
|
bcf3255fe1
|
implementation of switch --hex for 4 major DBMSes
|
2012-02-21 11:44:48 +00:00 |
|
Miroslav Stampar
|
3e4db6d140
|
minor fix for Python v2.6
|
2012-02-20 19:35:57 +00:00 |
|
Miroslav Stampar
|
aee269cc14
|
gazillion changes, nothing will work, muhahaha
|
2012-02-17 14:22:48 +00:00 |
|
Miroslav Stampar
|
dcf7277a0f
|
some more refactorings
|
2012-02-16 14:42:28 +00:00 |
|
Miroslav Stampar
|
6632aa7308
|
some more refactoring
|
2012-02-16 13:46:01 +00:00 |
|
Miroslav Stampar
|
844fc8addb
|
minor cleanup
|
2012-02-16 10:19:36 +00:00 |
|
Miroslav Stampar
|
0e23521adc
|
some more refactoring
|
2012-02-16 09:54:29 +00:00 |
|
Miroslav Stampar
|
e1f86c97c4
|
minor refactoring
|
2012-02-16 09:46:41 +00:00 |
|
Miroslav Stampar
|
bcf9fc6c6f
|
minor refactoring
|
2012-02-16 09:32:47 +00:00 |
|
Miroslav Stampar
|
8d7912ad34
|
minor update and refactoring
|
2012-02-15 14:05:50 +00:00 |
|
Miroslav Stampar
|
bf923a97df
|
minor update
|
2012-02-15 13:45:10 +00:00 |
|
Miroslav Stampar
|
122db6e164
|
minor update
|
2012-02-15 13:24:02 +00:00 |
|
Miroslav Stampar
|
9059d30312
|
adding first code example for SPL snippets
|
2012-02-15 13:17:01 +00:00 |
|
Miroslav Stampar
|
23cc8b6974
|
minor fix for special cases when parameter value contains html encoded characters
|
2012-02-14 14:08:10 +00:00 |
|
Miroslav Stampar
|
bb5113980b
|
minor update
|
2012-02-14 10:27:56 +00:00 |
|
Miroslav Stampar
|
3f15c52188
|
minor change in workflow for "tainted" parameter values
|
2012-02-14 09:26:52 +00:00 |
|
Miroslav Stampar
|
b140ef4a14
|
minor update (preparing for switching to HashDB from old sessionFile)
|
2012-02-10 10:24:48 +00:00 |
|
Miroslav Stampar
|
980367b7b2
|
minor update
|
2012-02-09 09:48:47 +00:00 |
|
Miroslav Stampar
|
7e9e582eca
|
minor update
|
2012-02-08 14:23:57 +00:00 |
|
Miroslav Stampar
|
93d7d6c355
|
minor patch
|
2012-02-08 10:38:58 +00:00 |
|
Miroslav Stampar
|
6bedb80ffa
|
adding --force-ssl switch (most useful in combination with -r)
|
2012-02-08 09:11:57 +00:00 |
|
Miroslav Stampar
|
2b05ded9c3
|
just a makeup
|
2012-02-07 12:05:23 +00:00 |
|
Miroslav Stampar
|
b4f4a982e4
|
minor update
|
2012-02-07 11:37:54 +00:00 |
|
Miroslav Stampar
|
11af0b1bbc
|
minor fix
|
2012-02-07 11:16:03 +00:00 |
|
Miroslav Stampar
|
f7bf1fbe94
|
upgrade/fixes for direct DBMS access
|
2012-02-07 10:46:55 +00:00 |
|
Miroslav Stampar
|
8c45ff0d57
|
bug fix
|
2012-02-03 10:38:04 +00:00 |
|
Miroslav Stampar
|
f4e7bf1d51
|
minor update regarding support for Unicode characters in Oracle
|
2012-02-01 14:17:27 +00:00 |
|
Miroslav Stampar
|
2589521ecf
|
fix of a wrong assumption (e.g. decodeIntToUnicode(12345) has been returning a "09" instead of a single unicode character)
|
2012-02-01 10:38:43 +00:00 |
|
Miroslav Stampar
|
b2dad63000
|
some more refactoring
|
2012-01-13 22:00:34 +00:00 |
|
Miroslav Stampar
|
23117e72ca
|
minor improvement
|
2012-01-13 20:56:06 +00:00 |
|
Bernardo Damele
|
0043336620
|
Minor fix and removed leftover debug message
|
2012-01-13 17:04:59 +00:00 |
|
Bernardo Damele
|
b03f91437b
|
Minor code refactoring
|
2012-01-13 16:49:52 +00:00 |
|
Miroslav Stampar
|
04686b83e3
|
minor update
|
2012-01-13 11:16:26 +00:00 |
|
Miroslav Stampar
|
305371b7a9
|
minor update
|
2012-01-12 14:58:23 +00:00 |
|
Miroslav Stampar
|
95f89ab63a
|
updating copyright date
|
2012-01-11 14:59:46 +00:00 |
|
Miroslav Stampar
|
ff52931140
|
some refactoring (skipping duplicate messages in case that UNION/ERROR techniques failed and BOOLEAN/TIMED/STACKED are not available)
|
2012-01-07 19:30:35 +00:00 |
|
Miroslav Stampar
|
2b5e429dc2
|
one more level of defense against user himself
|
2012-01-07 17:16:14 +00:00 |
|
Miroslav Stampar
|
a675c88894
|
minor check added for invalid urls (e.g. deliberately too long)
|
2012-01-07 16:06:18 +00:00 |
|
Miroslav Stampar
|
13f2afbbc9
|
minor fix
|
2012-01-03 17:28:50 +00:00 |
|
Miroslav Stampar
|
29f502fe29
|
some refactoring
|
2011-12-28 16:27:17 +00:00 |
|
Miroslav Stampar
|
0a6334db22
|
minor speedup
|
2011-12-27 11:41:57 +00:00 |
|
Miroslav Stampar
|
366e86c560
|
minor "patch"
|
2011-12-26 14:08:25 +00:00 |
|
Miroslav Stampar
|
c20546dcaa
|
minor refactoring
|
2011-12-26 12:24:39 +00:00 |
|
Miroslav Stampar
|
087e29d272
|
minor update
|
2011-12-22 20:14:56 +00:00 |
|
Miroslav Stampar
|
8a7b0406c8
|
minor optimization
|
2011-12-22 20:08:28 +00:00 |
|
Miroslav Stampar
|
094129a656
|
minor optimization
|
2011-12-22 15:42:21 +00:00 |
|
Miroslav Stampar
|
f622995a29
|
compatibility with partial union and error technique resumed data
|
2011-12-22 12:20:21 +00:00 |
|
Miroslav Stampar
|
58a4a02b7e
|
minor fix
|
2011-12-22 11:56:42 +00:00 |
|
Miroslav Stampar
|
6f8d8a15aa
|
minor update
|
2011-12-22 11:55:02 +00:00 |
|
Miroslav Stampar
|
9f68e54fff
|
minor cleanup
|
2011-12-22 10:59:28 +00:00 |
|
Miroslav Stampar
|
aaa29d1f24
|
minor fix
|
2011-12-22 10:51:41 +00:00 |
|
Miroslav Stampar
|
4a1a0773b7
|
speedup of UNION dumping
|
2011-12-22 10:44:14 +00:00 |
|
Miroslav Stampar
|
1ae413a206
|
some refactoring/speedup around UNION technique
|
2011-12-22 10:32:21 +00:00 |
|
Miroslav Stampar
|
b77e2042f2
|
some optimization
|
2011-12-21 23:23:00 +00:00 |
|
Miroslav Stampar
|
526aacb640
|
code cleanup
|
2011-12-21 22:59:23 +00:00 |
|
Miroslav Stampar
|
41ccf88990
|
some more refactoring
|
2011-12-21 22:09:21 +00:00 |
|
Miroslav Stampar
|
0a039d84e0
|
some more refactoring
|
2011-12-21 19:40:42 +00:00 |
|
Miroslav Stampar
|
81bd9a201b
|
minor refactoring
|
2011-12-21 11:50:49 +00:00 |
|
Miroslav Stampar
|
113ebf5e9d
|
minor update
|
2011-12-20 16:08:17 +00:00 |
|
Miroslav Stampar
|
8bfff4a28e
|
minor update
|
2011-12-20 15:01:27 +00:00 |
|
Miroslav Stampar
|
95cd9e2af3
|
adding support for scanning Host header values (-p host)
|
2011-12-20 12:52:41 +00:00 |
|
Miroslav Stampar
|
dcf842692b
|
minor fix
|
2011-12-16 12:34:26 +00:00 |
|
Miroslav Stampar
|
8793fbc9f5
|
minor update
|
2011-12-14 12:59:25 +00:00 |
|
Miroslav Stampar
|
1fd1ec22a1
|
minor fix
|
2011-12-14 12:03:21 +00:00 |
|
Miroslav Stampar
|
73a500833d
|
minor bug fix
|
2011-12-12 14:38:06 +00:00 |
|
Miroslav Stampar
|
25cde9e2c7
|
minor fixes
|
2011-12-12 09:45:40 +00:00 |
|
Miroslav Stampar
|
f1dfa5c860
|
minor update
|
2011-11-30 17:44:34 +00:00 |
|
Miroslav Stampar
|
71c46f50aa
|
adding option --csv-del
|
2011-11-30 17:39:41 +00:00 |
|
Miroslav Stampar
|
02bd9a54f3
|
minor update
|
2011-11-30 17:19:21 +00:00 |
|
Miroslav Stampar
|
e94efff187
|
some more optimization
|
2011-11-22 09:00:00 +00:00 |
|
Miroslav Stampar
|
2ed3efba12
|
speed optimization and bug fix (kb.absFilePaths were not stored previously; also, they are now extracted only in heuristic phase)
|
2011-11-22 08:39:13 +00:00 |
|
Miroslav Stampar
|
493e436e16
|
minor update
|
2011-11-22 07:32:39 +00:00 |
|
Miroslav Stampar
|
e905ea2a54
|
minor bug fix
|
2011-11-22 07:07:52 +00:00 |
|
Miroslav Stampar
|
eee03871d7
|
minor refactoring
|
2011-11-21 21:31:08 +00:00 |
|
Miroslav Stampar
|
65b2b0ad87
|
adding switch --eval
|
2011-11-21 16:41:02 +00:00 |
|
Miroslav Stampar
|
7c1af97852
|
minor optimization
|
2011-11-20 19:38:56 +00:00 |
|
Miroslav Stampar
|
367627c331
|
minor fix for Python 2.6
|
2011-11-13 19:09:13 +00:00 |
|
Miroslav Stampar
|
76fb6ba666
|
minor update
|
2011-11-13 10:38:27 +00:00 |
|
Miroslav Stampar
|
ccbd93cc2e
|
fix for redirect/HOST header bug
|
2011-11-11 11:28:27 +00:00 |
|
Miroslav Stampar
|
24bda96d9e
|
adding items from John the Ripper's word list to the dictionary for Oracle cracking
|
2011-11-02 11:21:49 +00:00 |
|
Miroslav Stampar
|
6ec522e14b
|
removal of minor obsolete thingy
|
2011-11-02 10:41:12 +00:00 |
|
Miroslav Stampar
|
60cadf4747
|
better regex used
|
2011-10-29 10:31:52 +00:00 |
|
Miroslav Stampar
|
ef987c6954
|
adding compatibility support for using --crawl and --forms together
|
2011-10-29 09:32:20 +00:00 |
|
Miroslav Stampar
|
ddc4dfe5ff
|
minor refactoring for regarding --forms
|
2011-10-29 08:32:24 +00:00 |
|
Miroslav Stampar
|
666a7da12a
|
minor update
|
2011-10-28 11:28:21 +00:00 |
|
Miroslav Stampar
|
b83fe6113e
|
turning off time adjustment off (now is shown as a tip) because it seems that it never was actually used (payload always left the same)
|
2011-10-28 11:25:07 +00:00 |
|
Miroslav Stampar
|
3c31ccd16e
|
minor update
|
2011-10-26 22:37:04 +00:00 |
|
Miroslav Stampar
|
b07f165d60
|
quick fix
|
2011-10-24 18:11:34 +00:00 |
|
Miroslav Stampar
|
d39d36f7a7
|
minor language beautification
|
2011-10-23 23:27:56 +00:00 |
|
Miroslav Stampar
|
1dd3fae930
|
minor fix
|
2011-10-23 22:27:45 +00:00 |
|
Miroslav Stampar
|
5863429fc1
|
minor update
|
2011-10-23 21:17:45 +00:00 |
|
Miroslav Stampar
|
4a469c3258
|
minor update
|
2011-10-23 21:12:34 +00:00 |
|
Miroslav Stampar
|
3f0517d3f3
|
support for non-latin (e.g. cyrillic) URLs
|
2011-10-23 17:02:48 +00:00 |
|
Miroslav Stampar
|
25f0ec3597
|
some minor range to xrange conversion (where safe to do)
|
2011-10-21 22:34:27 +00:00 |
|
Miroslav Stampar
|
b4ce857f9b
|
added some comments
|
2011-10-21 21:29:24 +00:00 |
|
Miroslav Stampar
|
7a3096ce25
|
some refactoring
|
2011-10-21 21:12:48 +00:00 |
|
Miroslav Stampar
|
566d6e4974
|
minor fix
|
2011-10-21 20:21:29 +00:00 |
|
Miroslav Stampar
|
12a7fd4054
|
quick fix
|
2011-10-20 08:28:57 +00:00 |
|
Miroslav Stampar
|
8720aad6dc
|
transformed cDel to pDel as a more generic option
|
2011-10-06 22:03:33 +00:00 |
|
Miroslav Stampar
|
7e80274fac
|
refactoring
|
2011-09-25 21:10:45 +00:00 |
|
Miroslav Stampar
|
4fb6dab1a2
|
minor bug fix
|
2011-09-12 14:15:57 +00:00 |
|
Miroslav Stampar
|
1bdde51d0e
|
minor just in case update
|
2011-09-11 16:41:07 +00:00 |
|
Miroslav Stampar
|
d434047482
|
minor bug fix
|
2011-09-05 09:28:40 +00:00 |
|
Miroslav Stampar
|
08e0eb9b61
|
minor lower/upper case fix
|
2011-08-29 13:47:32 +00:00 |
|
Miroslav Stampar
|
ac00014c4a
|
implemented --randomize switch by request
|
2011-08-29 12:50:52 +00:00 |
|
Bernardo Damele
|
36280b33fa
|
Ask the user wheather or not to adjust the time delay - there have been a case where the forcing of conf.timeSec screwed the result in an extremely lagged and unreliable site
|
2011-08-12 13:06:40 +00:00 |
|
Miroslav Stampar
|
41ae9bc7ff
|
minor bug fix
|
2011-08-09 14:20:25 +00:00 |
|
Miroslav Stampar
|
457f501bbd
|
proper fix
|
2011-08-01 23:48:38 +00:00 |
|
Bernardo Damele
|
cbd0ea0866
|
Possible fix for a minor bug
|
2011-08-01 23:24:39 +00:00 |
|
Miroslav Stampar
|
0627bb02cb
|
minor beautification
|
2011-07-31 10:21:47 +00:00 |
|
Miroslav Stampar
|
68ae8ea5b2
|
minor refactoring
|
2011-07-29 10:54:25 +00:00 |
|
Miroslav Stampar
|
e522263640
|
fix for a neverending data retrieval in large full inband cases
|
2011-07-29 10:45:09 +00:00 |
|
Miroslav Stampar
|
107089c00b
|
bug fix
|
2011-07-27 08:25:51 +00:00 |
|
Bernardo Damele
|
e71f96afe7
|
Reverted dumb "fix"
|
2011-07-26 09:42:09 +00:00 |
|
Bernardo Damele
|
0a7a648694
|
Minor bug fix for --start, now all techniques return the same result (before blind techniques returned from one entry behind)
|
2011-07-25 11:15:18 +00:00 |
|
Bernardo Damele
|
6cbb927012
|
Partial fix for -o not resumed at following runs if missing from command line
|
2011-07-25 11:05:49 +00:00 |
|
Miroslav Stampar
|
2033a28ae7
|
minor update regarding last commit (cleaner code)
|
2011-07-24 20:44:17 +00:00 |
|
Miroslav Stampar
|
3a3561fdaa
|
doing proper big table support for partial union too
|
2011-07-24 20:36:44 +00:00 |
|
Miroslav Stampar
|
ec1bc0219c
|
hello big tables, this is sqlmap, sqlmap this is big tables
|
2011-07-24 09:19:33 +00:00 |
|
Miroslav Stampar
|
82e1e61554
|
minor speedup
|
2011-07-23 19:51:19 +00:00 |
|
Miroslav Stampar
|
094dc91e2d
|
minor update (prior to some changes regarding large content retrieval)
|
2011-07-23 19:04:59 +00:00 |
|
Miroslav Stampar
|
8a00ca83af
|
refactoring. nothing special changed
|
2011-07-21 10:18:11 +00:00 |
|
Miroslav Stampar
|
963f54e6d2
|
minor fix for parameters containing '=' inside values itself (remark: no parameter name will have '=' nor '%3d' inside; tested and it does a good job)
|
2011-07-21 10:06:52 +00:00 |
|
Miroslav Stampar
|
ff8fc90ac7
|
bug fix
|
2011-07-13 06:44:15 +00:00 |
|
Miroslav Stampar
|
5c162efbd8
|
more optimization
|
2011-07-12 23:21:15 +00:00 |
|
Miroslav Stampar
|
9933edc718
|
optimization of reflective removal mechanism
|
2011-07-12 22:28:19 +00:00 |
|
Miroslav Stampar
|
3583d6dd1b
|
quick fixes, more work to do
|
2011-07-12 20:32:19 +00:00 |
|
Miroslav Stampar
|
c517e97a44
|
few fixes and minor cosmetics
|
2011-07-08 06:02:31 +00:00 |
|
Bernardo Damele
|
aedcf8c8d7
|
Changed homepage address
|
2011-07-07 20:10:03 +00:00 |
|
Bernardo Damele
|
6f6038b534
|
Quick fix (revert..)
|
2011-07-06 11:32:12 +00:00 |
|
Miroslav Stampar
|
93b296e02c
|
few bug fixes (NTLM credential parsing was wrong), some switch reordering (few Misc to General), implemented --check-waf switch (irony is that this will also be called highly experimental/unstable while other things will be called "major/turbo/super bug fix/implementation")
|
2011-07-06 05:44:47 +00:00 |
|
Miroslav Stampar
|
34d9a91af1
|
bulk of fixes
|
2011-07-02 22:48:56 +00:00 |
|
Bernardo Damele
|
861cdb1b14
|
cosmetics
|
2011-07-01 10:04:34 +00:00 |
|
Miroslav Stampar
|
4513ef409e
|
massive (like really massive) dictionary support
|
2011-06-30 23:44:49 +00:00 |
|
Miroslav Stampar
|
43db6b03a7
|
update with a feature request (file with list of wordlist files)
|
2011-06-30 08:42:43 +00:00 |
|
Miroslav Stampar
|
be9b8bca78
|
bug fix
|
2011-06-29 17:39:58 +00:00 |
|
Miroslav Stampar
|
8a8b94883b
|
minor update (that default quit in --batch was bothering me - my original idea and it was bad :)
|
2011-06-27 14:14:49 +00:00 |
|
Bernardo Damele
|
36c96ef796
|
Added DB2 support - patch provided by Sebastian Bittig
|
2011-06-25 09:44:24 +00:00 |
|
Miroslav Stampar
|
52ba3c281e
|
minor update
|
2011-06-22 14:59:49 +00:00 |
|
Miroslav Stampar
|
4ca37901da
|
thread safe logging+stdout (no more overlapping of log messages and raw output)
|
2011-06-22 14:53:42 +00:00 |
|
Bernardo Damele
|
1cb12ea659
|
replaced third-party library python-mysql with python pymysql, http://code.google.com/p/pymysql/ (MIT license)
|
2011-06-22 13:31:07 +00:00 |
|
Miroslav Stampar
|
d6062e8fc9
|
minor fix for crawler and far less message overlaps in future
|
2011-06-20 21:18:12 +00:00 |
|
Miroslav Stampar
|
8c04aa871a
|
english typo
|
2011-06-20 11:00:23 +00:00 |
|
Miroslav Stampar
|
83af83da9e
|
minor beautification (WordsSet is considered as a bad english)
|
2011-06-18 15:47:19 +00:00 |
|
Miroslav Stampar
|
1440c9f2d4
|
minor update
|
2011-06-17 22:28:07 +00:00 |
|
Miroslav Stampar
|
87e9842371
|
better language
|
2011-06-17 22:13:45 +00:00 |
|
Miroslav Stampar
|
ce3170edef
|
minor update/better language
|
2011-06-17 22:11:40 +00:00 |
|
Miroslav Stampar
|
ec6fa384eb
|
update
|
2011-06-17 22:04:25 +00:00 |
|
Miroslav Stampar
|
0eeb48f8f5
|
some fixes
|
2011-06-16 13:41:02 +00:00 |
|
Miroslav Stampar
|
7733e5866a
|
minor update regarding mnemonics (again)
|
2011-06-16 12:34:38 +00:00 |
|