Miroslav Stampar
|
0a9d69a7d0
|
Minor patch
|
2016-06-26 01:10:47 +02:00 |
|
Miroslav Stampar
|
a4b60dc00f
|
New error regex for MsSQL
|
2016-06-26 00:40:54 +02:00 |
|
Miroslav Stampar
|
f91ae32284
|
Minor update (to not confuse S3 vs Cloudfront)
|
2016-06-24 13:39:13 +02:00 |
|
Miroslav Stampar
|
53fc9d6720
|
Fixes #1990
|
2016-06-24 13:31:19 +02:00 |
|
Miroslav Stampar
|
0b31568306
|
Minor update
|
2016-06-24 13:28:08 +02:00 |
|
Miroslav Stampar
|
e9407cf791
|
Cleaning some garbage boundaries (it doesn't make any sense to use %00 as prefix)
|
2016-06-23 22:57:59 +02:00 |
|
Miroslav Stampar
|
0175acd028
|
Bug fix (in some cases lack of warning message for SQLi appearing)
|
2016-06-23 17:52:37 +02:00 |
|
Miroslav Stampar
|
733a32de32
|
Minor patch
|
2016-06-23 12:09:51 +02:00 |
|
Miroslav Stampar
|
1b863ecf93
|
Far better detection of SecureIIS (WAF)
|
2016-06-23 12:03:05 +02:00 |
|
Miroslav Stampar
|
ec06037335
|
Update of bigip waf script
|
2016-06-23 11:41:49 +02:00 |
|
Miroslav Stampar
|
0cdb62a1b5
|
Adding new waf script (armor)
|
2016-06-23 11:15:31 +02:00 |
|
Miroslav Stampar
|
99454198b8
|
Minor refactoring
|
2016-06-20 10:01:57 +02:00 |
|
Miroslav Stampar
|
dd6287ace8
|
Fixes #1972
|
2016-06-20 09:59:50 +02:00 |
|
Miroslav Stampar
|
786460e3b4
|
Minor just in case patch
|
2016-06-19 17:44:47 +02:00 |
|
Miroslav Stampar
|
419cf979f1
|
Showing again the 'shutting down at ...' message
|
2016-06-19 17:17:01 +02:00 |
|
Miroslav Stampar
|
30be875304
|
Patch for an Issue #1968
|
2016-06-18 01:21:57 +02:00 |
|
Miroslav Stampar
|
7d011bc811
|
Fixes #1964
|
2016-06-17 17:07:44 +02:00 |
|
Miroslav Stampar
|
b2c4a3b247
|
Fixes #1960
|
2016-06-17 16:54:23 +02:00 |
|
Miroslav Stampar
|
9d9592a69b
|
Fixes #1963
|
2016-06-17 16:51:23 +02:00 |
|
Miroslav Stampar
|
cb42294a7e
|
Minor message update
|
2016-06-15 07:57:10 +02:00 |
|
Miroslav Stampar
|
146762c109
|
Minor update
|
2016-06-15 07:54:47 +02:00 |
|
Miroslav Stampar
|
494b9d1586
|
Fixes #1943
|
2016-06-13 15:30:38 +02:00 |
|
Miroslav Stampar
|
2e95fdb52d
|
Fixes #1947
|
2016-06-13 14:50:44 +02:00 |
|
Miroslav Stampar
|
46736cac7b
|
Fixes #1931
|
2016-06-10 18:41:41 +02:00 |
|
Miroslav Stampar
|
041213f22d
|
Fixes #1935
|
2016-06-10 18:18:48 +02:00 |
|
Miroslav Stampar
|
8ca45c5678
|
Fixes #1936
|
2016-06-10 18:02:24 +02:00 |
|
Miroslav Stampar
|
c6eec8db97
|
Fixes #1938
|
2016-06-10 17:52:22 +02:00 |
|
Miroslav Stampar
|
98fdc493f4
|
Proper patch for #1923 (Fixes #1940, #1941)
|
2016-06-10 17:42:11 +02:00 |
|
Miroslav Stampar
|
91372bff87
|
Fixes #1932
|
2016-06-08 08:20:54 +02:00 |
|
Miroslav Stampar
|
7fb9db42a7
|
Performing a backup of old dump file (Issue #841)
|
2016-06-05 12:37:19 +02:00 |
|
Miroslav Stampar
|
82382957f9
|
Minor refactoring
|
2016-06-05 12:25:42 +02:00 |
|
Miroslav Stampar
|
f034122bd0
|
Fixes #1920
|
2016-06-05 12:14:01 +02:00 |
|
Miroslav Stampar
|
0df2456f34
|
Fixes #1923
|
2016-06-03 16:06:29 +02:00 |
|
Miroslav Stampar
|
78fdb27a0b
|
More improvements
|
2016-06-03 15:51:52 +02:00 |
|
Miroslav Stampar
|
350baf0a0a
|
Minor update
|
2016-06-03 14:29:32 +02:00 |
|
Miroslav Stampar
|
9886b646eb
|
Proper update regarding the last commit
|
2016-06-03 14:18:28 +02:00 |
|
Miroslav Stampar
|
c5197b99a0
|
Minor patch and minor improvement
|
2016-06-03 13:59:32 +02:00 |
|
Miroslav Stampar
|
cc313280af
|
Payload that never ever worked (now fixed)
|
2016-06-03 13:16:00 +02:00 |
|
Miroslav Stampar
|
f06ff42c58
|
This never worked. Not sure who incorporated it (WAITFOR DELAY can't go to SELECT/CASE)
|
2016-06-03 10:42:57 +02:00 |
|
Miroslav Stampar
|
4bc1cf4518
|
Vastly better patch for MsSQL payloads
|
2016-06-03 10:29:04 +02:00 |
|
Miroslav Stampar
|
0e65043c84
|
Minor adjustment
|
2016-06-03 09:48:49 +02:00 |
|
Miroslav Stampar
|
d7d565415a
|
Patch for MySQL fingerprinting
|
2016-06-03 02:31:31 +02:00 |
|
Miroslav Stampar
|
0986ec8948
|
Update for Oracle fingerprinting
|
2016-06-03 02:27:59 +02:00 |
|
Miroslav Stampar
|
50bced511f
|
Adding support for fingerprinting MsSQL 2014 and 2016
|
2016-06-03 02:24:19 +02:00 |
|
Miroslav Stampar
|
e275e8c0b0
|
Fixes #1921
|
2016-06-03 02:02:11 +02:00 |
|
Miroslav Stampar
|
77dea38ac1
|
Fixes #1918
|
2016-06-03 00:37:18 +02:00 |
|
Miroslav Stampar
|
7dc2ec5fd8
|
Minor touch
|
2016-06-01 20:42:09 +02:00 |
|
Miroslav Stampar
|
4bf2e3b139
|
Minor update
|
2016-06-01 20:37:05 +02:00 |
|
Miroslav Stampar
|
8114c14755
|
Removing leftover
|
2016-06-01 16:32:22 +02:00 |
|
Miroslav Stampar
|
ec8cf6aadc
|
Adding support for detecting CAPTCHA
|
2016-06-01 15:48:04 +02:00 |
|
Miroslav Stampar
|
d326965966
|
Reordering MySQL's error-based payloads (BIGINT and EXP have crazy bigger chunk lenghts)
|
2016-06-01 14:12:22 +02:00 |
|
Miroslav Stampar
|
030df0353d
|
Removing ugly legacy code (e.g. showing MySQL 5.0 when it is e.g. '5.7.8')
|
2016-06-01 13:47:20 +02:00 |
|
Miroslav Stampar
|
5038d7a70a
|
Removing ugly boolean check results (0 or 1) in output of UNION and ERROR SQLi
|
2016-06-01 13:39:40 +02:00 |
|
Miroslav Stampar
|
f0b8fbb7fd
|
Implemented support for JSON_KEYS error-based SQLi (and tons of fixes for MySQL 'ORDER BY,GROUP BY' payloads)
|
2016-06-01 13:23:41 +02:00 |
|
Miroslav Stampar
|
5810c2b199
|
Minor patch
|
2016-06-01 11:30:27 +02:00 |
|
Miroslav Stampar
|
77f0b5dfa8
|
Fixes #1919
|
2016-06-01 10:56:42 +02:00 |
|
Miroslav Stampar
|
b0ea74dc63
|
Minor warning message update
|
2016-06-01 10:53:32 +02:00 |
|
Miroslav Stampar
|
0c07c8942c
|
Automatic monthly tagging
|
2016-06-01 10:44:08 +02:00 |
|
Miroslav Stampar
|
7d1bdb35ca
|
Update of parsed versions
|
2016-06-01 10:44:08 +02:00 |
|
Miroslav Stampar
|
e823889819
|
Update for JSP exceptions
|
2016-05-31 15:35:10 +02:00 |
|
Miroslav Stampar
|
680aedaefc
|
Adding option --tmp-dir
|
2016-05-31 14:55:56 +02:00 |
|
Miroslav Stampar
|
afdca09ced
|
Minor patches (proper user warnings in case of output directory permissions)
|
2016-05-31 14:05:35 +02:00 |
|
Miroslav Stampar
|
ac89ee71c3
|
Minor improvement
|
2016-05-31 13:29:43 +02:00 |
|
Miroslav Stampar
|
af7c8cff92
|
Bug fix (previously removing temporary directory even if it is needed afterwards)
|
2016-05-31 13:21:08 +02:00 |
|
Miroslav Stampar
|
26d4dec5fb
|
Minor refactoring
|
2016-05-31 13:02:26 +02:00 |
|
Miroslav Stampar
|
cf31d12528
|
Adding support for python's cgitb tracebacks
|
2016-05-31 12:33:56 +02:00 |
|
Miroslav Stampar
|
b4c730f8c0
|
Minor refactoring
|
2016-05-31 12:23:59 +02:00 |
|
Miroslav Stampar
|
fba1720b31
|
Minor patch
|
2016-05-31 11:16:13 +02:00 |
|
Miroslav Stampar
|
9fad72f28b
|
Adding support for MsAccess usage of parsed FROM table names (e.g. in case of ColdFusion)
|
2016-05-31 11:08:23 +02:00 |
|
Miroslav Stampar
|
1782bf8e64
|
Adding support for parsing ODBC/JDBC error messages
|
2016-05-31 10:49:34 +02:00 |
|
Miroslav Stampar
|
2d59a10515
|
Better patch than last commit
|
2016-05-31 10:25:01 +02:00 |
|
Miroslav Stampar
|
21a25c4f00
|
Bug for fix comments in case of MsAccess
|
2016-05-31 10:24:13 +02:00 |
|
Miroslav Stampar
|
6b5c16c22c
|
Minor update for ColdFusion error messages
|
2016-05-31 09:54:14 +02:00 |
|
Miroslav Stampar
|
2c6621c26a
|
Minor upgrade for WAF/IDS/IPS detection
|
2016-05-31 09:49:50 +02:00 |
|
Miroslav Stampar
|
f0500b1d2f
|
Minor update for ColdFusion path regexes
|
2016-05-31 09:35:58 +02:00 |
|
Miroslav Stampar
|
6a033bb58c
|
Minor update for ColdFusion type casting
|
2016-05-31 09:31:32 +02:00 |
|
Miroslav Stampar
|
2fa4b22645
|
Patch for URL encoding cookie values (asking the user to choose)
|
2016-05-30 17:47:08 +02:00 |
|
Miroslav Stampar
|
229d3a7dd0
|
Patch for cases when error page looks more like original, than the False one does
|
2016-05-30 16:46:23 +02:00 |
|
Miroslav Stampar
|
b965e5bf1c
|
Minor refactoring
|
2016-05-30 16:06:39 +02:00 |
|
Miroslav Stampar
|
3bd74c5351
|
Minor patch
|
2016-05-30 15:20:21 +02:00 |
|
Miroslav Stampar
|
55624ec1a2
|
Minor message update
|
2016-05-30 14:40:22 +02:00 |
|
Miroslav Stampar
|
6885afe8c3
|
Minor update for requestvalidationmode.py waf script
|
2016-05-30 14:26:55 +02:00 |
|
Miroslav Stampar
|
acc1277246
|
Minor update
|
2016-05-30 14:13:57 +02:00 |
|
Miroslav Stampar
|
935cb9c8cb
|
Patch for a custom header cookie urlencoding
|
2016-05-30 14:09:53 +02:00 |
|
Miroslav Stampar
|
17a4ddad63
|
Fixes #1916
|
2016-05-30 13:10:25 +02:00 |
|
Miroslav Stampar
|
5264671f5b
|
Dump formatting patch for MsAccess
|
2016-05-30 12:03:33 +02:00 |
|
Miroslav Stampar
|
b4ebbae354
|
New payload(s)
|
2016-05-30 11:25:24 +02:00 |
|
Miroslav Stampar
|
510197c39e
|
Minor text update
|
2016-05-30 10:52:30 +02:00 |
|
Miroslav Stampar
|
b6a4bd91fe
|
Minor text update
|
2016-05-30 10:51:35 +02:00 |
|
Miroslav Stampar
|
83b82a5e98
|
Bug fix (wrong handler used in case of DBMS resolution)
|
2016-05-30 10:32:49 +02:00 |
|
Miroslav Stampar
|
0b1efc0759
|
Minor update (for newer versions of MsSQL)
|
2016-05-30 01:38:34 +02:00 |
|
Miroslav Stampar
|
2b506d744d
|
Minor update
|
2016-05-30 01:29:40 +02:00 |
|
Miroslav Stampar
|
79d08906a4
|
Cleaning some redundant payload(s)
|
2016-05-27 23:59:48 +02:00 |
|
Miroslav Stampar
|
6327063bd0
|
Minor patch
|
2016-05-27 16:43:01 +02:00 |
|
Miroslav Stampar
|
69fd900108
|
Adding waf script for detection of generic/unknown
|
2016-05-27 16:34:41 +02:00 |
|
Miroslav Stampar
|
f9d01f682b
|
Cloudflare has tons of HTTP error codes while detecting SQLi
|
2016-05-27 15:58:16 +02:00 |
|
Miroslav Stampar
|
d7d3db415b
|
Minor update
|
2016-05-27 15:32:30 +02:00 |
|
Miroslav Stampar
|
31850e4544
|
Minor bug fixes
|
2016-05-27 13:58:18 +02:00 |
|
Miroslav Stampar
|
de9f23939f
|
Major bug fix in WAF/IDS/IPS detection (question 'do you want..to try to detect backend WAF/IPS/IDS' never worked)
|
2016-05-27 13:41:03 +02:00 |
|
Miroslav Stampar
|
154ed2c4e2
|
Minor patch
|
2016-05-27 13:33:14 +02:00 |
|
Miroslav Stampar
|
89dfe4e1ac
|
Adding wallarm WAF script (and couple of other WAF script updates)
|
2016-05-27 11:58:18 +02:00 |
|
Miroslav Stampar
|
b41b07ddd8
|
Updates for 360 and jiasule WAF scripts
|
2016-05-27 11:02:05 +02:00 |
|
Miroslav Stampar
|
e36fc02282
|
Adding sophos WAF script
|
2016-05-27 10:17:42 +02:00 |
|
Miroslav Stampar
|
49b41c1eca
|
Minor update for cloudflare waf script
|
2016-05-27 09:43:54 +02:00 |
|
Miroslav Stampar
|
4cd9fdb7df
|
Minor update for F5 waf script
|
2016-05-27 09:27:45 +02:00 |
|
Miroslav Stampar
|
5aab2d8fb5
|
Update for Akamai Kona WAF script
|
2016-05-27 09:22:39 +02:00 |
|
Miroslav Stampar
|
210b65c02d
|
Couple of fixes for --identify-waf
|
2016-05-27 02:24:59 +02:00 |
|
Miroslav Stampar
|
7a2ac23f0b
|
Adding new waf script (sitelock)
|
2016-05-27 02:13:01 +02:00 |
|
Miroslav Stampar
|
e435fb2e9e
|
Adding new waf script (comodo)
|
2016-05-27 01:23:20 +02:00 |
|
Miroslav Stampar
|
6892c94595
|
Minor update
|
2016-05-27 01:10:37 +02:00 |
|
Miroslav Stampar
|
831c960216
|
Update for an Issue #1899
|
2016-05-26 16:47:38 +02:00 |
|
Miroslav Stampar
|
43af2a4aee
|
Fixes #1899
|
2016-05-26 16:08:59 +02:00 |
|
Miroslav Stampar
|
1de6996c26
|
Fixes #1893
|
2016-05-25 15:43:39 +02:00 |
|
Miroslav Stampar
|
304f2ed308
|
Minor language patch
|
2016-05-25 15:32:17 +02:00 |
|
Miroslav Stampar
|
148b35da4f
|
Better extraction of absolute file paths
|
2016-05-25 15:29:25 +02:00 |
|
Miroslav Stampar
|
3865b3a398
|
Minor improvement in case of technique E (when waiting for large entry - lots of chunks)
|
2016-05-25 12:50:53 +02:00 |
|
Miroslav Stampar
|
d6bcbbae1d
|
Minor patch for E technique to be more compatible with output of U technique
|
2016-05-25 12:42:15 +02:00 |
|
Miroslav Stampar
|
04b3aefc5d
|
Patch for special character output in U and E techniques
|
2016-05-25 12:24:36 +02:00 |
|
Miroslav Stampar
|
a5f8cae599
|
Fixes #1892
|
2016-05-24 17:58:35 +02:00 |
|
Miroslav Stampar
|
29c3037512
|
Better asciinema recording (shorter width)
|
2016-05-24 17:26:10 +02:00 |
|
Miroslav Stampar
|
d0d7d3a205
|
Update of location of a sample run
|
2016-05-24 17:12:44 +02:00 |
|
Miroslav Stampar
|
7ce36ea1b6
|
Removal of unused imports
|
2016-05-24 16:40:44 +02:00 |
|
Miroslav Stampar
|
6f97f4796b
|
Fixes #1891
|
2016-05-24 16:34:07 +02:00 |
|
Miroslav Stampar
|
39fe96009f
|
Minor improvement (related to the last commit)
|
2016-05-24 16:20:39 +02:00 |
|
Miroslav Stampar
|
b475a38895
|
Better ORDER BY detection
|
2016-05-24 15:46:06 +02:00 |
|
Miroslav Stampar
|
42de887b05
|
Language update
|
2016-05-24 15:18:19 +02:00 |
|
Miroslav Stampar
|
28576bf08e
|
Minor output update
|
2016-05-24 15:08:04 +02:00 |
|
Miroslav Stampar
|
c395958dff
|
Fixes #1888
|
2016-05-24 14:55:19 +02:00 |
|
Miroslav Stampar
|
798b539eec
|
Minor update
|
2016-05-24 14:50:56 +02:00 |
|
Miroslav Stampar
|
70cf8edc75
|
Fixes #1887
|
2016-05-24 14:17:00 +02:00 |
|
Miroslav Stampar
|
a81ea88eb0
|
Fixes #1889
|
2016-05-24 13:59:34 +02:00 |
|
Miroslav Stampar
|
023dda26fc
|
Minor update for --os-shell directories
|
2016-05-24 12:53:21 +02:00 |
|
Miroslav Stampar
|
3e76895155
|
Minor update
|
2016-05-24 12:30:01 +02:00 |
|
Miroslav Stampar
|
2c1bd7f034
|
Update for an Issue #1531 (MySQL quirk with international letters)
|
2016-05-24 12:01:02 +02:00 |
|
Miroslav Stampar
|
f7cae68378
|
More formal language
|
2016-05-22 21:44:17 +02:00 |
|
Miroslav Stampar
|
f6ff1a115a
|
Better (automatic) picking of a --string candidate (especially in case of international pages)
|
2016-05-22 21:29:08 +02:00 |
|
Miroslav Stampar
|
32ee586e2a
|
Minor language update
|
2016-05-22 14:30:32 +02:00 |
|
Miroslav Stampar
|
b9e5655e3c
|
Proper naming
|
2016-05-22 14:26:36 +02:00 |
|
Miroslav Stampar
|
6623c3f877
|
Pesky bug fix (nobody noticed :)
|
2016-05-22 14:22:31 +02:00 |
|
Miroslav Stampar
|
30a4173249
|
I like users which don't know the difference between detection and identification
|
2016-05-22 12:40:23 +02:00 |
|
Miroslav Stampar
|
dbbe4c6ddd
|
Fixes #1884
|
2016-05-22 11:44:21 +02:00 |
|
Miroslav Stampar
|
633e4dfe48
|
Fixes #1886
|
2016-05-22 11:37:27 +02:00 |
|
Miroslav Stampar
|
5e8b105677
|
Fixes #1880
|
2016-05-19 19:46:12 +02:00 |
|
Miroslav Stampar
|
414dd96bbd
|
Minor update (warning on negative integer values provided)
|
2016-05-19 18:04:25 +02:00 |
|
Miroslav Stampar
|
e857c2a88a
|
Update for an Issue #1879
|
2016-05-19 13:50:31 +02:00 |
|
Miroslav Stampar
|
e7aaea2b8e
|
Update for an Issue #1826
|
2016-05-17 14:10:49 +02:00 |
|
Miroslav Stampar
|
63d7cd607e
|
Minor patch (for late threading issues)
|
2016-05-17 13:54:42 +02:00 |
|
Miroslav Stampar
|
d886b08dd9
|
Update for an Issue #1826
|
2016-05-17 13:45:03 +02:00 |
|
Miroslav Stampar
|
72f3185ae7
|
Fixes #1878
|
2016-05-17 10:47:17 +02:00 |
|
Miroslav Stampar
|
03be9f9b65
|
Minor removal of blank lines
|
2016-05-17 10:43:16 +02:00 |
|
Miroslav Stampar
|
d9d0865c13
|
Another patch for an Issue #1874
|
2016-05-16 17:09:05 +02:00 |
|
Miroslav Stampar
|
e3f54bc226
|
Minor patch for #1874
|
2016-05-16 16:53:28 +02:00 |
|
Miroslav Stampar
|
9662f4a56a
|
Minor update
|
2016-05-16 16:47:29 +02:00 |
|
Miroslav Stampar
|
fea5cc8579
|
Minor patch
|
2016-05-16 15:37:49 +02:00 |
|
Miroslav Stampar
|
94091cd0e9
|
Fixes #1871
|
2016-05-15 09:37:45 +02:00 |
|
Miroslav Stampar
|
cc9f4b6102
|
Minor refactoring for MariaDB
|
2016-05-14 15:05:50 +02:00 |
|
Miroslav Stampar
|
cd7c99c752
|
Minor revert (it was not necessary - caused other problems)
|
2016-05-14 14:48:17 +02:00 |
|
Miroslav Stampar
|
75478c1181
|
Fixes #1868
|
2016-05-14 14:18:34 +02:00 |
|
Miroslav Stampar
|
ad0ca69579
|
Fixes #1865
|
2016-05-13 15:14:56 +02:00 |
|
Miroslav Stampar
|
2d801b7122
|
Minor patch for an Issue #1861
|
2016-05-12 17:16:55 +02:00 |
|
Miroslav Stampar
|
1e07269fe3
|
Patch for an Issue #1860
|
2016-05-12 16:42:12 +02:00 |
|
Miroslav Stampar
|
3b74e99576
|
Minor update (support for MariaDB)
|
2016-05-11 15:47:35 +02:00 |
|
Miroslav Stampar
|
439fff684e
|
Minor update (MSSQL CONCAT payload)
|
2016-05-11 09:42:54 +02:00 |
|
Miroslav Stampar
|
72cf06119c
|
Patch for an Issue #1852
|
2016-05-10 09:55:03 +02:00 |
|
Miroslav Stampar
|
808068d70a
|
Minor update
|
2016-05-10 09:19:59 +02:00 |
|
Miroslav Stampar
|
f09072b2b6
|
Fixes #1853
|
2016-05-09 13:13:02 +02:00 |
|
Miroslav Stampar
|
be9381abc5
|
Implements #1845
|
2016-05-06 13:06:59 +02:00 |
|
Miroslav Stampar
|
5d09f7b85f
|
Fixes #1822
|
2016-05-06 10:32:16 +02:00 |
|
Miroslav Stampar
|
8bbfee7591
|
Cleaning a leftover from be26392057
|
2016-05-06 10:30:58 +02:00 |
|
Miroslav Stampar
|
be26392057
|
Update for an Issue #1846
|
2016-05-06 10:23:57 +02:00 |
|
Miroslav Stampar
|
263730f4ee
|
Fixes #1840
|
2016-05-04 13:23:59 +02:00 |
|
Miroslav Stampar
|
5d7e1782d9
|
Fixes #1839
|
2016-05-04 11:14:42 +02:00 |
|
Miroslav Stampar
|
e27f590c2c
|
Fixes #1838
|
2016-05-04 11:11:58 +02:00 |
|
Miroslav Stampar
|
7afe655561
|
Another minor update for #1836
|
2016-05-03 12:52:46 +02:00 |
|
Miroslav Stampar
|
3bf08290a4
|
Update for an Issue #1836
|
2016-05-03 12:37:10 +02:00 |
|
Miroslav Stampar
|
34c2172391
|
Fixes #1837
|
2016-05-03 11:38:47 +02:00 |
|
Miroslav Stampar
|
48044f7a46
|
Minor update of IDS_WAF_CHECK_PAYLOAD
|
2016-05-03 00:19:19 +02:00 |
|
Miroslav Stampar
|
04e666182f
|
Minor update of FORMAT_EXCEPTION_STRINGS
|
2016-05-02 23:44:43 +02:00 |
|
Miroslav Stampar
|
c797129956
|
Fixes #1833
|
2016-05-02 11:10:12 +02:00 |
|
Miroslav Stampar
|
6928dae956
|
Minor patch
|
2016-05-02 10:45:50 +02:00 |
|
Miroslav Stampar
|
6db3bcbb51
|
Minor update for UrlScan
|
2016-05-02 10:12:19 +02:00 |
|
Miroslav Stampar
|
d7f0b3566d
|
Automatic monthly tagging
|
2016-05-02 10:06:30 +02:00 |
|
Miroslav Stampar
|
0c67a90cc0
|
Minor bug fix
|
2016-05-02 10:06:30 +02:00 |
|
Miroslav Stampar
|
f06e498fb0
|
Implementation for an Issue #1826
|
2016-04-29 14:19:32 +02:00 |
|
Miroslav Stampar
|
ad612bf9e4
|
Patch for Windows banner display
|
2016-04-29 00:51:20 +02:00 |
|
Miroslav Stampar
|
9dd5cd8eb6
|
Removing CloudFlare check
|
2016-04-29 00:17:07 +02:00 |
|
Miroslav Stampar
|
5ed3cdc819
|
Minor update
|
2016-04-22 10:54:55 +02:00 |
|
Miroslav Stampar
|
e07c92bce5
|
Minor change on banner showing up
|
2016-04-19 13:45:49 +02:00 |
|
Miroslav Stampar
|
0c5965c7b8
|
Minor patches
|
2016-04-19 13:13:37 +02:00 |
|
Miroslav Stampar
|
aa21550712
|
Minor patch for integer casting heuristics (circumvent auto-casting by DBMS itself)
|
2016-04-15 13:47:19 +02:00 |
|
Miroslav Stampar
|
66061e8c5f
|
Fixes #1811
|
2016-04-15 12:04:54 +02:00 |
|
Miroslav Stampar
|
c4b74c2e01
|
Fixes #1810
|
2016-04-12 22:37:14 +02:00 |
|
Miroslav Stampar
|
55b23e78ee
|
Fixes #1809
|
2016-04-12 22:10:26 +02:00 |
|
Miroslav Stampar
|
a9526bda92
|
Minor patch
|
2016-04-11 22:38:44 +02:00 |
|
Miroslav Stampar
|
0901da3f83
|
Update for an Issue #1807
|
2016-04-11 09:43:50 +02:00 |
|
Miroslav Stampar
|
8004652f7b
|
Some more optimization
|
2016-04-08 15:30:25 +02:00 |
|
Miroslav Stampar
|
c9b410c97f
|
Minor update
|
2016-04-08 14:59:52 +02:00 |
|
Miroslav Stampar
|
814d710320
|
Minor speed up
|
2016-04-08 14:41:34 +02:00 |
|
Miroslav Stampar
|
38fcc5a35a
|
Update for pre-WHERE payloads
|
2016-04-08 13:19:42 +02:00 |
|
Miroslav Stampar
|
674d516f3e
|
Minor patch
|
2016-04-08 11:40:09 +02:00 |
|
Miroslav Stampar
|
8ceb4907a5
|
Another update for Issue #1800
|
2016-04-08 11:37:38 +02:00 |
|
Miroslav Stampar
|
ce3749622a
|
Minor revisit of payload boundaries (Issue #1800)
|
2016-04-08 11:28:17 +02:00 |
|
Miroslav Stampar
|
bcfae99701
|
Adding new WAF script
|
2016-04-08 10:32:18 +02:00 |
|
Miroslav Stampar
|
44c1c2c6f0
|
Minor update (reported via email)
|
2016-04-06 11:43:53 +02:00 |
|
Miroslav Stampar
|
ac08db82b2
|
Including one more error regex (based on testasp[.]vulnweb[.]com)
|
2016-04-04 16:14:30 +02:00 |
|
Miroslav Stampar
|
305bfd9d30
|
Implements #1763
|
2016-04-04 13:50:10 +02:00 |
|
Miroslav Stampar
|
f9aaec7b4a
|
Minor patch (binary extensions)
|
2016-04-04 12:43:53 +02:00 |
|
Miroslav Stampar
|
d881a92ee7
|
Automatic monthly tagging
|
2016-04-04 12:38:37 +02:00 |
|
Miroslav Stampar
|
60ada89347
|
Trying once again
|
2016-04-04 12:38:37 +02:00 |
|
Miroslav Stampar
|
171bfa33a7
|
Automatic monthly tagging
|
2016-04-04 12:34:19 +02:00 |
|
Miroslav Stampar
|
acaef90c7b
|
Minor tuning of auto tagging
|
2016-04-04 12:34:19 +02:00 |
|
Miroslav Stampar
|
31d7021d4c
|
Fixes #1794
|
2016-04-04 12:25:07 +02:00 |
|
Miroslav Stampar
|
e83d8f6143
|
Updating colorama (Issue #1784)
|
2016-03-30 15:11:34 +02:00 |
|
Miroslav Stampar
|
0245ce6228
|
Fixes #1782
|
2016-03-28 19:55:33 +02:00 |
|
Miroslav Stampar
|
7e55af2811
|
Fixes #1778
|
2016-03-28 16:13:36 +02:00 |
|
Miroslav Stampar
|
ad3b766b65
|
Adding in-table name boundaries
|
2016-03-26 09:39:28 +01:00 |
|
Miroslav Stampar
|
074fbbcea5
|
Implementation for an Issue #1776
|
2016-03-23 15:45:49 +01:00 |
|
Miroslav Stampar
|
5b0d5970cc
|
Another patch related to the #1773
|
2016-03-23 10:33:32 +01:00 |
|
Miroslav Stampar
|
6c2f9859be
|
Potential patch for #1773
|
2016-03-23 10:26:22 +01:00 |
|
Miroslav Stampar
|
d496d99943
|
Fixes #1774
|
2016-03-22 13:24:54 +01:00 |
|
Miroslav Stampar
|
d20e9febf2
|
Fixes #1770
|
2016-03-19 17:40:05 +01:00 |
|
Miroslav Stampar
|
d76ee8f534
|
Further update for #1765
|
2016-03-17 17:06:11 +01:00 |
|
Miroslav Stampar
|
5b88e3e1ad
|
Minor update of version comment
|
2016-03-17 16:38:39 +01:00 |
|
Miroslav Stampar
|
a68848faf7
|
(Auto) adjusting micro version (to current month)
|
2016-03-17 16:31:34 +01:00 |
|
Miroslav Stampar
|
a4f21399e7
|
Fixes #1760
|
2016-03-17 16:23:28 +01:00 |
|
Miroslav Stampar
|
e03b2df58f
|
Fixes #1761
|
2016-03-14 17:21:35 +01:00 |
|
Miroslav Stampar
|
252eb97198
|
Patch related to the #1755
|
2016-03-12 19:28:28 +01:00 |
|
Miroslav Stampar
|
67ae620182
|
Another patch related to the #1752
|
2016-03-12 15:04:19 +01:00 |
|
Miroslav Stampar
|
13366aeb48
|
Fixes #1752
|
2016-03-12 12:26:30 +01:00 |
|
Miroslav Stampar
|
e1ce16144a
|
Fixes #1753
|
2016-03-10 15:42:01 +01:00 |
|
Miroslav Stampar
|
3307918389
|
Fixes #1750
|
2016-03-10 14:48:05 +01:00 |
|
Miroslav Stampar
|
c50849707f
|
Fixes #1748
|
2016-03-08 14:35:16 +01:00 |
|
Miroslav Stampar
|
06296bd251
|
Fixes #1743
|
2016-03-06 20:04:45 +01:00 |
|
Miroslav Stampar
|
0f6e529fb9
|
Fixes #1745
|
2016-03-06 12:14:20 +01:00 |
|
Miroslav Stampar
|
242800c085
|
Minor update related to the #1740
|
2016-03-01 15:40:34 +01:00 |
|
Miroslav Stampar
|
679f0cf772
|
Fixes #1738
|
2016-03-01 15:36:00 +01:00 |
|
Miroslav Stampar
|
1b5a4651a9
|
Trivial refactoring
|
2016-03-01 14:48:53 +01:00 |
|
Miroslav Stampar
|
05fa7eb7c6
|
Minor update
|
2016-03-01 11:56:56 +01:00 |
|
Miroslav Stampar
|
336169e181
|
Update of version display
|
2016-02-29 08:12:38 +01:00 |
|
Miroslav Stampar
|
b2bc3d49fd
|
Minor update
|
2016-02-29 00:52:46 +01:00 |
|
Miroslav Stampar
|
71aa7deefe
|
Minor beautification
|
2016-02-29 00:49:45 +01:00 |
|
Miroslav Stampar
|
cf5ae507c8
|
Minor update of READMEs
|
2016-02-29 00:44:08 +01:00 |
|
Miroslav Stampar
|
4898a2c332
|
Dummy commit
|
2016-02-29 00:30:37 +01:00 |
|
Miroslav Stampar
|
151dcee32e
|
Minor update
|
2016-02-29 00:23:59 +01:00 |
|
Miroslav Stampar
|
73f1155847
|
Adding new shutils file
|
2016-02-29 00:20:58 +01:00 |
|
Miroslav Stampar
|
26b895dd2e
|
Merge pull request #1733 from Aikes/master
Fixes file path traversal issue on win platform.
|
2016-02-28 23:35:09 +01:00 |
|
Miroslav Stampar
|
adfcb1ad67
|
Adjusting version number
|
2016-02-27 15:59:52 +01:00 |
|
Aikes
|
b4bb4c393b
|
Fixes file path traversal issue on win platform.
POC: GET /download/b31146dcdb92e5db/C:\windows\win.ini/a
|
2016-02-27 00:10:32 +08:00 |
|
Miroslav Stampar
|
c5ecdb5403
|
Minor update related to the Issue #1730
|
2016-02-25 01:20:48 +01:00 |
|
Miroslav Stampar
|
a90913c57d
|
Proper patch for #1723
|
2016-02-23 11:46:04 +01:00 |
|
Lion Yang
|
bc6cc4bc1d
|
Remove a whitespace tail
|
2016-02-23 16:57:06 +08:00 |
|
Miroslav Stampar
|
d6bac363af
|
Minor patch for combo -r and --method
|
2016-02-18 11:13:51 +01:00 |
|
Miroslav Stampar
|
82abf1f742
|
Fixes #1714
|
2016-02-16 09:56:53 +01:00 |
|
Miroslav Stampar
|
cc06871075
|
Adding some debug messages for future-self
|
2016-02-16 08:58:18 +01:00 |
|
Noelkd
|
0514946efa
|
Removed dead links.
|
2016-02-14 15:57:55 +00:00 |
|
Miroslav Stampar
|
78e503d7b2
|
Minor patch related to the #1706
|
2016-02-13 21:25:01 +01:00 |
|
Miroslav Stampar
|
410df455ab
|
Minor consistency patch
|
2016-02-13 21:03:05 +01:00 |
|
Miroslav Stampar
|
d7cdb6cbd8
|
Minor update
|
2016-02-06 20:16:33 +01:00 |
|
Miroslav Stampar
|
cedfdc78f4
|
Adding escapequotes.py (utility tamper script)
|
2016-02-05 12:00:57 +01:00 |
|
Miroslav Stampar
|
08aae2b7c5
|
Bug fix (--prefix should not fix the origValue in REPLACEMENT payloads)
|
2016-02-05 11:53:24 +01:00 |
|
Miroslav Stampar
|
b07685a386
|
Added checking of localhost for another DNS service on *:53
|
2016-02-03 11:55:13 +01:00 |
|
Miroslav Stampar
|
4916f1b2b2
|
Minor path related to the #1676
|
2016-01-28 09:10:04 +01:00 |
|
Miroslav Stampar
|
954b4ec32b
|
Fix for #1676
|
2016-01-27 21:25:34 +01:00 |
|
Miroslav Stampar
|
ee0439cf11
|
Update for #1678
|
2016-01-27 10:03:30 +01:00 |
|
Miroslav Stampar
|
3605b98e84
|
Merge pull request #1678 from dozysun/servername-option
add --adapter option to support various of bottle server adapter
|
2016-01-27 09:44:31 +01:00 |
|
dozysun
|
997362f61b
|
change option name to adapter
|
2016-01-27 10:35:18 +08:00 |
|
Miroslav Stampar
|
62f94f6587
|
Adding comments (Issue #1681)
|
2016-01-26 07:52:25 +01:00 |
|
Miroslav Stampar
|
c34eaa1ce8
|
Minor patch
|
2016-01-24 22:05:08 +01:00 |
|
dozysun
|
f5ffd9fa02
|
add --servername option to support various of bottle server adapter
|
2016-01-22 11:33:12 +08:00 |
|
Miroslav Stampar
|
c6c5a937f9
|
Minor style update
|
2016-01-21 10:17:17 +01:00 |
|
Miroslav Stampar
|
574b3a79aa
|
Adding support for detection of CloudFlare responses
|
2016-01-21 10:16:23 +01:00 |
|
Miroslav Stampar
|
8d42a93fdc
|
Fixes #1665
|
2016-01-16 08:13:56 +01:00 |
|
Miroslav Stampar
|
6fef2948ff
|
Minor consistency update
|
2016-01-14 22:51:26 +01:00 |
|
Miroslav Stampar
|
66eaac862b
|
Minor consistency update
|
2016-01-14 22:47:56 +01:00 |
|
Miroslav Stampar
|
59695af101
|
Minor improvement of heuristic checks
|
2016-01-14 22:21:47 +01:00 |
|
Miroslav Stampar
|
8b90d146f6
|
Update of file attributes
|
2016-01-14 18:02:15 +01:00 |
|
Miroslav Stampar
|
bdcf3fffba
|
Minor update related to the last (error results in OR boolean-based blind should not be the same as True to be able to do proper comparison)
|
2016-01-14 13:40:50 +01:00 |
|
Miroslav Stampar
|
c7ef9429ae
|
Minor check for problematic injections
|
2016-01-14 13:16:44 +01:00 |
|
Miroslav Stampar
|
c78a9cd156
|
Consistency patch
|
2016-01-14 12:14:00 +01:00 |
|
Miroslav Stampar
|
4c1fc095d8
|
Adding heuristic check for FI vulnerability
|
2016-01-14 09:59:13 +01:00 |
|
Miroslav Stampar
|
a8c6c6fca1
|
Minor update related to the last one
|
2016-01-13 23:47:34 +01:00 |
|
Miroslav Stampar
|
4e29e1b351
|
Fixing wrong commit #4f939b5719716dfe9bd085c4f67696bc11064edd
|
2016-01-13 23:34:42 +01:00 |
|
Miroslav Stampar
|
8362bdcf66
|
Fix for screw up made by #52dd92748a50bcee4fb979ea49185840ff6743b9
|
2016-01-13 23:16:27 +01:00 |
|
Miroslav Stampar
|
87676eb4bb
|
Minor update for #1660
|
2016-01-13 23:05:28 +01:00 |
|
Miroslav Stampar
|
c410f16f3f
|
Fixes #1660
|
2016-01-13 23:02:11 +01:00 |
|
Miroslav Stampar
|
0c8c4fa0d9
|
Fixes #1663
|
2016-01-13 14:38:59 +01:00 |
|
Miroslav Stampar
|
c37f4855bb
|
Another patch for Issue #1659
|
2016-01-12 10:34:56 +01:00 |
|
Miroslav Stampar
|
eb989469f3
|
Minor just in case update
|
2016-01-12 10:27:04 +01:00 |
|
Miroslav Stampar
|
9b716fcce9
|
Patch related to the #1659
|
2016-01-12 10:24:28 +01:00 |
|
Miroslav Stampar
|
a0b67418c7
|
Just in case update
|
2016-01-11 00:34:03 +01:00 |
|
Miroslav Stampar
|
7e78554e97
|
For frenzy Ctrl-C pressing
|
2016-01-11 00:08:38 +01:00 |
|
Miroslav Stampar
|
1f01d6022c
|
Minor style update
|
2016-01-10 23:50:24 +01:00 |
|
Miroslav Stampar
|
2280cd191a
|
Fixes #1654
|
2016-01-10 23:15:43 +01:00 |
|
Miroslav Stampar
|
e53e4dddf1
|
Minor patch
|
2016-01-10 23:12:46 +01:00 |
|
Miroslav Stampar
|
e519ed2e18
|
Another patch related to the #1655
|
2016-01-10 23:07:11 +01:00 |
|
Miroslav Stampar
|
8b01996adf
|
Patch related to the #1655
|
2016-01-10 22:59:40 +01:00 |
|
Miroslav Stampar
|
6b40e0aa8c
|
Minor style update (nongit-version)
|
2016-01-10 02:08:23 +01:00 |
|
Miroslav Stampar
|
5908964db4
|
Another (better) patch for #1636
|
2016-01-09 17:32:19 +01:00 |
|
Miroslav Stampar
|
0f8a551227
|
Potential patch for #1636
|
2016-01-09 00:55:01 +01:00 |
|
Miroslav Stampar
|
3c9be947c5
|
Fixes #1649
|
2016-01-09 00:15:05 +01:00 |
|
Miroslav Stampar
|
48ac2101f2
|
Using only once the dummy checkWaf payload
|
2016-01-08 23:23:41 +01:00 |
|
Miroslav Stampar
|
de06ae6803
|
Fixes #1647
|
2016-01-08 23:10:32 +01:00 |
|
Miroslav Stampar
|
c7ea3d65be
|
Fixes #1644
|
2016-01-08 15:33:14 +01:00 |
|
Miroslav Stampar
|
e3650342bd
|
Fixes #1639
|
2016-01-08 11:47:12 +01:00 |
|
Miroslav Stampar
|
b427f6c03e
|
Minor bug fix
|
2016-01-08 10:52:02 +01:00 |
|
Miroslav Stampar
|
6f3511dcc3
|
Error chunk length bug fix (reported privately)
|
2016-01-08 10:45:31 +01:00 |
|
Miroslav Stampar
|
d0d676ccce
|
Update of copyright string
|
2016-01-06 00:06:12 +01:00 |
|
Miroslav Stampar
|
59ff8114ff
|
Fixes #1635
|
2016-01-04 12:09:08 +01:00 |
|
Miroslav Stampar
|
03160d99eb
|
Fixes #1630
|
2015-12-30 13:39:08 +01:00 |
|
Miroslav Stampar
|
42066cfb3d
|
Minor refactoring
|
2015-12-30 12:41:56 +01:00 |
|
Miroslav Stampar
|
dd8fcaeb43
|
Minor refactoring of some revisited code
|
2015-12-29 14:32:13 +01:00 |
|
Miroslav Stampar
|
24d95ab6b3
|
Fixes #1624
|
2015-12-24 10:34:42 +01:00 |
|
Miroslav Stampar
|
3454e356f9
|
Fixes #1621
|
2015-12-23 08:55:45 +01:00 |
|
Miroslav Stampar
|
ae7481081e
|
Patch for an Issue reported via email
|
2015-12-19 23:45:10 +01:00 |
|
Miroslav Stampar
|
89e0fc8ffa
|
Minor update
|
2015-12-19 17:50:12 +01:00 |
|
Miroslav Stampar
|
e4ed1c058b
|
Minor error message improvement (SSL issues)
|
2015-12-18 17:15:59 +01:00 |
|
Miroslav Stampar
|
aee47d32c5
|
Patch for #1601
|
2015-12-15 12:13:03 +01:00 |
|
Miroslav Stampar
|
d7d786d3b5
|
Fixes #1607
|
2015-12-15 11:29:37 +01:00 |
|
Miroslav Stampar
|
b269e8418f
|
Fixes #1608
|
2015-12-15 10:46:37 +01:00 |
|
Miroslav Stampar
|
dc7f2a71d2
|
Minor refactoring
|
2015-12-12 23:48:30 +01:00 |
|
Miroslav Stampar
|
273679f542
|
Adding new charset replacement (reported via email)
|
2015-12-10 13:23:50 +01:00 |
|
Miroslav Stampar
|
663c976a3b
|
Fixes #1600
|
2015-12-09 19:53:48 +01:00 |
|
Miroslav Stampar
|
2eb5f5e841
|
Handling 'address already in use' for sqlmapapi server instance
|
2015-12-09 12:20:09 +01:00 |
|
Miroslav Stampar
|
31d250f98e
|
Fixes #1592
|
2015-12-09 12:00:34 +01:00 |
|
Miroslav Stampar
|
1c5c937507
|
Minor update
|
2015-12-09 10:14:13 +01:00 |
|
Miroslav Stampar
|
efc91b015d
|
Fixes #1589
|
2015-12-09 10:07:37 +01:00 |
|
Miroslav Stampar
|
af60f11319
|
Fixes #1584 (hello @w3af looking for the patch of this one ;)
|
2015-12-07 16:17:28 +01:00 |
|
Miroslav Stampar
|
b5b3411f16
|
Fixes #1574
|
2015-12-06 23:49:22 +01:00 |
|
Miroslav Stampar
|
d5e6be41db
|
Fixes #1582
|
2015-12-06 23:24:09 +01:00 |
|
Miroslav Stampar
|
7517e64417
|
Minor bug fix (reported via email)
|
2015-12-05 00:52:58 +01:00 |
|
Miroslav Stampar
|
d50c0b7103
|
Fixes #1581
|
2015-12-03 12:16:00 +01:00 |
|
Miroslav Stampar
|
c6d4217495
|
Minor update (just in case)
|
2015-12-03 02:08:59 +01:00 |
|
Miroslav Stampar
|
a7c135174c
|
Fixes #1579
|
2015-12-03 02:00:16 +01:00 |
|
Miroslav Stampar
|
6397704456
|
Patch for an Issue #1578
|
2015-12-03 01:43:37 +01:00 |
|
Miroslav Stampar
|
80d3ff6706
|
Adding hidden switch for disabling socket preconnect (debugging purposes)
|
2015-12-02 12:05:40 +01:00 |
|
Miroslav Stampar
|
a219ff9a92
|
Fixes #1572
|
2015-11-29 19:40:14 +01:00 |
|
Miroslav Stampar
|
795777b7c5
|
Minor patch
|
2015-11-28 22:44:42 +01:00 |
|
Miroslav Stampar
|
5f2c31f8ec
|
Minor consistency patch
|
2015-11-28 22:42:25 +01:00 |
|
Miroslav Stampar
|
f9da29284c
|
Minor bug fix (reported via email)
|
2015-11-27 18:35:58 +01:00 |
|
Miroslav Stampar
|
c7ec1534a6
|
Patch related to #1256
|
2015-11-25 13:04:34 +01:00 |
|
Miroslav Stampar
|
a18c69d78b
|
Fixes #1564
|
2015-11-25 10:21:32 +01:00 |
|
Miroslav Stampar
|
829351421f
|
Minor cosmetics
|
2015-11-25 10:12:07 +01:00 |
|
Miroslav Stampar
|
5020269f50
|
Adding extra mark into non-git checkouts
|
2015-11-24 09:38:28 +01:00 |
|
Miroslav Stampar
|
527dcce08d
|
Better alternative (on Linux getctime() is the time of the last metadata change)
|
2015-11-24 09:25:11 +01:00 |
|
Miroslav Stampar
|
bdb496eaa5
|
Fixes #1558
|
2015-11-23 09:24:30 +01:00 |
|
Miroslav Stampar
|
4d576928a7
|
Fixes #1554
|
2015-11-22 16:05:48 +01:00 |
|
Miroslav Stampar
|
376037123b
|
Minor fix
|
2015-11-22 15:33:00 +01:00 |
|
Miroslav Stampar
|
a5489516eb
|
Fixes #1550
|
2015-11-20 16:52:59 +01:00 |
|
Miroslav Stampar
|
7fa9c8e938
|
Patch for an Issue #1546
|
2015-11-20 11:38:26 +01:00 |
|
Miroslav Stampar
|
efe41fbdc7
|
Fixes #1547
|
2015-11-20 11:32:54 +01:00 |
|