| 
							
							
								 Miroslav Stampar | 71b0acc16f | minor fix (checking for full inband should be done with ORIGINAL - more concise) | 2012-04-15 16:43:18 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5772c52f46 | minor refactoring/fix (randQuery is just a part (e.g. abc) of phrase (def🔤ghi) - phrase should be searched for, not just randQuery); both phrases should be inside the content for it to be full-inband injectable (...UNION ALL SELECT phrase UNION ALL SELECT phrase2....) | 2012-04-15 16:33:47 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | ae8c70e895 | another cosmetics | 2012-04-13 15:11:44 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | d765cdc3a3 | minor cosmetics | 2012-04-13 15:10:40 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 54576ab3a6 | making a random choice from candidates | 2012-04-13 10:54:30 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | bbbcc95fe5 | use it only if page is stable | 2012-04-13 10:19:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 414c74b8aa | new payload | 2012-04-13 08:16:33 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 052d9455fe | warning user in cases of "User xyz already has more than 'max_user_connections' active connections" | 2012-04-12 09:44:54 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 831f79b851 | minor generalization | 2012-04-12 09:30:19 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c7422546e1 | tiny update | 2012-04-11 23:01:38 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2bad73a981 | minor update | 2012-04-11 21:48:44 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e195de2093 | correcting comment on reflective removal function | 2012-04-11 21:41:48 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b45ae10da4 | minor fixes | 2012-04-11 21:36:37 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 627bfc589f | some more updates in reflective removal mechanism | 2012-04-11 21:26:00 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 8b130f6497 | minor improvement for reflective values (when missing first part of payload like in error reports) | 2012-04-11 15:01:28 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 01bd5d0ab2 | some more updates for reflective mechanism | 2012-04-11 10:41:33 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2e92d8636e | improvement of reflective mechanism | 2012-04-11 08:58:03 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 60ca44e0cf | minor adjustment | 2012-04-11 08:35:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e33ea7c33a | minor fix | 2012-04-10 22:29:39 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 8541222080 | minor update | 2012-04-10 22:26:42 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9c2f244d47 | minor fix | 2012-04-10 22:20:53 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a82206cec4 | minor cosmetics | 2012-04-10 21:57:00 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 119eec3598 | improving "boolean detection" by automatic recognition of convenient --string candidate | 2012-04-10 21:48:34 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 698b7a15d9 | minor update | 2012-04-07 14:14:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 8c6eb4faa9 | adding support for PgSQL DNS data exfiltration | 2012-04-07 14:06:11 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b2afa87e48 | reading page responses in chunks, trimming unnecessary content (especially for large table dumps in full inband cases) | 2012-04-06 08:42:36 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2223c884e5 | minor refactoring | 2012-04-05 12:55:26 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 02924eb345 | minor update | 2012-04-04 23:47:06 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e0994947e2 | minor update | 2012-04-04 23:37:50 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b1dd03731a | minor cosmetics | 2012-04-04 23:34:08 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 83387d92bb | minor bug fix | 2012-04-04 23:32:20 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | c89a4162e2 | bug fix for --dns-domain with --technique=TS | 2012-04-04 18:01:39 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 80228f67f6 | removed newline | 2012-04-04 13:49:03 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | e23efabf86 | removed unuseful spaces | 2012-04-04 13:36:18 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | c051d7fecc | Prefer xp_dirtree | 2012-04-04 13:29:25 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 098c7c06dd | added few comments | 2012-04-04 13:24:58 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a5b69eaea4 | removing unused imports | 2012-04-04 13:18:14 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 52796bb4da | revert | 2012-04-04 13:02:50 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a4b95ab7dd | works against MySQL/Windows | 2012-04-04 12:49:45 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | a1d97e9d7b | Add a space after a comment | 2012-04-04 12:48:21 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 025c531d22 | leftover | 2012-04-04 12:44:25 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | c0946ce2c9 | Minor refactoring | 2012-04-04 12:42:58 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 75d1dab895 | more cosmetics | 2012-04-04 12:33:16 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | d106fb5184 | layout adjustments | 2012-04-04 12:27:24 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 1b2cd44255 | proper fix | 2012-04-04 10:35:52 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 7031ef8e00 | removing default values for referer and host from higher level/risk options | 2012-04-04 10:34:27 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 1f82d29a36 | switch two conditional payloads for proper detection | 2012-04-04 10:11:48 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5e358b51f9 | few fixes related to bug report by Shadow Folder (AttributeError: 'list' object has no attribute 'isdigit') | 2012-04-04 09:25:05 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | d5b4b7996a | minor revert | 2012-04-04 00:09:47 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 049c27c739 | improved detection for INSERT and UPDATE statements | 2012-04-03 23:29:06 +00:00 |  |