| 
							
							
								 Miroslav Stampar | cfc1f2b70b | minor update | 2011-08-22 22:43:14 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | f4127a80d7 | improvement of UNION based injection detection (with non-NULL kb.uChar values searching of the content inside -1 UNION.. pages is used) | 2011-08-22 21:43:46 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | cb32d46f2a | minor minor update | 2011-08-18 06:09:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9d31322f3d | update regarding special case when conf.uChar appears only in testable pages | 2011-08-17 21:40:42 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e1dbb4443b | minor update related to the last commit | 2011-08-16 07:01:14 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 7cc5743c5d | minor adjustment of a time based char retrievals (no more infinite increasing of timeSec value for problematic characters) | 2011-08-16 06:50:20 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 702ed73a65 | Added --code switch to match in boolean-based tests against the HTTP response code | 2011-08-12 16:48:11 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | fff4c34e33 | Search for --string and --regexp matches also in HTTP response headers | 2011-08-12 15:33:37 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e849b71027 | minor typo | 2011-08-03 14:31:42 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 538b49bcc5 | removing word "dramatically". i was too excited at the moment :). it is cool and all but we shouldn't put "highly subjective" attribs in reports | 2011-08-03 13:26:38 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9423d15fb3 | ORDER BY technique used for finding proper UNION col count (dramatical improvement of speed and capabilities) and one minor bug fix | 2011-08-03 09:08:16 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | edab7d01a5 | minor fix | 2011-08-02 17:31:13 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | cb0981d858 | proper way of handling 0 length results (as in __goInferenceProxy) | 2011-08-02 08:39:32 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 018d7ed646 | improvement for limited queries (more stable to have TOP/LIMIT/OFFSET mechanisms as part of a subquery) | 2011-07-31 23:40:09 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e522263640 | fix for a neverending data retrieval in large full inband cases | 2011-07-29 10:45:09 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 938716e361 | Proper fix for --start and --stop consistency amongst different techniques | 2011-07-26 10:06:28 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 6bbb8139a0 | update (smaller memory footprint in postprocessing phase because of safecharencode part) | 2011-07-25 20:40:31 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 5770c08784 | minor optimization and refactoring | 2011-07-25 20:17:44 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2033a28ae7 | minor update regarding last commit (cleaner code) | 2011-07-24 20:44:17 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3a3561fdaa | doing proper big table support for partial union too | 2011-07-24 20:36:44 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | ec1bc0219c | hello big tables, this is sqlmap, sqlmap this is big tables | 2011-07-24 09:19:33 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | a89140e1ce | revisit of Oracle error-based payloads (added replace for '@' as a problematic char for XMLType function) | 2011-07-23 06:07:00 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | aedcf8c8d7 | Changed homepage address | 2011-07-07 20:10:03 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 067354b97f | Revert of last commit and proper fix to detect UNION query SQL injection against Microsoft Access | 2011-07-07 13:20:40 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 9e1a6beb7a | Major bug fix in UNION detection, it was a leftover | 2011-07-07 00:06:20 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | b8ffcf9495 | few fixes here and there and multi-core processing for dictionary based hash attack | 2011-07-04 19:58:41 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 34d9a91af1 | bulk of fixes | 2011-07-02 22:48:56 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 9eb683531d | Minor improvement at blind SQL inj technique for DB2 | 2011-06-27 22:28:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9e232256f4 | reverting that last commit because there is a  mess with default dumping (startLimit is set to 0 which is not so friendly with --start and --stop logic) | 2011-06-21 18:29:23 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 3536320fc9 | --stop is inclusive ("Last query output entry to retrieve") | 2011-06-21 18:08:33 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 83af83da9e | minor beautification (WordsSet is considered as a bad english) | 2011-06-18 15:47:19 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | f8c32cf6b9 | Moved folder | 2011-06-18 12:34:41 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 28ef61b997 | Use getPageTextWordsSet() also in --common-columns | 2011-06-18 12:30:26 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | cd07139919 | Layout adjustments | 2011-06-18 11:58:14 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 905fef0eae | now user can explicitly state number of UNION affected columns via --union-cols (e.g. --union-cols=5) | 2011-06-18 10:51:14 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | fde3e4cece | better | 2011-06-18 09:52:07 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 2f129b01c0 | "Please consider to provide" is a bad English | 2011-06-18 09:46:22 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 9498a3f259 | little stabilization of multi threading | 2011-06-17 12:50:28 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | d27afaed7e | some fixes | 2011-06-16 14:27:44 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 6aade8e6fc | grammar fix, again | 2011-06-08 16:40:22 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | d160888784 | Grammar fix | 2011-06-08 16:25:18 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 1c6ee1dc36 | Rephrase | 2011-06-08 16:22:16 +00:00 |  | 
			
				
					| 
							
							
								 Bernardo Damele | 0d8d6a4ace | Cosmetics | 2011-06-08 16:08:20 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 4a9640160e | more concise | 2011-06-08 14:35:23 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 6b81eef65a | refactoring | 2011-06-08 14:30:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e7e23d1b79 | fix for a Ctrl+C bug reported by nightman@email.de | 2011-06-07 17:16:01 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 50dde39e68 | minor update | 2011-06-07 10:32:18 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | e9bf768f23 | more refactoring | 2011-06-07 10:08:12 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 7a3cc38e3c | refactoring and stabilization of multithreading | 2011-06-07 09:50:00 +00:00 |  | 
			
				
					| 
							
							
								 Miroslav Stampar | 64a862ed58 | minor usability update | 2011-06-03 14:04:02 +00:00 |  |