Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0e480a9921 
							
						 
					 
					
						
						
							
							adding SYS to the ORACLE_SYSTEM_DBS  
						
						
						
					 
					
						2011-05-25 10:55:47 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2f456bee75 
							
						 
					 
					
						
						
							
							minor beautification  
						
						
						
					 
					
						2011-05-25 08:14:39 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							8b7a3c5a6b 
							
						 
					 
					
						
						
							
							making it easier for totally dummy users  
						
						
						
					 
					
						2011-05-24 17:24:01 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							bec2c04671 
							
						 
					 
					
						
						
							
							helping dummy users  
						
						
						
					 
					
						2011-05-24 17:15:25 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a3466ff79c 
							
						 
					 
					
						
						
							
							serving everything for the users  
						
						
						
					 
					
						2011-05-24 16:34:08 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							69eb173eca 
							
						 
					 
					
						
						
							
							minor just in case patch  
						
						
						
					 
					
						2011-05-24 15:07:37 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0072c3af8e 
							
						 
					 
					
						
						
							
							fix for a bug reported by aboynes@gmail.com (for elt in self.a)  
						
						
						
					 
					
						2011-05-24 15:03:21 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f774d8fea0 
							
						 
					 
					
						
						
							
							proper Tor settings (reverted r3915 and implemented it the right way)  
						
						
						
					 
					
						2011-05-24 11:06:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							915c206e3d 
							
						 
					 
					
						
						
							
							minor fix for socks proxy issues  
						
						
						
					 
					
						2011-05-24 09:47:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							ad25bcc2be 
							
						 
					 
					
						
						
							
							better way for dealing with relative paths  
						
						
						
					 
					
						2011-05-24 05:26:51 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a536bf210f 
							
						 
					 
					
						
						
							
							improved redirection mechanism  
						
						
						
					 
					
						2011-05-23 23:20:03 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							128a012121 
							
						 
					 
					
						
						
							
							this was causing that --suffix trouble  
						
						
						
					 
					
						2011-05-23 19:59:07 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							bfe8e51b7c 
							
						 
					 
					
						
						
							
							minor fix for retrieving stuff like "SELECT * FROM testdb..users"  
						
						
						
					 
					
						2011-05-23 19:45:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2b12b18357 
							
						 
					 
					
						
						
							
							incorporating metasploit patch from oliver.kuckertz@mologie.de  
						
						
						
					 
					
						2011-05-23 15:27:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4542d4535f 
							
						 
					 
					
						
						
							
							minor beautification  
						
						
						
					 
					
						2011-05-23 14:28:05 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							31b48ec11c 
							
						 
					 
					
						
						
							
							removing space left  
						
						
						
					 
					
						2011-05-23 14:18:33 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0ed03d474f 
							
						 
					 
					
						
						
							
							now supporting "blank tables" - schema of the table will be preserved, even if it's empty - especially nice feature for --replicate  
						
						
						
					 
					
						2011-05-23 11:09:44 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							868fbe370b 
							
						 
					 
					
						
						
							
							minor beautification  
						
						
						
					 
					
						2011-05-23 10:39:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							fb23beef6f 
							
						 
					 
					
						
						
							
							most elegant way i could think of to deal with "collation incompatibilities" issue on some MySQL/UNION cases (affected about 5% of all targets tested)  
						
						
						
					 
					
						2011-05-22 19:14:36 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4fdb6ac9b9 
							
						 
					 
					
						
						
							
							adding useful info  
						
						
						
					 
					
						2011-05-22 15:30:19 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							48c20a62ac 
							
						 
					 
					
						
						
							
							minor nag fix  
						
						
						
					 
					
						2011-05-22 15:08:55 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							40971aca94 
							
						 
					 
					
						
						
							
							fixing nasty bug caused by retrying counter  
						
						
						
					 
					
						2011-05-22 10:59:56 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							712e238f33 
							
						 
					 
					
						
						
							
							another minor fix  
						
						
						
					 
					
						2011-05-22 10:29:25 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2795aeff34 
							
						 
					 
					
						
						
							
							minor fix  
						
						
						
					 
					
						2011-05-22 10:27:45 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							806e898694 
							
						 
					 
					
						
						
							
							no more CRITICAL drop outs in test mode - lots of reports were related to this  
						
						
						
					 
					
						2011-05-22 10:21:49 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9b2623514a 
							
						 
					 
					
						
						
							
							one bug fix for Host header (value should be without port number); one improvement for --tables - when no tables ask user if he wants to brute force them; one tweak - adding kb.ignoreTimeout for --tables  
						
						
						
					 
					
						2011-05-22 09:48:46 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2ea613b170 
							
						 
					 
					
						
						
							
							type correction and adding global flag kb.ignoreTimeout which could be useful  
						
						
						
					 
					
						2011-05-22 08:24:13 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							27f0e73cc9 
							
						 
					 
					
						
						
							
							refactoring of 'target' flag in connect.py  
						
						
						
					 
					
						2011-05-22 07:46:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a58aaf2e1a 
							
						 
					 
					
						
						
							
							better format for results file (easier for sorting when lots of files)  
						
						
						
					 
					
						2011-05-22 07:02:36 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							25fff8c135 
							
						 
					 
					
						
						
							
							changes in handling --tor (using SOCKS instead of HTTP for handling Tor - more standard way; doesn't require proxy bundle; fixes problems with default proxy ports on Win/Linux)  
						
						
						
					 
					
						2011-05-21 11:46:57 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9e5856caf8 
							
						 
					 
					
						
						
							
							improvement for recognition of scalar vs multiple-row commands  
						
						
						
					 
					
						2011-05-19 16:45:05 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							db72428765 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-05-19 15:57:29 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f40c6b2ce7 
							
						 
					 
					
						
						
							
							added --cookie for maskSensitiveData too  
						
						
						
					 
					
						2011-05-19 15:42:59 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9832fc42d4 
							
						 
					 
					
						
						
							
							minor improvement for --tamper (now standard tamper scripts can be used like --tamper=randomcase)  
						
						
						
					 
					
						2011-05-18 21:47:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							3048e9f710 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2011-05-17 23:03:31 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							cc07e5dc97 
							
						 
					 
					
						
						
							
							added --charset option to force charset encoding of the retrieved data (e.g. when the backend collation is different than the current web page charset) as requested by devon.mitchell1988@yahoo.com  
						
						
						
					 
					
						2011-05-17 22:55:22 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							dfe81cc66f 
							
						 
					 
					
						
						
							
							minor yielding  
						
						
						
					 
					
						2011-05-16 20:14:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a5ad4621c9 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2011-05-16 20:09:12 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							ba1df457ab 
							
						 
					 
					
						
						
							
							fix for a charset euc_tw reported by devon.mitchell1988@yahoo.com  
						
						
						
					 
					
						2011-05-16 19:26:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6ba9dea640 
							
						 
					 
					
						
						
							
							just in case for trimmed output  
						
						
						
					 
					
						2011-05-16 06:17:37 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							d2221e4604 
							
						 
					 
					
						
						
							
							fix for a minor "retrieved" cosmetic issue in partial union technique reported by Devon Mitchell (retrieved: "information_schema","COLUMNS</title><...)  
						
						
						
					 
					
						2011-05-16 00:23:50 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							faa74cd2bc 
							
						 
					 
					
						
						
							
							introducing results file for multiple target mode  
						
						
						
					 
					
						2011-05-15 22:21:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							90e84c9a6d 
							
						 
					 
					
						
						
							
							removing xmlcharrefreplace error handler as it seems that it wasn't such a good idea at the end  
						
						
						
					 
					
						2011-05-15 21:43:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							c3bb5a03e1 
							
						 
					 
					
						
						
							
							minor improvement  
						
						
						
					 
					
						2011-05-14 20:09:37 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							3484a4426b 
							
						 
					 
					
						
						
							
							fix for a bug reported by itxx@qq.com (TypeError: encode() takes no keyword arguments)  
						
						
						
					 
					
						2011-05-14 19:57:28 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							053c245114 
							
						 
					 
					
						
						
							
							few minor fixes  
						
						
						
					 
					
						2011-05-13 09:56:12 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a7d7be5ce0 
							
						 
					 
					
						
						
							
							bug fix ('Host' header was being set to the conf.hostname for all getPages causing problems in some cases when retrieved page was not coming from that same Host)  
						
						
						
					 
					
						2011-05-13 01:01:53 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f11d5c91e3 
							
						 
					 
					
						
						
							
							minor update so that only one DNS request per scan is being done (before this commit there were two)  
						
						
						
					 
					
						2011-05-12 14:32:39 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							70688fb8b5 
							
						 
					 
					
						
						
							
							minor enhancement for dumping 'None' values (proper way should be empty string because None is too pythonic)  
						
						
						
					 
					
						2011-05-12 12:00:17 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							c64eb38a8b 
							
						 
					 
					
						
						
							
							same thing as for the last commit, but for error technique this time  
						
						
						
					 
					
						2011-05-12 11:52:18 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							84a7e5ffb9 
							
						 
					 
					
						
						
							
							"unfix" for r3172 which was causing "AttributeError: 'list' object has no attribute 'isdigit'" because of change of appereance  
						
						
						
					 
					
						2011-05-12 11:36:02 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							0b2da2f9f5 
							
						 
					 
					
						
						
							
							minor beautification for --tor switch  
						
						
						
					 
					
						2011-05-12 05:46:17 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e05a9c0554 
							
						 
					 
					
						
						
							
							i was probably very tired or very stupid to do this  
						
						
						
					 
					
						2011-05-11 13:13:46 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2ab9e30f7a 
							
						 
					 
					
						
						
							
							bug fix  
						
						
						
					 
					
						2011-05-11 12:54:33 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							53065ee1fb 
							
						 
					 
					
						
						
							
							adding ordered set for kb.targetUrls (now the order of appereance in multiple targets mode will be respected)  
						
						
						
					 
					
						2011-05-11 08:55:48 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							5ee07b90b9 
							
						 
					 
					
						
						
							
							added -m switch for bulk loading multiple targets  
						
						
						
					 
					
						2011-05-11 08:46:40 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							120b0d756e 
							
						 
					 
					
						
						
							
							unfix  
						
						
						
					 
					
						2011-05-10 21:33:06 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6b66fce72c 
							
						 
					 
					
						
						
							
							minor fix  
						
						
						
					 
					
						2011-05-10 20:52:43 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							192c685bc8 
							
						 
					 
					
						
						
							
							changing conf attribute to a more proper name  
						
						
						
					 
					
						2011-05-10 20:48:34 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							deae534ee7 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2011-05-10 20:44:36 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							97bc816aeb 
							
						 
					 
					
						
						
							
							layout  
						
						
						
					 
					
						2011-05-10 16:24:09 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							3a8309c4b0 
							
						 
					 
					
						
						
							
							Major bug fix to detect UNION query technique and various improvements to parsing and using of --union-char and --union-cols switches  
						
						
						
					 
					
						2011-05-10 15:34:54 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							707edc7b1a 
							
						 
					 
					
						
						
							
							fix for a bug (previously --dbms="mysql 4" was ignored and abruptly terminated while the mechanism was here all along)  
						
						
						
					 
					
						2011-05-10 13:28:07 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1dea609019 
							
						 
					 
					
						
						
							
							fix for a bug reported by David (UnicodeDecodeError: url = url + '?' + query)  
						
						
						
					 
					
						2011-05-10 12:51:37 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a64407d9db 
							
						 
					 
					
						
						
							
							minor bug fix for multithreading and lots of connection retries  
						
						
						
					 
					
						2011-05-10 12:40:01 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							22a1870c2c 
							
						 
					 
					
						
						
							
							adding some constraining to number of used threads on brute force switches together with a warning in case of connection exception(s) with --threads>1  
						
						
						
					 
					
						2011-05-10 12:32:07 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							ec4d9178f8 
							
						 
					 
					
						
						
							
							minor update related to the previous commit  
						
						
						
					 
					
						2011-05-08 06:28:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4d6e7c738c 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-05-08 06:17:43 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							9955483052 
							
						 
					 
					
						
						
							
							Major improvement for --dump.  
						
						... 
						
						
						
						Minor improvement for --dump-all.
Minor bug fix for infinite loop 
						
					 
					
						2011-05-08 02:08:18 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							8179fd63c0 
							
						 
					 
					
						
						
							
							Minor fix  
						
						
						
					 
					
						2011-05-07 23:48:03 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							6653907700 
							
						 
					 
					
						
						
							
							forgot in last commit  
						
						
						
					 
					
						2011-05-07 21:13:56 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							1151af52bb 
							
						 
					 
					
						
						
							
							More fix for save/resume of --technique  
						
						
						
					 
					
						2011-05-07 21:08:14 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							aae140080e 
							
						 
					 
					
						
						
							
							SVN roll back, DB2 patch will be recommitted after testing:  
						
						... 
						
						
						
						$ svn merge https://svn.sqlmap.org/sqlmap/trunk/sqlmap@HEAD  https://svn.sqlmap.org/sqlmap/trunk/sqlmap@3847  . 
						
					 
					
						2011-05-06 10:27:43 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							42bca80968 
							
						 
					 
					
						
						
							
							removing blank lines and adding newline at the end of files  
						
						
						
					 
					
						2011-05-06 09:35:53 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6e392b6054 
							
						 
					 
					
						
						
							
							applying contributed patch for DB2  
						
						
						
					 
					
						2011-05-06 09:30:39 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							2d8408c885 
							
						 
					 
					
						
						
							
							More fix for --technique resume  
						
						
						
					 
					
						2011-05-05 16:38:46 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							e96a533a04 
							
						 
					 
					
						
						
							
							Bug fix to resume of --technique  
						
						
						
					 
					
						2011-05-05 15:18:33 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							b324b99f6e 
							
						 
					 
					
						
						
							
							minor update of warning message  
						
						
						
					 
					
						2011-05-04 10:41:08 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							83fac3f6d9 
							
						 
					 
					
						
						
							
							fix for proper MSSQL error chunking in some cases (not screwing output length toward lower values at chunk phase)  
						
						
						
					 
					
						2011-05-03 21:12:51 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e6f010734e 
							
						 
					 
					
						
						
							
							minor fix for cases when the retrieved output is safe encoded (like for --os-shell)  
						
						
						
					 
					
						2011-05-03 16:14:03 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4d4e3802e4 
							
						 
					 
					
						
						
							
							decoding of chars for --os-shell  
						
						
						
					 
					
						2011-05-03 15:31:12 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							c58dc4a6d8 
							
						 
					 
					
						
						
							
							isDbmsWithin() must stay like this, no getIdentifiedDbms() in there  
						
						
						
					 
					
						2011-05-03 14:13:45 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							742b0ef76e 
							
						 
					 
					
						
						
							
							major improvement of ERROR data retrieval on MSSQL  
						
						
						
					 
					
						2011-05-03 13:25:20 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							2a7838928e 
							
						 
					 
					
						
						
							
							minor fancier --replicate update  
						
						
						
					 
					
						2011-05-03 11:48:04 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							b202d73b46 
							
						 
					 
					
						
						
							
							bug fix for MSSQL identificators which were starting with d, b, o and . Thing is that .lstrip strips all occurances of the given chars :) (spotted ancidentally)  
						
						
						
					 
					
						2011-05-03 11:09:30 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1840b0e43b 
							
						 
					 
					
						
						
							
							fix for a bug reported by k1971@live.co.uk (OperationalError: unknown database dbo)  
						
						
						
					 
					
						2011-05-03 10:22:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1e6c2fea74 
							
						 
					 
					
						
						
							
							update regarding warning for --random-agent during connection timeout in connection test phase  
						
						
						
					 
					
						2011-05-03 10:05:42 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							6cff3e97f4 
							
						 
					 
					
						
						
							
							cosmetics  
						
						
						
					 
					
						2011-05-02 21:48:08 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							06498796b9 
							
						 
					 
					
						
						
							
							minor cosmetics  
						
						
						
					 
					
						2011-05-02 20:51:53 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							5e9620198c 
							
						 
					 
					
						
						
							
							fix for a privately reported bug ("AttributeError: item is disabled")  
						
						
						
					 
					
						2011-05-02 18:18:04 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							93dee30895 
							
						 
					 
					
						
						
							
							better fix for the previous commit  
						
						
						
					 
					
						2011-05-02 13:34:55 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							20ad1c1f2f 
							
						 
					 
					
						
						
							
							minor update to not confuse users when using -o  
						
						
						
					 
					
						2011-05-02 13:24:35 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f8c3086d15 
							
						 
					 
					
						
						
							
							minor minor update  
						
						
						
					 
					
						2011-05-02 12:37:54 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							098f53d57a 
							
						 
					 
					
						
						
							
							patch for a problem reported by m.martin2311@yahoo.com (unknown charset 'is0-8859-1')  
						
						
						
					 
					
						2011-05-02 12:34:35 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							ac2550535c 
							
						 
					 
					
						
						
							
							Proper fix for --technique=U bug  
						
						
						
					 
					
						2011-05-01 23:42:41 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							900ee0ff93 
							
						 
					 
					
						
						
							
							fix for a major bug reported by k1971@live.co.uk (1..9 99..)  
						
						
						
					 
					
						2011-05-01 15:47:00 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							494503b334 
							
						 
					 
					
						
						
							
							proper way to deal with generic cases  
						
						
						
					 
					
						2011-05-01 08:04:08 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							fcd69ba9c7 
							
						 
					 
					
						
						
							
							fix for a --technique=U  
						
						
						
					 
					
						2011-05-01 07:37:22 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							41fc9f9d54 
							
						 
					 
					
						
						
							
							fix for an issue reported by andrew.gecse@upcmail.hu (unknown web page charset 'hungarian-iso-8859-2')  
						
						
						
					 
					
						2011-04-30 22:41:54 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							955dbc85e7 
							
						 
					 
					
						
						
							
							Minor variable rename  
						
						
						
					 
					
						2011-04-30 15:29:59 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							b3a0424269 
							
						 
					 
					
						
						
							
							More Backend class method usage refactoring  
						
						
						
					 
					
						2011-04-30 15:24:15 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							00f14bec5f 
							
						 
					 
					
						
						
							
							layout adjustment  
						
						
						
					 
					
						2011-04-30 15:22:33 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							9a4ae7d9e2 
							
						 
					 
					
						
						
							
							More code refactoring of Backend class methods used  
						
						
						
					 
					
						2011-04-30 14:54:29 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							f56d135438 
							
						 
					 
					
						
						
							
							Minor code restyling  
						
						
						
					 
					
						2011-04-30 13:20:05 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							983546d6bf 
							
						 
					 
					
						
						
							
							proper fix  
						
						
						
					 
					
						2011-04-30 07:01:21 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							a5968fff3e 
							
						 
					 
					
						
						
							
							Added --count switch to count the number of entries for a specific table (when -T is provided), all database's tables (when only -D is provided) or all databases' tables when neither -D nor -T are provided  
						
						
						
					 
					
						2011-04-30 00:22:22 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							956e75e2b5 
							
						 
					 
					
						
						
							
							Minor adjustment to --mobile.  
						
						... 
						
						
						
						Bug fix to --random-agent. 
						
					 
					
						2011-04-29 21:50:48 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							a23ca952e4 
							
						 
					 
					
						
						
							
							Actually brute-force switches make more sense just after their "normal" version. Also, getSchema() method is preferably to be called before getColumns(), see next commit for reason  
						
						
						
					 
					
						2011-04-29 21:09:07 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							46f96f3c4c 
							
						 
					 
					
						
						
							
							removing Kindle from list as it's not really a smartphone  
						
						
						
					 
					
						2011-04-29 19:32:30 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							11124b21f9 
							
						 
					 
					
						
						
							
							implemented --mobile switch  
						
						
						
					 
					
						2011-04-29 19:27:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							b299912de4 
							
						 
					 
					
						
						
							
							fix for a bug reported by ahmed@isecur1ty.org (UnicodeDecodeError: 'ascii' codec can't decode byte 0x84 in position 396: ordinal not in range(128)) for multipartpost  
						
						
						
					 
					
						2011-04-29 16:56:02 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							6bb4dce3aa 
							
						 
					 
					
						
						
							
							minor refactoring  
						
						
						
					 
					
						2011-04-29 15:22:32 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							a2bb0d72e8 
							
						 
					 
					
						
						
							
							fix for a bug reported by rdsears@mtu.edu (TypeError: expected string or buffer)  
						
						
						
					 
					
						2011-04-29 14:40:28 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							edac0b2558 
							
						 
					 
					
						
						
							
							Added switch --schema to enumerate DBMS schema and now --columns does not require a mandatory table (-T) anymore, instead it will act as an alias for --schema  
						
						
						
					 
					
						2011-04-28 23:59:00 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							441c288dd9 
							
						 
					 
					
						
						
							
							cosmeticados  
						
						
						
					 
					
						2011-04-25 00:36:09 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							98f9f3e774 
							
						 
					 
					
						
						
							
							Minor bug fix in local shellcodeexec for Windows path  
						
						
						
					 
					
						2011-04-25 00:03:12 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							e35f25b2cb 
							
						 
					 
					
						
						
							
							Major recode of --os-pwn functionality. Now the Metasploit shellcode can not be run as a Metasploit generated payload stager anymore. Instead it can be run on the target system either via sys_bineval() (as it was before, anti-forensics mode, all the same) or via shellcodeexec executable. Advantages are that:  
						
						... 
						
						
						
						* It is stealthier as the shellcode itself does not touch the filesystem, it's an argument passed to shellcodeexec at runtime.
* shellcodeexec is not (yet) recognized as malicious by any (Avast excluded) AV product.
* shellcodeexec binary size is significantly smaller than a Metasploit payload stager (even when packed with UPX).
* UPX now is not needed anymore, so sqlmap package is also way smaller and less likely to be detected itself as malicious by your AV software.
shellcodeexec source code, compilation files and binaries are in extra/shellcodeexec/ folder now - copied over from https://github.com/inquisb/shellcodeexec .
Minor code refactoring. 
						
					 
					
						2011-04-24 23:01:21 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							d0dff82ce0 
							
						 
					 
					
						
						
							
							Minor code refactoring relating set/get back-end DBMS operating system and minor bug fix to properly enforce OS value with --os switch  
						
						
						
					 
					
						2011-04-23 16:25:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							75142b383d 
							
						 
					 
					
						
						
							
							huge speed up (4x times faster)  
						
						
						
					 
					
						2011-04-22 21:00:42 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							f88aa4b165 
							
						 
					 
					
						
						
							
							implemented suppressResumeInfo mechanism (huge slowdown on large tables)  
						
						
						
					 
					
						2011-04-22 19:58:10 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							493b9adf8e 
							
						 
					 
					
						
						
							
							speed up of resume values (compiled regexes used)  
						
						
						
					 
					
						2011-04-22 19:27:41 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							7b3b9e6a87 
							
						 
					 
					
						
						
							
							it seems that this was indeed not meant to be here  
						
						
						
					 
					
						2011-04-22 15:07:09 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							304500a2e8 
							
						 
					 
					
						
						
							
							implemented checkFalsePositives method (simple Turing like tests)  
						
						
						
					 
					
						2011-04-22 12:24:16 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							f3088079c0 
							
						 
					 
					
						
						
							
							error message adjustment  
						
						
						
					 
					
						2011-04-21 22:31:02 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							eabb5a2ba7 
							
						 
					 
					
						
						
							
							More adjustments to the error message when no sql injections are detected  
						
						
						
					 
					
						2011-04-21 22:04:20 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							6d07dddf60 
							
						 
					 
					
						
						
							
							updated doc and minor layout adjustments  
						
						
						
					 
					
						2011-04-21 21:53:35 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							06a00fe85e 
							
						 
					 
					
						
						
							
							For development version, print also the revision number in the banner  
						
						
						
					 
					
						2011-04-21 21:34:57 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							770b1523ff 
							
						 
					 
					
						
						
							
							More verbose output when no SQL injections are detected  
						
						
						
					 
					
						2011-04-21 21:31:16 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							edc2d75702 
							
						 
					 
					
						
						
							
							Cosmetics and major bug fix  
						
						
						
					 
					
						2011-04-21 21:15:23 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							d2f102f5a1 
							
						 
					 
					
						
						
							
							cosmetics  
						
						
						
					 
					
						2011-04-21 20:21:37 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							b667c50588 
							
						 
					 
					
						
						
							
							store/resume info on xp_cmd available in session file  
						
						
						
					 
					
						2011-04-21 14:25:04 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							930872cf3b 
							
						 
					 
					
						
						
							
							fix  
						
						
						
					 
					
						2011-04-21 14:20:09 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							a313df4d37 
							
						 
					 
					
						
						
							
							Allow user to force temporary folder with --tmp-path even if it has been saved one in the session file  
						
						
						
					 
					
						2011-04-21 14:05:37 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							fbe5ba5394 
							
						 
					 
					
						
						
							
							cosmetics  
						
						
						
					 
					
						2011-04-21 10:54:12 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e1a8d268d8 
							
						 
					 
					
						
						
							
							fix for UPX linux/macos  
						
						
						
					 
					
						2011-04-21 10:52:34 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							8d8fc2bbd8 
							
						 
					 
					
						
						
							
							cosmetics  
						
						
						
					 
					
						2011-04-21 10:17:41 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							11ecd16099 
							
						 
					 
					
						
						
							
							cosmetics  
						
						
						
					 
					
						2011-04-21 10:08:38 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							9ccf720c05 
							
						 
					 
					
						
						
							
							removing funny remark  
						
						
						
					 
					
						2011-04-21 10:06:13 +00:00 
						 
				 
			
				
					
						
							
							
								Bernardo Damele 
							
						 
					 
					
						
						
						
						
							
						
						
							a91e6a8440 
							
						 
					 
					
						
						
							
							layout  
						
						
						
					 
					
						2011-04-21 10:03:18 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							cbfe743bad 
							
						 
					 
					
						
						
							
							added a comment  
						
						
						
					 
					
						2011-04-21 10:01:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							c84c4d835f 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-04-21 09:31:35 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							e4d3190f41 
							
						 
					 
					
						
						
							
							reverting back to NVARCHAR because of error technique  
						
						
						
					 
					
						2011-04-20 12:59:23 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							3607f03a9e 
							
						 
					 
					
						
						
							
							fix of a minor typo  
						
						
						
					 
					
						2011-04-20 12:42:35 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1286cc0913 
							
						 
					 
					
						
						
							
							now showing trimmed output in for of warning message (UNION and ERROR techniques affected)  
						
						
						
					 
					
						2011-04-20 12:41:58 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							7993f3f12d 
							
						 
					 
					
						
						
							
							way better for storing bulk of data (like BLOB on mysql)  
						
						
						
					 
					
						2011-04-20 11:44:52 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							04653684cd 
							
						 
					 
					
						
						
							
							revert  
						
						
						
					 
					
						2011-04-20 10:34:34 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4fadcf0615 
							
						 
					 
					
						
						
							
							improvement for UNION/ERROR case  
						
						
						
					 
					
						2011-04-20 10:17:42 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							1c1c20fb64 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-04-20 09:34:00 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							4b6c524d4c 
							
						 
					 
					
						
						
							
							one more minor update regarding last commit  
						
						
						
					 
					
						2011-04-20 09:26:03 +00:00 
						 
				 
			
				
					
						
							
							
								Miroslav Stampar 
							
						 
					 
					
						
						
						
						
							
						
						
							44926757da 
							
						 
					 
					
						
						
							
							minor update  
						
						
						
					 
					
						2011-04-20 09:23:08 +00:00