Commit Graph

  • 811f5c11c6 remove Host header field and add cookie support #1198 ricterz 2015-03-24 18:50:57 +0800
  • 9b5dcbbbb2 modified error handle #1198 ricterz 2015-03-24 18:21:50 +0800
  • 78dbe080d7 determine whether it's websocket when connect #1198 ricterz 2015-03-24 17:19:37 +0800
  • 50fd6ce7f7 add websocket support for parse url #1198 ricterz 2015-03-24 10:30:38 +0800
  • 05a496c275 Fixes #1196 Miroslav Stampar 2015-03-20 00:56:36 +0100
  • 9eb7a0a0f2 enhanced time-based payloads - issue #1169 Bernardo Damele 2015-03-19 12:09:43 +0000
  • 43f6cb1508 some more boundaries Bernardo Damele 2015-03-19 12:07:26 +0000
  • 204ee1db39 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2015-03-19 12:06:36 +0000
  • f5df80527c Fixes #1195 Miroslav Stampar 2015-03-18 14:26:51 +0100
  • 865c3852ea Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2015-03-16 09:00:59 +0000
  • 25b23750e8 Bug fix for crawling over non-80 port Miroslav Stampar 2015-03-12 11:49:52 +0100
  • 0a0c3edf06 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2015-03-10 09:25:54 +0000
  • adc8ac267d Fixes #1190 Miroslav Stampar 2015-03-10 09:23:26 +0100
  • 9bd41ed99d Fixes #1189 Miroslav Stampar 2015-03-09 22:01:59 +0100
  • 2bdf121915 cleanup Bernardo Damele 2015-03-04 13:36:09 +0000
  • 02fb5058c2 Merge pull request #1186 from cvwillegen/master Miroslav Stampar 2015-03-04 13:57:06 +0100
  • 80fb2e29cc Fix some spelling errors in help texts (through -> thorough) Christ van Willegen 2015-03-04 13:31:29 +0100
  • b2fca35c36 consolidated some time-based blind payloads - issue #1169 Bernardo Damele A. G. 2015-03-03 14:22:20 +0000
  • e13bbe2e87 Merge branch 'master' of github.com:sqlmapproject/sqlmap Bernardo Damele 2015-03-03 14:19:48 +0000
  • 37ca0a95f1 consolidated stacked queries payloads - issue #1169 Bernardo Damele 2015-03-03 14:19:36 +0000
  • 849ca3da3d added a newline Bernardo Damele 2015-03-03 14:18:53 +0000
  • 3347fc25ca Fixes #1185 Miroslav Stampar 2015-03-03 15:10:06 +0100
  • 3f6c3b40dd Minor update (not overriding user given 'Accept-Encoding' header value) Miroslav Stampar 2015-03-03 14:37:36 +0100
  • 8281fe48e5 bug fix: test for boundaries with high levels if the test was extended Bernardo Damele 2015-03-01 11:02:05 +0000
  • 260643241a prioritized fingerprinted DBMS to error-based and user provided one Bernardo Damele 2015-02-27 14:19:30 +0000
  • 2f08c8b666 bug fix: do not skil heuristic check if previous page (test for dynamicity) had DBMS message. Code cleanup Bernardo Damele 2015-02-27 13:57:28 +0000
  • ee11292f87 Update of doc/THANKS Miroslav Stampar 2015-02-25 10:33:54 +0100
  • 33429f443c Minor update Miroslav Stampar 2015-02-25 10:31:27 +0100
  • dde400ab8f More suitable version of 6bcc95a (suggested by user) Miroslav Stampar 2015-02-25 10:19:51 +0100
  • b74edf9664 Fixes #1175 Miroslav Stampar 2015-02-25 10:16:01 +0100
  • 6bcc95a20d Restricting evaluated code variable names to Python valid characters ([_0-9a-zA-Z]) Miroslav Stampar 2015-02-24 15:05:44 +0100
  • e35c7fbb7a Fixes #1172 Miroslav Stampar 2015-02-22 13:41:54 +0100
  • 475cc8b24b trivial code cleanup Bernardo Damele 2015-02-21 13:12:30 +0000
  • 383929c0c2 if the user forces the DBMS, then sort the tests accordingly to perform first the DBMS-specific tests, then the others Bernardo Damele 2015-02-21 13:12:03 +0000
  • d235ee375b code cleanup Bernardo Damele 2015-02-21 12:59:44 +0000
  • 8be24d3e9b minor enhancement, prefer intersect() each time DBMS values are comfronted Bernardo Damele 2015-02-21 12:59:27 +0000
  • 388c0dfd77 trivial layout fix Bernardo Damele 2015-02-21 12:57:49 +0000
  • 21c1ae427b swapped generic and MySQL-specific UNION payloads - issue #1169 Bernardo Damele 2015-02-21 12:57:28 +0000
  • ef9d4b58ae minor signature for PHP pgsql functions Bernardo Damele 2015-02-21 02:24:03 +0000
  • 52dd92748a rework some of the logic of the detection phase based on identified DBMS along the way Bernardo Damele 2015-02-21 02:23:42 +0000
  • 4f939b5719 avoid false positive message when extensive heuristic check is performed following detection of boolean blind injection detection: do only heuristic DBMS fingerprint for DBMS specific tables Bernardo Damele 2015-02-20 18:36:34 +0000
  • 4bbf168b18 Minor titles fix Bernardo Damele 2015-02-20 18:35:13 +0000
  • ab6cc271d3 Major consistency rework of error-based payloads - issue #1169 Bernardo Damele 2015-02-20 18:34:47 +0000
  • 9fed41ddc2 Major consistency rework of boolean payloads - issue #1169 Bernardo Damele 2015-02-20 18:34:23 +0000
  • 2d886011c8 Consistency in enums Bernardo Damele 2015-02-20 18:33:04 +0000
  • 1ecb921ba7 Consistency in enums Bernardo Damele 2015-02-20 18:31:47 +0000
  • 214b9360e9 Minor fix to check for inline query payloads regardless of previously identified payloads and code cleanup Bernardo Damele 2015-02-20 18:30:42 +0000
  • 3b3205c532 Minor stacked queries and time-based payloads cleanup - issue #1169 Bernardo Damele 2015-02-20 15:44:06 +0000
  • 79d4d970a5 trivial code cleanup Bernardo Damele 2015-02-20 15:42:28 +0000
  • 5b65d2e133 more consistency of boolean blind payloads - issue #1169 Bernardo Damele 2015-02-20 11:34:16 +0000
  • 201b605f9b Minor fix and consistency: do not ask to include all tests if level and risk are at the max settings already Bernardo Damele 2015-02-20 10:21:44 +0000
  • f547a776d8 consolidating blind based payloads - issue #1169 Bernardo Damele 2015-02-19 16:42:26 +0000
  • 4195f770a3 removing one unnecessary character from stacked payloads Bernardo Damele 2015-02-19 16:41:55 +0000
  • 1e9586c90b minor layout fix Bernardo Damele 2015-02-19 16:18:16 +0000
  • 6cc092b926 split payloads in different files Bernardo Damele 2015-02-18 10:13:44 +0000
  • daa8e0d8c5 minor fix Bernardo Damele 2015-02-18 10:13:28 +0000
  • 560bc7cc28 minor fixes Bernardo Damele 2015-02-18 09:51:07 +0000
  • c51ecf33f3 ported the recent MySQL time-based payload (introduced with 66c2a79397) to other techniques and conditions Bernardo Damele 2015-02-18 09:45:44 +0000
  • 1636088b75 Minor update Miroslav Stampar 2015-02-16 11:48:53 +0100
  • 32373996ee standard message Bernardo Damele 2015-02-15 20:53:40 +0000
  • e17d212c23 bug fix introduced with 863d5a6281 Bernardo Damele 2015-02-15 20:07:52 +0000
  • 84349a370a minor code cleanup Bernardo Damele 2015-02-15 19:51:07 +0000
  • 32ab52b8ca code refactoring: split boundaries and payloads XML files Bernardo Damele 2015-02-15 16:31:35 +0000
  • 863d5a6281 --test-filter now ignores values of --risk and --level Bernardo Damele 2015-02-15 16:28:37 +0000
  • 2e5c11e427 Closes #1163 Miroslav Stampar 2015-02-13 10:59:03 +0100
  • b1d13d1e7d Patch for an Issue #1158 Miroslav Stampar 2015-02-06 09:05:41 +0100
  • 247384858e Patch for an Issue #1159 (undo commit with single-quotes problem on windows) Miroslav Stampar 2015-02-04 16:21:21 +0100
  • 38011743bb Patch for an Issue #1157 Miroslav Stampar 2015-02-04 15:01:03 +0100
  • 66c2a79397 added a time-based payload for MySQL when the simpler AND SLEEP(X) does not work Bernardo Damele 2015-02-03 15:14:41 +0000
  • eecc0b924b Patch for an Issue #1148 Miroslav Stampar 2015-02-03 10:06:00 +0100
  • 2af2aef43e Minor patch for masking sensitive information (when formation -u=... is used) Miroslav Stampar 2015-02-03 09:48:05 +0100
  • 59f0da369d Patch for a bug reported via ML (Accept header ignored in --headers) Miroslav Stampar 2015-02-02 22:07:16 +0100
  • 8b135e45bd Patch for an Issue #1147 Miroslav Stampar 2015-02-02 22:05:31 +0100
  • bf1c08a8a6 Bug fix Miroslav Stampar 2015-01-30 22:43:40 +0100
  • 2e9bf47703 Heuristic check for WAF/IDS/IPS is now prone to tamper functions (Issue #1145) Miroslav Stampar 2015-01-30 22:12:35 +0100
  • 9e90e357cf Patch for an Issue #1146 Miroslav Stampar 2015-01-30 21:59:03 +0100
  • 9563e429d3 Removal of fun code Miroslav Stampar 2015-01-30 21:49:22 +0100
  • 9f679a952f Minor update Miroslav Stampar 2015-01-29 10:44:36 +0100
  • 024c500d8e Minor fix Miroslav Stampar 2015-01-28 00:54:39 +0100
  • 5400bb2c95 Patch for an Issue #1142 Miroslav Stampar 2015-01-28 00:52:40 +0100
  • fd632e5ada Update for unhandled exception mechanism (BADA) Miroslav Stampar 2015-01-26 09:09:38 +0100
  • eb548959b3 Minor update Miroslav Stampar 2015-01-26 08:59:10 +0100
  • f0eac38ab4 Minor fix Miroslav Stampar 2015-01-26 08:48:37 +0100
  • ae95fd91c2 Implementation for an Issue #1135 Miroslav Stampar 2015-01-24 23:49:33 +0100
  • 32bf2dbe6d Patch for an Issue #1133 Miroslav Stampar 2015-01-23 23:00:28 +0100
  • 779db7cbc3 Minor enhancement Miroslav Stampar 2015-01-22 09:17:45 +0100
  • b7cfaa6ca5 Minor style update Miroslav Stampar 2015-01-22 08:55:37 +0100
  • 2655b078d0 Patch for an Issue #1127 Miroslav Stampar 2015-01-22 08:52:15 +0100
  • 02b3eb941f Patch for an Issue #1124 Miroslav Stampar 2015-01-21 09:26:30 +0100
  • cd743ab098 Minor update Miroslav Stampar 2015-01-21 09:12:12 +0100
  • 9f4a32ca2b Automatically checking for sitemap existence in case of --crawl Miroslav Stampar 2015-01-20 10:03:35 +0100
  • a603002acd Adding a choice to automatically turn on --identify-waf if protection has been detected Miroslav Stampar 2015-01-20 09:38:18 +0100
  • a66b0c91bb Patch for an Issue #1120 Miroslav Stampar 2015-01-19 09:19:30 +0100
  • 393659ffbf Patch for an Issue #1121 Miroslav Stampar 2015-01-19 09:17:16 +0100
  • e73ac6c8e3 Minor patch on request of an user Miroslav Stampar 2015-01-17 21:47:57 +0100
  • c2b2ccd2b5 Minor bug fix Miroslav Stampar 2015-01-17 17:31:00 +0100
  • da737d23ed Fixing a leftover for #1117 Miroslav Stampar 2015-01-15 17:34:14 +0100
  • 20a9d94f56 Patch for an Issue #1117 Miroslav Stampar 2015-01-15 17:32:07 +0100
  • 1dd2b7aceb Important fix for dumping location of databases/tables with international letters Miroslav Stampar 2015-01-15 14:01:19 +0100
  • ccbe424e23 Patch for an Issue #1115 Miroslav Stampar 2015-01-15 12:42:32 +0100