COMMITS
/ xml/payloads.xml December 19, 2012
B
fixed title
Bernardo Damele committed
December 18, 2012
M
Implementation for an Issue #135
Miroslav Stampar committed
December 5, 2012
M
Lowering --limit for inline query technique
Miroslav Stampar committed
M
Update for an Issue #278
Miroslav Stampar committed
November 27, 2012
M
Minor bug fix (RLIKE boolean case was using wrong comparison payload)
Miroslav Stampar committed
September 26, 2012
M
Cleaning/refactoring of bunch of stacked/suffix/comment stuff (e.g.
Miroslav Stampar committed
September 17, 2012
M
M
Minor update
Miroslav Stampar committed
August 22, 2012
M
Fixing INSERT/UPDATE generic boundaries (those previous few were junkies)
Miroslav Stampar committed
August 20, 2012
M
Making payloads a bit shorter (removing redundant space after comma character - e.g. in inband queries)
Miroslav Stampar committed
August 6, 2012
M
Fix by zhouhx@knownsec.com (better LIKE boundaries)
Miroslav Stampar committed
July 26, 2012
M
Revert of a previous commit (actually missing mysql.db is a bonus in this kind of attack :)
Miroslav Stampar committed
M
Safer for provoking 'Subquery returns more than 1 row' state than potentially missing mysql.db
Miroslav Stampar committed
M
Style update
Miroslav Stampar committed
M
Implementation of payloads for Issue #122
Miroslav Stampar committed
July 20, 2012
B
fixes issue #97
Bernardo Damele committed
July 17, 2012
B
more on issue #97
Bernardo Damele committed
B
added payloads for ORDER BY/GROUP BY time-based injections - issue #97
Bernardo Damele committed
B
Initial commit for issue #97
Bernardo Damele committed
June 11, 2012
M
minor refactoring
Miroslav Stampar committed
May 22, 2012
May 21, 2012
M
adding revisited wildcard LIKE payloads
Miroslav Stampar committed
M
reverting last changes on boundaries
Miroslav Stampar committed
M
adding a new payload boundaries by smcintyre@securestate.com
Miroslav Stampar committed
May 9, 2012
April 25, 2012
M
April 23, 2012
B
increased UNION test ranges
Bernardo Damele committed
April 13, 2012
M
new payload
Miroslav Stampar committed
April 4, 2012
B
switch two conditional payloads for proper detection
Bernardo Damele committed
B
minor revert
Bernardo Damele committed
April 3, 2012
B
improved detection for INSERT and UPDATE statements
Bernardo Damele committed
March 30, 2012
B
March 29, 2012
M
improvement toward proper implementation of OR-based injection by usage of "negative logic" mechanism
Miroslav Stampar committed
March 15, 2012
March 1, 2012
M
Oracle's XMLType doesn't like '#' char too
Miroslav Stampar committed
January 10, 2012
M
minor concision/beautification update
Miroslav Stampar committed
December 1, 2011
M
minor update (removing reference to Microsoft Access for Generic payload)
Miroslav Stampar committed
November 23, 2011
November 22, 2011
M
reverting back last two commits
Miroslav Stampar committed
M
even better (added long before plugins table)
Miroslav Stampar committed
November 12, 2011
M
adding AGAINST full-text search boundaries
Miroslav Stampar committed
October 28, 2011
M
adding INSERT/UPDATE generic boundaries
Miroslav Stampar committed
August 31, 2011
August 24, 2011
M
adding support for pre-WHERE injections
Miroslav Stampar committed
August 3, 2011
M
minor beautification
Miroslav Stampar committed
July 24, 2011
B
Minor adjustments
Bernardo Damele committed