Commit Graph

  • fdbd8bfe37 initial support for PostgreSQL 9.0 - #223 Bernardo Damele 2011-04-11 22:02:00 +00:00
  • f4745a95ea Possible fix for bug reported by David Bernardo Damele 2011-04-11 21:45:25 +00:00
  • 136e85abf3 little refresh of PHPIDS rules for --check-payload Miroslav Stampar 2011-04-11 15:37:49 +00:00
  • 0ae74f27e4 avoiding annoying "payload 'None' possibly..." in case where payload is not specified Miroslav Stampar 2011-04-11 15:24:52 +00:00
  • 941daa1645 just in case to prevent "object of type 'NoneType' has no len()" error reports Miroslav Stampar 2011-04-11 11:59:02 +00:00
  • 2db2e9b6a2 now GET forms are also prone to "do you want to fill with random values" Miroslav Stampar 2011-04-11 11:38:41 +00:00
  • 08d14886fd added new dev version string Miroslav Stampar 2011-04-11 09:44:44 +00:00
  • e20848c711 first commit toward v1.0 (it's smarter to start testing for pivot point from shorter column names as they tend to be some kind of identifiers) Miroslav Stampar 2011-04-11 09:40:52 +00:00
  • 30377621b8 slight update Bernardo Damele 2011-04-11 00:33:42 +00:00
  • 07d6b18c4e cutting for 0.9 stable 0.9 Bernardo Damele 2011-04-11 00:24:51 +00:00
  • 2f8ddd156c done with the manual Bernardo Damele 2011-04-11 00:23:47 +00:00
  • ea3ebafba1 Removed outdated sentence Bernardo Damele 2011-04-10 23:59:49 +00:00
  • 75f286cf6d minor update conformant to http://dev.mysql.com/doc/refman/4.1/en/comments.html Miroslav Stampar 2011-04-10 23:41:00 +00:00
  • 3177c6023d lol. re-revert Miroslav Stampar 2011-04-10 23:30:56 +00:00
  • 572708f184 More version adjustment Bernardo Damele 2011-04-10 23:28:24 +00:00
  • 9ea4010508 Leave it as is :) Bernardo Damele 2011-04-10 23:20:35 +00:00
  • 3e680978a9 revert of that last commit (waiting for some better days) Miroslav Stampar 2011-04-10 23:18:38 +00:00
  • f532478a34 update of MySQL comments Miroslav Stampar 2011-04-10 23:08:18 +00:00
  • 8597409d9e lowering the value Miroslav Stampar 2011-04-10 22:57:17 +00:00
  • 14219a3dac Minor bug fix Bernardo Damele 2011-04-10 22:44:08 +00:00
  • 6012ab1c46 better one for previous commit Miroslav Stampar 2011-04-10 21:52:08 +00:00
  • af096b2c83 Leave it as is!!! Bernardo Damele 2011-04-10 21:47:23 +00:00
  • e6c50df4f9 preventing case duplicates for --common-tables (as some DBMSes have case sensitive table names we can't just use them all with the same case) Miroslav Stampar 2011-04-10 21:38:08 +00:00
  • d0cef21d9c fix Miroslav Stampar 2011-04-10 21:19:34 +00:00
  • 940c225d7c few fixes Miroslav Stampar 2011-04-10 20:53:27 +00:00
  • d324704844 Removed unused code Bernardo Damele 2011-04-10 20:39:15 +00:00
  • 9840a0491d more doc updates Bernardo Damele 2011-04-10 20:31:29 +00:00
  • fbf8e7f32d Minor bug fix to --file-read Bernardo Damele 2011-04-10 19:53:42 +00:00
  • decab6642d fix for that @chunk bug Miroslav Stampar 2011-04-10 16:46:33 +00:00
  • 7dd5bd9d59 Minor fix for --cleanup on MSSQL Bernardo Damele 2011-04-10 13:48:29 +00:00
  • 6d165861c8 Minor version increase Bernardo Damele 2011-04-10 13:30:27 +00:00
  • fe16360acb more doc updates Bernardo Damele 2011-04-10 13:28:14 +00:00
  • 723a7447b2 minor refactoring Miroslav Stampar 2011-04-10 07:16:19 +00:00
  • c714ac6421 added support for handling binary data values (no more garbish chars) Miroslav Stampar 2011-04-09 23:13:16 +00:00
  • 4ad73f9263 added two new valuable functions for dealing with binary data (e.g. binary representations of password hashes) and some cosmetics Miroslav Stampar 2011-04-09 22:39:03 +00:00
  • 277f16d6b3 removing commented out debug print Miroslav Stampar 2011-04-08 22:44:05 +00:00
  • c4c40308c6 no more annoying "no metasploit found" for case when msfpath provided with root directory of Metasploit (not the bin one) Miroslav Stampar 2011-04-08 22:42:07 +00:00
  • 83feb097ef greater flexibility for --batch when default is None Miroslav Stampar 2011-04-08 22:29:50 +00:00
  • 6fa2fd139c implemented support for __pivotDumpTable on MSSQL as normal tables tend to not play well with normal TOP 1 ..NOT IN..ORDER BY mechanism if the argument for ORDER BY is not the unique one (returns only number of rows equal to the number of distinct values for that field) Miroslav Stampar 2011-04-08 15:17:57 +00:00
  • beb98140b3 Minor improvement to --check-payload Bernardo Damele 2011-04-08 14:34:00 +00:00
  • d5fb1378cc Gone unnoticed for way too long Bernardo Damele 2011-04-08 11:15:19 +00:00
  • 228cc68747 fix for those ugly DEBUG messages in brute mode Miroslav Stampar 2011-04-08 11:02:21 +00:00
  • 5b21352656 cosmeticados ;) Bernardo Damele 2011-04-08 10:39:07 +00:00
  • 64fcc88be5 typo Bernardo Damele 2011-04-08 10:26:03 +00:00
  • 1be7f859c6 Minor updates Bernardo Damele 2011-04-08 10:25:37 +00:00
  • bcc4c52cf7 minor update Miroslav Stampar 2011-04-08 10:21:45 +00:00
  • 159789ba81 More user's manual updates Bernardo Damele 2011-04-08 10:20:42 +00:00
  • d305183447 More updates to user's manual Bernardo Damele 2011-04-08 09:50:34 +00:00
  • be11e2535e one more minor update Miroslav Stampar 2011-04-08 00:05:44 +00:00
  • 3435d549a9 minor update regarding the last commit Miroslav Stampar 2011-04-07 23:35:51 +00:00
  • 726155383d higher compatibility with MSSQL 2000 ("ORDER BY items must appear in the select list if the statement contains a UNION operator.") as we always take the first field from the list as the one for referencing (field = expressionFieldsList[0]) Miroslav Stampar 2011-04-07 23:32:07 +00:00
  • e8259a7665 minor update (now --dump also supports only -D parameter) Miroslav Stampar 2011-04-07 22:38:13 +00:00
  • bac53eeef1 Allow --dump-all to accept -D switch in order to dump all tables' entries for only one (or more, comma-separated) specified database(s) Bernardo Damele 2011-04-07 22:08:10 +00:00
  • b288e5ef57 implemented DNS caching mechanism Miroslav Stampar 2011-04-07 21:39:18 +00:00
  • ae4ea0af45 fix for a bug reported by m4l1c3 (AttributeError: 'NoneType' object has no attribute 'replace') Miroslav Stampar 2011-04-07 13:57:07 +00:00
  • 02eeeccd33 Added UNION query SQL injection tests also with a random number for columns (not only NULL) Bernardo Damele 2011-04-07 13:39:36 +00:00
  • 6a8a5db9aa minor code restyling Miroslav Stampar 2011-04-07 13:27:29 +00:00
  • e33a48d40f minor refactoring Miroslav Stampar 2011-04-07 12:54:30 +00:00
  • c6b9d89d31 Accept [RANDNUM] as <char> in payloads.xml and handle it accordingly Bernardo Damele 2011-04-07 11:10:35 +00:00
  • ca009e9fe2 minor update Miroslav Stampar 2011-04-07 10:43:19 +00:00
  • 672abc27fd minor adjustment of livetests for new flavor of --technique Miroslav Stampar 2011-04-07 10:41:12 +00:00
  • 9e8c933333 cosmetics Bernardo Damele 2011-04-07 10:40:58 +00:00
  • 68828d68a5 removed integers from --technique Miroslav Stampar 2011-04-07 10:37:48 +00:00
  • fced81b6be minor update Miroslav Stampar 2011-04-07 10:32:39 +00:00
  • 845533e92f minor refactoring Miroslav Stampar 2011-04-07 10:27:22 +00:00
  • 1880f18367 Minor layout adjustments Bernardo Damele 2011-04-07 10:07:52 +00:00
  • 17844eb87c Refactoring to --technique Bernardo Damele 2011-04-07 10:00:47 +00:00
  • 287f74dbd2 update Bernardo Damele 2011-04-06 14:59:51 +00:00
  • 05d12790f1 closes #219 - unhidden switch --technique and adapted code accordingly (renamed conf.technique to conf.tech to fit properly in the -h help message) Bernardo Damele 2011-04-06 14:41:44 +00:00
  • 8b14a9eaa7 Minor code adjustments Bernardo Damele 2011-04-06 14:40:45 +00:00
  • a379463213 cosmeticado Miroslav Stampar 2011-04-06 08:40:06 +00:00
  • b327bbcd9b minor fix (it was quite ... to have this check at the later stage) Miroslav Stampar 2011-04-06 08:39:24 +00:00
  • fdef6726cf minor update Miroslav Stampar 2011-04-06 08:30:50 +00:00
  • 72555f3b28 user's manual updated.. we are getting close to 0.9 stable, stay tuned! Bernardo Damele 2011-04-06 08:21:13 +00:00
  • d436ba2da5 Minor "fix" when reading hashes from a local sqlite3 (result of --replicate) and there is an int as value Bernardo Damele 2011-04-06 08:19:56 +00:00
  • 81034140c0 Reduced number of threads to 3 when -o is provided Bernardo Damele 2011-04-06 08:15:20 +00:00
  • 265fa52600 minor code cosmetics Miroslav Stampar 2011-04-04 18:24:16 +00:00
  • 018b6b9430 fix for a charset encoding reported by Kirill Miroslav Stampar 2011-04-04 18:20:09 +00:00
  • a1bde071d8 Minor adjustments Bernardo Damele 2011-04-04 09:26:20 +00:00
  • 2c01fc56e6 minor update regarding misusage of --proxy and --ignore-proxy switches Miroslav Stampar 2011-04-04 09:19:43 +00:00
  • 3253882071 minor cosmetics on tamper scripts Miroslav Stampar 2011-04-04 08:18:26 +00:00
  • 33d987805d minor revisit of encoding tampering scripts Miroslav Stampar 2011-04-04 08:11:11 +00:00
  • e957c4400c minor revisit of tampering script(s) functionality (urlencode one is removed as it's currently obsolete regarding the whole process of automatic urlencoding) Miroslav Stampar 2011-04-04 08:04:47 +00:00
  • 305115a68b important improvement of data handling (POST data and header values) Miroslav Stampar 2011-04-03 15:02:52 +00:00
  • bbd4c128b0 minor update related to the last commit Miroslav Stampar 2011-04-01 22:19:42 +00:00
  • cd7e4f5afc improvement for lots of multiple-selection forms (now by default the first one is selected - till now it was left unchecked which lead to blank get/post data for the whole form) Miroslav Stampar 2011-04-01 22:12:24 +00:00
  • c3b54cc222 Cosmetics Bernardo Damele 2011-04-01 16:40:28 +00:00
  • e27afef6be minor update regarding --current-db on Oracle Miroslav Stampar 2011-04-01 15:56:11 +00:00
  • eb99f68a7a Minor improvement to --wizard. This does not mean I like the kiddie feature though ;) Bernardo Damele 2011-04-01 14:55:39 +00:00
  • de4e0c7346 minor update related to the problem with request files reported by jorge_a_santos@hotmail.com Miroslav Stampar 2011-04-01 12:09:11 +00:00
  • 60102209f6 quick fix for a bug reported by Kirill (AttributeError: 'NoneType' object has no attribute 'split') Miroslav Stampar 2011-04-01 11:14:24 +00:00
  • ee15988878 another minor update related to previous commit Miroslav Stampar 2011-03-31 17:34:07 +00:00
  • 156d24203f speed optimization Miroslav Stampar 2011-03-31 17:16:26 +00:00
  • 220366b6e8 minor update (ip addresses will not be confused any more for crypt_generic hashes) Miroslav Stampar 2011-03-31 16:56:26 +00:00
  • 557ed7d665 minor fix for a invalid charset reported by Kirill Miroslav Stampar 2011-03-31 14:39:01 +00:00
  • fed57282fc Added one more warning message to show what's going on with ctrl+c Bernardo Damele 2011-03-31 14:26:14 +00:00
  • 3948cd9e77 Minor layout adjustments Bernardo Damele 2011-03-31 14:13:53 +00:00
  • 60afd80460 Change of release date to unknown Bernardo Damele 2011-03-31 13:06:30 +00:00
  • c5de903eab minor improvement ("quick defense against substr fields") Miroslav Stampar 2011-03-31 09:35:09 +00:00
  • ce51326bff quick fix Miroslav Stampar 2011-03-31 08:43:17 +00:00