Adam Muntner
ac1e57d6af
Merge pull request #171 from soffensive/master
...
added new SAP paths, sorted file
2019-09-28 16:34:22 -04:00
Adam Muntner
04556e50c8
Merge pull request #170 from AddaxSoft/patch-1
...
added other common paths
2019-09-28 16:33:58 -04:00
Adam Muntner
aca3346b38
Merge pull request #167 from sempf/master
...
Removed PGSQL per Issue #2
2019-09-28 16:32:52 -04:00
Adam Muntner
fdcde8c728
Merge pull request #165 from wez3/master
...
Add full wordpress plugin list
2019-09-28 16:31:37 -04:00
Adam Muntner
a7e4a121dd
Merge pull request #163 from paste-bin/master
...
Minor additions
2019-09-28 16:31:24 -04:00
Bill Sempf
c91b254eec
Added a numeric check
2019-02-16 11:34:08 -05:00
Bill Sempf
199993fb41
Removed payloads that alter the database
...
This is the "detect" list, and it has payloads that alter the database. That's not good for a "detect" list - should be in "exploit".
2019-02-16 11:33:00 -05:00
soffensive
90acd597f6
added new SAP paths, sorted file
2018-01-24 11:14:24 +01:00
A.K
973e5a4f12
added other common paths
...
bitnami, apache, httpd on different linux flavors
2018-01-20 12:27:25 +01:00
sempf
83171d83e8
Added file to new location.
2017-10-03 23:10:44 -04:00
sempf
01f79388d3
Moved it to the right directory.
2017-10-03 23:09:05 -04:00
Bill Sempf
b81c2e3043
Rename
...
Sheesh
2017-10-03 19:48:45 -04:00
Bill Sempf
a7aa5b0b19
Create common-methods
...
This is the first one hundred method names from Todd Motto's list of public APIs that have more than one mention.
2017-10-03 19:47:57 -04:00
Bill Sempf
67fd2f1159
Removed PGSQL per Issue #2
...
I confirmed that the pg_sleep returned a null and caused a non-exploitable error, so I deleted the commands that referenced it.
2017-10-03 01:54:55 -04:00
wez3
656ecdef9d
Add wordpress plugins enum 13-07-2017. From svn.wp-plugins.org
2017-07-13 20:49:59 +02:00
Jordan Brown
cfcec0e6cb
removed new lines
2017-03-07 12:42:50 +11:00
Jordan Brown
e682447cb5
added Null representations for double encoding, format string %* and octal representations of localhost
2017-03-07 11:54:22 +11:00
Adam Muntner
ecb0850538
Strings which can be accidentally expanded into different strings if evaluated in the wrong context
...
e.g. used as a printf format string or via Perl or shell eval. Might expose sensitive data from the program doing the interpolation, or might just represent the wrong string.
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:55:38 -05:00
Adam Muntner
80772679c2
Strings which crashed iMessage in iOS versions 8.3 and earlier
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:53:07 -05:00
Adam Muntner
85f3e0bd0d
Strings which punish the fools who use cat/type on this file
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:51:19 -05:00
Adam Muntner
ccb5013d61
Innocuous strings which may be blocked by profanity filters ( https://en.wikipedia.org/wiki/Scunthorpe_problem )
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:50:05 -05:00
Adam Muntner
480f487cbf
Update invalid-filenames-microsoft.txt
2017-01-16 12:48:39 -05:00
Adam Muntner
d4dfa84417
Strings which contain unicode with an "upsidedown" effect (via http://www.upsidedowntext.com )
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:44:51 -05:00
Adam Muntner
1e797dcaf3
Strings which contain "corrupted" text. The corruption will not appear in non-HTML text, however. (via http://www.eeemo.net )
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:44:01 -05:00
Adam Muntner
330b3613f9
Strings which contain text that should be rendered RTL if possible (e.g. Arabic, Hebrew)
...
from minimaxir/big-list-of-naughty-strings/
2017-01-16 12:43:14 -05:00
Adam Muntner
0c8789bb6a
Update emoji.txt
2017-01-16 12:40:55 -05:00
Adam Muntner
7b5e1e92e8
Create regionalindicators.txt
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:40:31 -05:00
Adam Muntner
7d53ff81f5
Create README.md
2017-01-16 12:38:32 -05:00
Adam Muntner
5a5b403c1f
add unicode files
2017-01-16 12:35:19 -05:00
Adam Muntner
df5fd2e3ef
Strings which contain Emoji; should be the same behavior as two-byte characters, but not always
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:26:04 -05:00
Adam Muntner
9ddc02dcb8
Strings which consists of Japanese-style emoticons
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:22:46 -05:00
Adam Muntner
594f0894b4
Strings which contain two-byte characters: can cause rendering issues or character-length issues
...
minimaxir/big-list-of-naughty-strings
2017-01-16 12:21:34 -05:00
Adam Muntner
9deeda4647
Strings which contain misplaced quotation marks; can cause encoding errors
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:20:21 -05:00
Adam Muntner
ada2f9308f
common unicode symbols (e.g. smart quotes),Subscript/Superscript/Accents, cause rendering issues.
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:18:52 -05:00
Adam Muntner
855a9d38de
Strings which contain common special ASCII characters (may need to be escaped)
...
from minimaxir/big-list-of-naughty-string
2017-01-16 12:13:32 -05:00
Adam Muntner
374c6ad1c2
Rename crlf-notes.txt to README.md
2017-01-16 12:11:33 -05:00
Adam Muntner
2f08d13363
Strings which can be interpreted as numeric
...
from minimaxir/big-list-of-naughty-strings
2017-01-16 12:04:47 -05:00
Adam Muntner
3b0e33f5ae
Update date to 2017, add addtl license
2017-01-16 11:42:39 -05:00
Adam Muntner
fb8d7dbbc5
Update README.md
2017-01-16 11:36:46 -05:00
Adam Muntner
493cc33aa2
Update README.md
2017-01-16 11:29:57 -05:00
Adam Muntner
f5b606f0e4
Update README.md
2017-01-16 11:29:02 -05:00
Adam Muntner
e528f450fa
Update README.md
2017-01-16 11:20:36 -05:00
Adam Muntner
7767fdee50
Update README.md
2017-01-16 11:07:42 -05:00
Adam Muntner
a2a79b4236
Update README.md
2017-01-16 11:07:10 -05:00
Adam Muntner
f64b14efaf
Update README.md
2017-01-16 00:03:20 -05:00
Adam Muntner
da3d4e1fa9
Added additional likely method names
2017-01-15 23:52:10 -05:00
Adam Muntner
e25608f9fa
Merge pull request #161 from elnerd/patch-4
...
Added TRACK method to http-methods
2017-01-15 15:25:42 -05:00
Adam Muntner
abe819f21c
Merge pull request #160 from sempf/patch-1
...
Create json version of debug params
2017-01-15 15:24:01 -05:00
Adam Muntner
fa3e68b231
Merge pull request #155 from elnerd/patch-3
...
Patch 3 - added h2-h6 tags
2017-01-15 15:23:14 -05:00
Adam Muntner
715977900d
Merge pull request #159 from merttasci/patch-1
...
added 2 style context XSS attacks for LESS
2017-01-15 15:22:34 -05:00