jaweesh
|
60466a4597
|
added Umbraco cms identification from their zip file
|
2020-03-02 14:29:24 +04:00 |
|
g0tmi1k
|
ef320ecb7e
|
Merge pull request #394 from reydc/master
Update graphql.txt
Source:
- https://blog.doyensec.com/2018/05/17/graphql-security-overview.html
- https://medium.com/@localh0t/discovering-graphql-endpoints-and-sqli-vulnerabilities-5d39f26cea2e
|
2020-02-23 12:16:19 -08:00 |
|
reydc
|
1fb8561d9c
|
Update graphql.txt
|
2020-02-23 10:20:31 -03:00 |
|
g0tmi1k
|
af0d03fd59
|
Merge pull request #391 from kazkansouh/cirt-refresh
CIRT Credentials: refreshed and fixed couple issues
|
2020-02-15 10:01:00 +00:00 |
|
Karim Kanso
|
0080212eb5
|
refreshed and fixed couple issues with cirt credentials
|
2020-02-15 09:46:06 +00:00 |
|
g0tmi1k
|
709d6ebeb5
|
Merge pull request #388 from Lavaei/master
Add innerHTML as dangerous input in Angular 2+
|
2020-02-13 14:47:41 +00:00 |
|
ipentest
|
b2cf6971c9
|
Add ipentest to contributors
|
2020-02-12 11:46:44 -05:00 |
|
Mostafa Lavaei
|
92fb303ba0
|
Update Angular dangerous functions
|
2020-01-31 17:27:18 +03:30 |
|
Mostafa Lavaei
|
d6c7306f44
|
Update Angular dangerous functions
|
2020-01-31 17:26:08 +03:30 |
|
g0tmi1k
|
916d54df11
|
Merge pull request #385 from righettod/master
Detect reverse proxy inconsistencies
Source: https://www.acunetix.com/blog/articles/a-fresh-look-on-reverse-proxy-related-attacks/
|
2020-01-22 10:33:44 +00:00 |
|
Dominique RIGHETTO
|
cb37e5b03d
|
Create reverse-proxy-inconsistencies.txt
|
2020-01-22 09:03:34 +01:00 |
|
g0tmi1k
|
e0ca853d5e
|
Update CONTRIBUTORS.md
2020.1
|
2020-01-16 09:50:04 +00:00 |
|
g0tmi1k
|
31462bdee3
|
Merge pull request #382 from righettod/master
Add entries from a blog about content discovery in API
Source: https://blog.jonlu.ca/posts/experiments-and-growth-hacking
|
2020-01-03 15:26:16 +00:00 |
|
Dominique RIGHETTO
|
44b3fdedf2
|
Add entries from a blog about content discovery in API
Blog url: https://blog.jonlu.ca/posts/experiments-and-growth-hacking
|
2020-01-03 16:22:45 +01:00 |
|
g0tmi1k
|
7f7101d662
|
Merge pull request #380 from righettod/master
Add an entry from the Portswigger WebAcademy about access control
Source: https://portswigger.net/web-security/access-control/lab-unprotected-admin-functionality
|
2020-01-01 14:25:25 +00:00 |
|
Dominique RIGHETTO
|
f7314e9c34
|
Add entry from Portswigger WebAcademy
Entry found in labs from https://portswigger.net/web-security/access-control
|
2019-12-29 11:50:12 +01:00 |
|
g0tmi1k
|
bf961f205a
|
Merge pull request #379 from g0tmi1k/misc
Misc
|
2019-12-02 22:02:42 +00:00 |
|
g0t mi1k
|
9428544c6f
|
Add author table
|
2019-12-02 22:01:59 +00:00 |
|
g0t mi1k
|
73cd7d6577
|
Add creds for web-shells
|
2019-12-02 21:58:53 +00:00 |
|
g0tmi1k
|
376a5de32a
|
Merge pull request #378 from dejanzelic/master
Added wordpress plugin shell by leonjza
Source: https://github.com/leonjza/wordpress-shell/blob/master/shell.php
|
2019-12-02 21:52:51 +00:00 |
|
Dejan Zelic
|
ec75402c12
|
Added wordpress plugin shell by leonjza
|
2019-12-02 14:49:17 -07:00 |
|
g0tmi1k
|
152c4a2a91
|
Merge pull request #374 from s7x/master
Added the entire XSS Cheat Sheet of PortSwigger, their HTML events and tags. Added keyhacks by streaak.
Keyhacks:
https://github.com/streaak/keyhacks
Portswigger XSS Cheat Sheet:
https://portswigger.net/web-security/cross-site-scripting/cheat-sheet
|
2019-11-25 09:20:00 +00:00 |
|
S7X Deckard Case
|
9059518579
|
Added keyhacks by streaak.
|
2019-11-18 10:41:05 +01:00 |
|
S7X Deckard Case
|
b8e87ad36c
|
Added the entire XSS Cheat Sheet of PortSwigger, their HTML events and tags.
|
2019-11-18 09:33:26 +01:00 |
|
g0tmi1k
|
d455890b37
|
Merge pull request #373 from xrobhal/patch-1
Create CommonAdminBase64.txt
Source: https://github.com/danielmiessler/SecLists/blob/master/Usernames/top-usernames-shortlist.txt
|
2019-11-13 11:52:38 +00:00 |
|
xrobhal
|
e53542ccb9
|
Update CommonAdminBase64.txt
|
2019-11-13 09:52:12 +00:00 |
|
xrobhal
|
563b995df0
|
Create CommonAdminBase64.txt
Common administrator usernames encoded into ASCII Base64 strings.
|
2019-11-11 23:01:14 +00:00 |
|
g0tmi1k
|
54ff1ef18a
|
Merge pull request #372 from camas/fixlines
Remove extra newline
|
2019-11-10 21:49:55 +00:00 |
|
Camas
|
eb2cd4518a
|
Remove extra newline
|
2019-11-08 23:32:46 +00:00 |
|
g0tmi1k
|
2e4fc74c39
|
Merge pull request #371 from camas/fixlines
Fix line endings
|
2019-11-08 19:38:20 +00:00 |
|
Camas
|
a7184dd1f7
|
Fix line endings
|
2019-11-08 15:09:15 +00:00 |
|
g0tmi1k
|
0783efa7fd
|
Merge pull request #370 from ricardojba/patch-1
Hidden SNMP community in Cisco SG220 series
Source: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
2019.4
|
2019-11-08 14:40:19 +00:00 |
|
Ricardo
|
5bdfce1568
|
Hidden SNMP community in Cisco SG220 series
Reference: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
|
2019-11-08 10:39:12 +00:00 |
|
g0tmi1k
|
6d1783b613
|
Merge pull request #369 from parthmalhotra/patch-1
Create 1-4_all_letters_a-z.txt
|
2019-11-08 07:09:02 +00:00 |
|
g0tmi1k
|
461a11a7f2
|
Merge pull request #368 from bkimminich/master
Add list of dangerous Angular/AngularJS functions
Source: https://angular.io/guide/security
|
2019-11-07 22:44:24 +00:00 |
|
Parth Malhotra
|
01b280755c
|
Create 1-4_all_letters_a-z.txt
|
2019-11-07 21:50:55 +05:30 |
|
Björn Kimminich
|
c3fe5c5dda
|
Add list of dangerous Angular/AngularJS functions
(for #367)
|
2019-11-07 17:08:37 +01:00 |
|
g0tmi1k
|
a627b78566
|
Update README.md
|
2019-11-03 11:04:57 +00:00 |
|
g0tmi1k
|
5da5dacb23
|
Merge pull request #366 from davidegirardi/master
Add CICS transaction list
Source: https://www.ibm.com/support/knowledgecenter/SSGMCP_5.4.0/reference/transactions/dfha726.html
|
2019-11-03 11:03:51 +00:00 |
|
davidegirardi
|
78190b79a6
|
Add CICS transaction list
|
2019-11-03 11:50:45 +01:00 |
|
g0tmi1k
|
af721716c1
|
Merge pull request #365 from wasamasa/fix-jsp-web-shell
Fix JSP webshell syntax errors
|
2019-10-22 22:01:27 +01:00 |
|
Vasilij Schneidermann
|
8dfac3774b
|
Fix syntax errors
|
2019-10-22 20:27:12 +02:00 |
|
g0tmi1k
|
93e2c5b064
|
Merge pull request #364 from righettod/master
Add local ports for local services discovery
|
2019-10-21 16:53:24 +01:00 |
|
Dominique RIGHETTO
|
9f94cae21b
|
Add local ports for scan
|
2019-10-21 17:49:56 +02:00 |
|
g0tmi1k
|
6b405ea8d8
|
Merge pull request #363 from oh6hay/master
51k random creds obtained by running Heralding for two weeks in Sep/2019
|
2019-10-21 10:23:05 +01:00 |
|
osku
|
a7b446ce8c
|
51k random creds obtained by running Heralding for two weeks in Sep/2019
|
2019-10-20 17:02:07 +03:00 |
|
g0tmi1k
|
97ea172c1e
|
Merge pull request #362 from tkisason/patch-3
adds jolokia
Source: https://jolokia.org
|
2019-10-13 22:19:08 +01:00 |
|
Tonimir Kisasondi
|
b472dfc528
|
added jolokia
See https://jolokia.org/
Gets exposed in combination with springboot.
|
2019-10-13 22:04:35 +02:00 |
|
g0tmi1k
|
b8a8cc5a44
|
Merge pull request #361 from righettod/master
Add dictionary for GraphQL
Source: https://graphql.org/
|
2019-10-11 17:19:21 +01:00 |
|
Dominique RIGHETTO
|
5c917b1cba
|
Add dictionary for GraphQL
Help to detect GraphQL endpoint
|
2019-10-11 17:19:05 +02:00 |
|