401 Commits

Author SHA1 Message Date
Dominique RIGHETTO
5c5c2815f2
Cleanup 2021-10-05 18:41:44 +02:00
Dominique RIGHETTO
f009b45892
Add new endpoints 2021-10-05 18:40:57 +02:00
cbk914
f01e9aae74
Update spring-boot.txt 2021-09-07 05:44:45 +02:00
cbk914
1719a6af3d
Update spring-boot.txt 2021-09-06 10:45:38 +02:00
cbk914
d35d281521 Updated Spring paths 2021-09-06 10:39:10 +02:00
PinkDev1
0bcb01ad6a
Sorted and removed duplicates 2021-09-02 19:25:40 +00:00
PinkDev1
e737a0f96b
Added officially recognized OpenID scopes
from https://openid.net/specs/openid-connect-core-1_0.html#ScopeClaims
2021-09-02 19:24:57 +00:00
PinkDev1
e1c0693292
Added dropbox-app oauth scopes
Scraped internally
2021-09-02 19:21:48 +00:00
PinkDev1
30b2c22d24
Removed scopes with nonces/temporary identifiers
I left `delete-after-date1619708000534-admin` because it seems to have a UNIX timestamp, so it *might* be useful.
2021-09-02 19:03:43 +00:00
PinkDev1
bb991ad09a
Sorted and removed duplicates from oauth-oidc-scopes.txt 2021-09-02 19:00:44 +00:00
PinkDev1
647366b113
Added 155 scopes to oauth-oidc-scopes.txt
All of these were manually gathered from:
- https://developers.google.com/identity/protocols/oauth2/scopes
- https://docs.github.com/en/developers/apps/building-oauth-apps/scopes-for-oauth-apps
- https://api.slack.com/legacy/oauth-scopes
- https://dev.fitbit.com/build/reference/web-api/oauth2/#scope
2021-09-02 18:59:51 +00:00
g0tmi1k
cb81804316
Merge pull request #647 from g0tmi1k/spaces
dos2unix
2021-08-28 21:36:19 +01:00
g0tmi1k
44523e27a8
Merge pull request #644 from han0x7300/issues-642
add "___graphql" to "Discovery/Web-Content/graphql.txt

https://www.gatsbyjs.com/docs/reference/graphql-data-layer/graphql-api/
https://www.gatsbyjs.com/docs/tutorial/part-4/
2021-08-28 21:31:10 +01:00
g0t mi1k
545e57b02d dos2unix 2021-08-28 21:29:32 +01:00
g0t mi1k
efeb38808c Replace ' ' with ' ' (Empty Characters) 2021-08-28 21:05:13 +01:00
han0x7300
ecd9da9dc2 add ___graphql to Discovery/Web-Content/graphql.txt,https://github.com/danielmiessler/SecLists/issues/642 2021-08-28 11:44:02 +08:00
g0tmi1k
e017d54a22
Merge pull request #643 from 5tr1x/patch-1
Create aem2.txt
2021-08-27 21:17:43 +01:00
g0tmi1k
656105853a
Merge pull request #592 from afaq1337/patch-1
Update all.txt
2021-08-27 21:17:26 +01:00
g0tmi1k
60fbd42063
Merge pull request #622 from realArcherL/patch-2
A very new naming scheme for Graphql endpoints
2021-08-27 21:15:39 +01:00
g0tmi1k
b4637896ef
Merge pull request #623 from righettod/feature_add_oauth2-odic_endpoints
Add missing OAUTH2/OIDC endpoints.

Source: https://righettod.eu.auth0.com/.well-known/openid-configuration
2021-08-27 21:15:07 +01:00
g0tmi1k
177f25ba69
Merge pull request #625 from cbk914/master
Some additions

Source: http://www.whatsmypass.com/the-top-500-worst-passwords-of-all-time
2021-08-27 21:14:37 +01:00
g0tmi1k
01f7723ddd
Merge pull request #626 from 7PH/master
Add waybackverify.txt filename to raft medium and large lists
2021-08-27 21:13:55 +01:00
g0tmi1k
eea747817d
Merge pull request #628 from Anon-Exploiter/patch-1
Added ga-google-analytics in wp-plugins.txt

Source https://wordpress.org/plugins/ga-google-analytics/
2021-08-27 21:12:25 +01:00
g0tmi1k
4002c2c970
Merge pull request #630 from whitehauler/patch-1
Update raft-large-files.txt
2021-08-27 21:12:01 +01:00
g0tmi1k
d8294e9763
Merge pull request #629 from righettod/feature_add_oauth-oidc_scopes_dict
Add a dict with OAUTH2/OIDC scopes.
2021-08-27 21:00:07 +01:00
5tr1x
a45a11ecca
Create aem2.txt 2021-08-25 15:22:35 -05:00
mxrch
11eee99996
adding "dismiss" to big.txt 2021-08-22 22:54:33 +02:00
Crypt-Con
7599d80112
Update nginx.txt 2021-07-31 10:28:09 +05:30
Afaq
0e6d80b6d9
added a critical endpoint
added a critical endpoint which contains critical DB information.
2021-07-27 17:39:44 +05:00
Dominique RIGHETTO
388cac333b
Merge all versions of the file 2021-07-17 19:28:42 +02:00
Dominique RIGHETTO
48cc424388
Add files via upload 2021-07-17 19:23:28 +02:00
Dominique RIGHETTO
8572bd91ad
Update oauth-oidc-scopes.txt 2021-07-17 08:12:51 +02:00
Dominique RIGHETTO
ea3268e688
Add a dict with OAUTH/OIDC scopes.
See PR to extended description.
2021-07-16 14:33:26 +02:00
Syed Umar Arfeen
da169ef5d0
Added ga-google-analytics in wp-plugins.txt
From: https://wordpress.org/plugins/ga-google-analytics/

```
Plugin Name: GA Google Analytics
Plugin URI: https://perishablepress.com/google-analytics-plugin/
Description: Adds your Google Analytics Tracking Code to your WordPress site.
Tags: analytics, ga, google, google analytics, tracking, statistics, stats
Author: Jeff Starr
Author URI: https://plugin-planet.com/
Donate link: https://monzillamedia.com/donate.html
Contributors: specialk
Requires at least: 4.1
Tested up to: 5.3
Stable tag: 20191109
Version: 20191109
Requires PHP: 5.6.20
Text Domain: ga-google-analytics
Domain Path: /languages
License: GPL v2 or later
```
2021-07-16 16:38:36 +05:00
7PH
43cbe32e24 Add waybackverify.txt filename to raft medium and large lists 2021-07-13 13:09:49 +02:00
Dominique RIGHETTO
2c97b1bea1
Add missing OAUTH2/OIDC endpoints
See https://righettod.eu.auth0.com/.well-known/openid-configuration
2021-07-05 14:17:15 +02:00
cbk914
9a871facf1
Merge branch 'danielmiessler:master' into master 2021-06-26 23:06:55 +02:00
realArcherL
852b6e45f1
A very new naming scheme
I have noticed a new naming convention surge in companies, having Graphql API endpoint as `example.com/je/graphql`. This is something I encountered while doing BBs on HackerOne.
2021-06-22 12:26:49 +05:30
g0tmi1k
03b4d2c22c
Merge pull request #619 from krvaibhaw/master
Update http-request-headers-fields-large.txt
2021-06-13 00:00:00 +01:00
g0tmi1k
034041bb6b
Merge pull request #615 from righettod/feature_add_shibboleth-sso
Add Shibboleth.sso Metadata endpoint

https://wiki.shibboleth.net/confluence/display/CONCEPT/MetadataForSP
2021-06-12 19:16:16 +01:00
Vaibhaw
6c1044b617 Merge branch 'danielmiessler:master' into master 2021-06-10 15:35:56 +05:30
Vaibhaw
4bd0b23411
Update wordpress.fuzz.txt 2021-06-10 15:12:47 +05:30
Vaibhaw
ed37faca0b
Update wordpress.fuzz.txt 2021-06-10 15:11:27 +05:30
cbk914
cd20324f79 Merge branch 'danielmiessler:master' into master 2021-06-09 13:09:19 +02:00
Dominique RIGHETTO
3eeb4e5292
Add Shibboleth.sso Metadata endpoint
Source: https://wiki.shibboleth.net/confluence/display/CONCEPT/MetadataForSP
2021-06-07 15:43:03 +02:00
Dominique RIGHETTO
864faed87f
Add "oauth/token/info" endpoint
See https://docs.gitlab.com/ee/api/oauth2.html#retrieving-the-token-information
2021-05-28 15:44:59 +02:00
Dominique RIGHETTO
56e23b6436
Add openid endpoints and metadata
See https://connect2id.com/products/server/docs/api
2021-05-28 15:20:54 +02:00
Dominique RIGHETTO
0e471e3faf
Add oauth endpoints
See https://auth0.com/docs/protocols/protocol-oauth2#endpoints
2021-05-28 15:11:32 +02:00
g0tmi1k
664dd4c648
Merge pull request #603 from shelld3v/patch-9
More endpoints from Assetnote wordlist

https://wordlists-cdn.assetnote.io/data/automated/httparchive_apiroutes_2021_04_28.txt
2021-05-25 17:44:52 +01:00
g0tmi1k
8c35abaa4c
Merge pull request #599 from drwetter/patch-5
Add balancer for apache

https://httpd.apache.org/docs/2.4/howto/reverse_proxy.html
2021-05-25 17:36:38 +01:00