959 Commits

Author SHA1 Message Date
g0tmi1k
0783efa7fd
Merge pull request #370 from ricardojba/patch-1
Hidden SNMP community in Cisco SG220 series

Source: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
2019.4
2019-11-08 14:40:19 +00:00
Ricardo
5bdfce1568
Hidden SNMP community in Cisco SG220 series
Reference: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
2019-11-08 10:39:12 +00:00
g0tmi1k
6d1783b613
Merge pull request #369 from parthmalhotra/patch-1
Create 1-4_all_letters_a-z.txt
2019-11-08 07:09:02 +00:00
g0tmi1k
461a11a7f2
Merge pull request #368 from bkimminich/master
Add list of dangerous Angular/AngularJS functions

Source: https://angular.io/guide/security
2019-11-07 22:44:24 +00:00
Parth Malhotra
01b280755c
Create 1-4_all_letters_a-z.txt 2019-11-07 21:50:55 +05:30
Björn Kimminich
c3fe5c5dda
Add list of dangerous Angular/AngularJS functions
(for #367)
2019-11-07 17:08:37 +01:00
g0tmi1k
a627b78566
Update README.md 2019-11-03 11:04:57 +00:00
g0tmi1k
5da5dacb23
Merge pull request #366 from davidegirardi/master
Add CICS transaction list

Source: https://www.ibm.com/support/knowledgecenter/SSGMCP_5.4.0/reference/transactions/dfha726.html
2019-11-03 11:03:51 +00:00
davidegirardi
78190b79a6 Add CICS transaction list 2019-11-03 11:50:45 +01:00
g0tmi1k
af721716c1
Merge pull request #365 from wasamasa/fix-jsp-web-shell
Fix JSP webshell syntax errors
2019-10-22 22:01:27 +01:00
Vasilij Schneidermann
8dfac3774b Fix syntax errors 2019-10-22 20:27:12 +02:00
g0tmi1k
93e2c5b064
Merge pull request #364 from righettod/master
Add local ports for local services discovery
2019-10-21 16:53:24 +01:00
Dominique RIGHETTO
9f94cae21b
Add local ports for scan 2019-10-21 17:49:56 +02:00
g0tmi1k
6b405ea8d8
Merge pull request #363 from oh6hay/master
51k random creds obtained by running Heralding for two weeks in Sep/2019
2019-10-21 10:23:05 +01:00
osku
a7b446ce8c 51k random creds obtained by running Heralding for two weeks in Sep/2019 2019-10-20 17:02:07 +03:00
g0tmi1k
97ea172c1e
Merge pull request #362 from tkisason/patch-3
adds jolokia

Source: https://jolokia.org
2019-10-13 22:19:08 +01:00
Tonimir Kisasondi
b472dfc528
added jolokia
See https://jolokia.org/

Gets exposed in combination with springboot.
2019-10-13 22:04:35 +02:00
g0tmi1k
b8a8cc5a44
Merge pull request #361 from righettod/master
Add dictionary for GraphQL

Source: https://graphql.org/
2019-10-11 17:19:21 +01:00
Dominique RIGHETTO
5c917b1cba
Add dictionary for GraphQL
Help to detect GraphQL endpoint
2019-10-11 17:19:05 +02:00
g0tmi1k
06d29fa2b0
Merge pull request #360 from righettod/master
Add VIM and NANO backup file
2019-10-11 15:59:03 +01:00
Dominique RIGHETTO
b93f54f4fb
Add VIM and NANO backup file 2019-10-11 15:55:38 +02:00
g0tmi1k
6fae58fa9b
Merge pull request #357 from govolution/patch-3
Update ssh-betterdefaultpasslist.txt

https://github.com/SamuraiWTF/samuraiwtf
http://docs.graylog.org/en/2.4/pages/installation/virtual_machine_appliances.html
https://openvpn.net/vpn-server-resources/deploying-the-access-server-appliance-on-vmware-esxi/
https://www.circl.lu/services/misp-training-materials/
https://documentation.wazuh.com/3.10/installation-guide/virtual-machine.html
https://my.nps.edu/web/c3o/virtual-machine-images
https://virtualboxes.org/images/centos/
2019-10-10 12:13:29 +01:00
g0tmi1k
8e42ce0a0e
Merge pull request #358 from govolution/patch-4
Update windows-betterdefaultpasslist.txt

Source: https://github.com/PowerShellMafia/PowerSploit/blob/master/Privesc/PowerUp.ps1
2019-10-10 12:13:11 +01:00
g0tmi1k
2dcab37f3e
Merge pull request #359 from govolution/patch-5
Update mssql-betterdefaultpasslist.txt

Source: https://github.com/fgrehm/vagrant-mssql-express
2019-10-10 12:12:42 +01:00
govolution
993893e0dc
Update mssql-betterdefaultpasslist.txt
Source: https://github.com/fgrehm/vagrant-mssql-express
2019-10-10 12:31:10 +02:00
govolution
2942b4d373
Update windows-betterdefaultpasslist.txt
Source:
https://github.com/PowerShellMafia/PowerSploit/blob/master/Privesc/PowerUp.ps1
2019-10-10 12:29:05 +02:00
govolution
3bafebc1ea
Update ssh-betterdefaultpasslist.txt
https://github.com/SamuraiWTF/samuraiwtf
http://docs.graylog.org/en/2.4/pages/installation/virtual_machine_appliances.html
https://openvpn.net/vpn-server-resources/deploying-the-access-server-appliance-on-vmware-esxi/
https://www.circl.lu/services/misp-training-materials/
https://documentation.wazuh.com/3.10/installation-guide/virtual-machine.html
https://my.nps.edu/web/c3o/virtual-machine-images
https://virtualboxes.org/images/centos/
2019-10-10 12:26:41 +02:00
g0tmi1k
7c4ef6f4dd
Merge pull request #355 from XalfiE/master
Addition of Oracle EBS default users, passwords and URLs

Source: https://the-infosec.com/2017/03/29/do-you-know-what-your-erp-is-telling-us/
2019-10-07 11:28:32 +01:00
XalfiE
e685bfabe0
Oracle EBS default passwords 2019-10-07 13:16:17 +03:00
XalfiE
7b896da2c4
Oracle EBS default users 2019-10-07 13:15:41 +03:00
XalfiE
5d2567ab0e
Oracle EBS wordlist addition
Oracle EBS wordlist addition
2019-10-07 13:12:51 +03:00
g0tmi1k
6adcec0fda
Merge pull request #354 from stuntguy3000/patch-1
Fix Fuzzing Types (Fixes #339)
2019-10-04 16:39:46 +01:00
Luke Anderson
68f8d60da5
Fix Fuzzing Types (Fixes #339) 2019-10-05 00:35:43 +09:30
g0tmi1k
8ebc73f1c1
Merge pull request #353 from tkisason/patch-2
adds mappings and restart
2019-10-03 09:34:33 +01:00
Tonimir Kisasondi
7afc0c42a7
adds mappings and restart
This list is missing mappings and restart. Just added them.
2019-10-03 10:11:17 +02:00
g0tmi1k
785983aa9c
Merge pull request #352 from drwetter/patch-3
Update with entries from Wikipedia

Source: https://en.wikipedia.org/wiki/List_of_/.well-known/_services_offered_by_webservers
2019-10-02 20:37:23 +01:00
Dirk Wetter
3ce96b82d4
Update with entries from Wikipedia
...see https://en.wikipedia.org/wiki/List_of_/.well-known/_services_offered_by_webservers
2019-10-02 21:35:58 +02:00
g0tmi1k
5b82c421bc
Merge pull request #351 from bl00dh0und/dutchwordlist
Added dutchwordlist

Source:

- https://www.digitalpulse.pwc.com.au/infographic-password-security-psychology/
- https://www.vernoeming.nl/populair/meisjesnamen-2014
- https://www.vernoeming.nl/populair/jongensnamen-2014
- https://www.dierennamen.net/kattennamen-op-alfabetische-volgorde/
2019-10-01 12:19:58 +01:00
Mike van de Ven
a732f905a8
Added dutchwordlist 2019-10-01 12:22:18 +02:00
g0tmi1k
1e7aca5b3b
Merge pull request #350 from drwetter/patch-2
Update CONTRIBUTORS.md
2019-09-30 16:09:03 +01:00
Dirk Wetter
6499d79e54
Update CONTRIBUTORS.md 2019-09-30 17:03:26 +02:00
g0tmi1k
5eaa8b2cec
Merge pull request #349 from drwetter/patch-2
Add some .well-known dir entries

https://developer.apple.com/library/archive/documentation/General/Conceptual/AppSearch/UniversalLinks.html

https://www.iana.org/assignments/well-known-uris/well-known-uris.xhtml
2019-09-30 15:53:06 +01:00
Dirk Wetter
d7bf9b91bd
Add some .well-known dir entries
*  Add 1x apple-app-site-association, as it also can appear in docroot: https://developer.apple.com/library/archive/documentation/General/Conceptual/AppSearch/UniversalLinks.html

  *  put .well-known in alphabetical order

  * Added more from IANA registry: https://www.iana.org/assignments/well-known-uris/well-known-uris.xhtml

There might be still more URI -- Apple didn't seem to have registered their URI either at IANA either (process see  https://tools.ietf.org/html/rfc5785#5.1).)
2019-09-30 15:47:38 +02:00
g0tmi1k
519a72ae39
Merge pull request #342 from dotan3/master
Add Laravel related urls to quickhits.txt

Source: https://laravel.com/docs/6.x
2019-09-30 10:48:05 +01:00
g0tmi1k
7148816422
Merge branch 'master' into master 2019-09-30 10:47:53 +01:00
g0tmi1k
692e7c0038
Merge pull request #341 from NeuronAddict/html-colors
Add html color

Source: https://www.w3schools.com/colors/colors_names.asp
2019-09-30 10:46:16 +01:00
g0tmi1k
ed0e6e1e1e
Merge pull request #343 from draguntsow/patch-1
Create a wordlist of Modx Revolution CMS packages

Source: https://modx.com/
2019-09-30 10:44:43 +01:00
g0tmi1k
352782af09
Merge pull request #346 from ngkogkos/patch-1
Update with missing common endpoints

Source: https://twitter.com/NahamSec/status/1177672652011343873
2019-09-30 10:37:56 +01:00
Nikos Gk
dcf5d8162c
Update with missing common endpoints
Update list following discussion on Twitter: https://twitter.com/NahamSec/status/1177672652011343873
2019-09-28 19:20:35 +03:00
draguntsow
ddb5adf3d5
Create a wordlist of Modx Revolution CMS packages
The list of plugins is collected from the info provided on the official site.
2019-09-27 15:38:49 +03:00