Commit graph

1844 commits

Author SHA1 Message Date
Dominique RIGHETTO
441c8f1c5f
Upgrade actions component used 2022-11-01 15:05:55 +01:00
Dominique RIGHETTO
822c0d7055
Debug problem 2022-11-01 15:02:02 +01:00
0x08
5a241e18cb
Merge branch 'danielmiessler:master' into patch-1 2022-10-26 16:45:44 +03:00
RR
aacc4cd2c1
Removed duplicate entries
applied unique to the wordlist removing any duplicates from list
2022-10-20 11:31:56 -04:00
PinkDev1
9a82bb4d61 Attempted to fix etc files github action 2022-10-16 02:22:16 -03:00
g0tmi1k
b06df834ae [Github Action] Updated LFI-etc-files-of-all-linux-packages.txt 2022-10-15 20:43:27 +00:00
0x08
a218cf1a62
Merge branch 'danielmiessler:master' into patch-1 2022-10-14 15:04:02 +03:00
Deep Dhakate
25f6130e5a
Merge branch 'danielmiessler:master' into master 2022-10-13 15:49:51 +05:30
RR
69388e96f9
Update hashicorp-consul-api.txt
removed two comment lines
2022-10-03 14:54:49 -04:00
RR
5c356da2f6
Update salesforce-aura-objects.txt
removed comment lines
2022-10-03 13:24:28 -04:00
g0tmi1k
f8a5267740 [Github Action] Updated LFI-etc-files-of-all-linux-packages.txt 2022-10-01 20:45:06 +00:00
PinkDev1
ae4e89a446 Removed test triggers for a github action 2022-10-01 03:52:56 -03:00
PinkDev1
f043ce0d87 this is a github actions test 2022-10-01 03:48:40 -03:00
PinkDev1
87036bf799 Improved the job name for the "Wordlist Updater - Awesome list of secrets in environment variables" github action 2022-10-01 03:48:14 -03:00
PinkDev1
fcaa456468 this is a github actions test 2022-10-01 03:40:41 -03:00
PinkDev1
f9a98ea32a (Attempt #6): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:40:10 -03:00
PinkDev1
3b17a2ffe0 this is a github actions test 2022-10-01 03:36:42 -03:00
PinkDev1
7f9b2390c1 (Attempt #5): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:35:14 -03:00
PinkDev1
22893817c9 (Attempt #4): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:31:05 -03:00
PinkDev1
ce77325aa4 (Attempt #3): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:30:00 -03:00
PinkDev1
f70fe55e47 (Attempt #2): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:13:33 -03:00
PinkDev1
d2613c5eab This is a github actions test 2022-10-01 03:11:15 -03:00
PinkDev1
79c3315704 Added test trigger to the "awesome env variables" github action 2022-10-01 03:10:25 -03:00
PinkDev1
d4e34744d0 (Attempt #1): Fix "Wordlist Updater - Awesome list of secrets in environment variables" 2022-10-01 03:06:06 -03:00
Mukesh Kumar
22466cc548
Update CommonAdminBase64.txt 2022-09-30 13:35:00 +01:00
Miguel Gómez
ec227174cd
Update LFI-Jhaddix.txt
Double URL-encode '../' with %252e%252e%252f
2022-09-27 16:36:41 -05:00
Deep Dhakate
a5375ffba8
Merge branch 'danielmiessler:master' into master 2022-09-28 00:29:29 +05:30
abhishekmorla
6f8c6e9226 added new backupfiles in wordpress fuzz list 2022-09-25 23:08:54 +05:30
g0tmi1k
907748e2cc [Github Action] Updated LFI-etc-files-of-all-linux-packages.txt 2022-09-15 20:45:32 +00:00
RR
4bc885b5dd
Create salesforce-aura-objects.txt 2022-09-15 14:44:34 -04:00
RR
960a60fa44
Create hashicorp-consul-api.txt 2022-09-15 14:41:28 -04:00
Fernando Mendoza
62a7e2bf18 add site-editor and mail-masta 2022-09-15 04:06:39 +02:00
0x08
9aa9cbe8d8
chore: Add entry to the README.md 2022-09-11 20:29:45 +03:00
Deep Dhakate
e987cfe049
Update README.md 2022-09-09 16:51:28 +05:30
Deep Dhakate
d923f12bc2
Update README.md 2022-09-08 13:08:14 +05:30
Deep Dhakate
ec1bc6a782
Add files via upload 2022-09-08 13:05:55 +05:30
Dominique RIGHETTO
94f9cd4103
Add missing ones from last doc versions 2022-09-05 18:29:15 +02:00
Dominique RIGHETTO
390477fdc5
Add endpoints 2022-09-05 18:19:14 +02:00
g0tmi1k
4897a41b20 [Github Action] Updated LFI-etc-files-of-all-linux-packages.txt 2022-09-01 20:51:07 +00:00
GitHub Action
62e98b2e6b [Github Action] Updated awesome-environment-variable-names.txt 2022-09-01 00:11:48 +00:00
0x08
a8b1094090
chore: Add WEB-INF list
## Add `WEB-INF` list.
Used to test LFI on j2ee webapps.
### Reference: 
- [https://gist.github.com/harisec/519dc6b45c6b594908c37d9ac19edbc3](https://gist.github.com/harisec/519dc6b45c6b594908c37d9ac19edbc3)
- [https://github.com/projectdiscovery/nuclei-templates/blob/master/vulnerabilities/generic/generic-j2ee-lfi.yaml](https://github.com/projectdiscovery/nuclei-templates/blob/master/vulnerabilities/generic/generic-j2ee-lfi.yaml)
- [https://github.com/ilmila/J2EEScan/blob/master/src/main/java/burp/j2ee/issues/impl/LFIModule.java](https://github.com/ilmila/J2EEScan/blob/master/src/main/java/burp/j2ee/issues/impl/LFIModule.java)
2022-08-30 22:26:05 +03:00
d3xt4r
5ef677051c
Update js.txt 2022-08-27 01:14:03 +05:30
vah_13
23e94476a3
update default-passwords.csv
Add SAP passwords for CA Introscope Enterprise Manager
2022-08-22 19:55:03 +04:00
g0tmi1k
c9337904d9 [Github Action] Updated LFI-etc-files-of-all-linux-packages.txt 2022-08-15 20:39:13 +00:00
Dominique RIGHETTO
dadb6f6ebc
Cleanup and enhancement 2022-08-08 18:28:59 +02:00
Dominique RIGHETTO
34bd1b7e77
Remove debug msg 2022-08-08 07:43:16 +02:00
Dominique RIGHETTO
15302f7f30
Add files via upload 2022-08-08 07:30:39 +02:00
Rodolfo Tavares
2a5e2b03a9
Spring Boot RCE involving JMX enabled
Extracted from https://github.com/pyn3rd/Spring-Boot-Vulnerability#0x05-spring-boot-rce-involving-jmx-enabled
2022-08-03 12:18:24 -03:00
g0tmi1k
18c4e3060f
Merge pull request #797 from TalebQasem/patch-2
Updated LFI-gracefulsecurity-windows.txt

Source: https://raw.githubusercontent.com/DragonJAR/Security-Wordlist/main/LFI-WordList-Windows
2022-08-02 11:56:52 +01:00
Taleb Qasem
b5116c1031
Update LFI-gracefulsecurity-windows.txt
Added word list from (https://raw.githubusercontent.com/DragonJAR/Security-Wordlist/main/LFI-WordList-Windows).
2022-08-02 16:25:02 +06:00