1
0
mirror of https://github.com/swisskyrepo/PayloadsAllTheThings.git synced 2025-04-20 08:28:10 +02:00

Commit Graph

  • 200a2d38d8
    Fix fake xss Anton Lopanitsyn 2019-02-11 09:34:13 +0300
  • f2273f5cce PrivExchange attack Swissky 2019-02-10 19:51:54 +0100
  • 8c1c35789d SQLmap tamper update Swissky 2019-02-10 19:07:27 +0100
  • 1c37517bf3 .git/index file parsing + fix CSRF payload typo Swissky 2019-02-07 23:33:47 +0100
  • 8ff2aa8aff
    Merge pull request #39 from n3v4/master Swissky 2019-02-07 14:01:43 +0100
  • 90db8b0f11 Update exif_imagetype bypass Vladislav Nechakhin 2019-02-07 14:59:22 +0700
  • 7877647db1 Update exif_imagetype bypass Vladislav Nechakhin 2019-02-07 14:51:03 +0700
  • 357f8a69a8
    Merge pull request #38 from n3v4/master Swissky 2019-02-02 11:36:22 +0100
  • b30ac4e5bb Add exif_imagetype bypass Vladislav Nechakhin 2019-02-02 17:29:04 +0700
  • ffde81e2c0
    Merge pull request #37 from marcan2020/patch-1 Swissky 2019-01-29 23:14:09 +0100
  • 7068cb6edc
    Update MSSQL Command execution marcan2020 2019-01-29 15:25:25 -0500
  • 20bf52eb6a Bugfix 3 - removing the "-" in SSRF Swissky 2019-01-28 20:35:28 +0100
  • 1f502ce20d Bugfix 2 - Fixing git mess Swissky 2019-01-28 20:32:43 +0100
  • b9f2fe367c Bugfix - Errors in stashed changes Swissky 2019-01-28 20:27:45 +0100
  • cd2d76d538
    Merge pull request #36 from ThunderSon/patch-1 Swissky 2019-01-28 08:16:38 +0100
  • 99857a714f
    fead: add powerless repo to the tools ThunderSon 2019-01-27 20:13:06 +0200
  • e07a654080 Command injection renamed + sudo/doas privesc Swissky 2019-01-22 21:45:41 +0100
  • 4db45a263a MSSQL union based + Windows Runas Swissky 2019-01-20 16:41:46 +0100
  • 22c82cb277
    Merge pull request #35 from noraj/patch-1 Swissky 2019-01-17 19:54:37 +0100
  • ab6535c6d9 Bugfix picture SSRF Swissky 2019-01-13 22:28:49 +0100
  • 1547338f84 SSRF exploitation and minor rewritting Swissky 2019-01-13 22:27:11 +0100
  • 3bcd3d1b3c SUID & Capabilities Swissky 2019-01-13 22:05:39 +0100
  • 0070ac5dc4 Phar PHP shell files Swissky 2019-01-10 22:36:30 +0100
  • c7a292c19d
    XSS using base64 encoded href data in a link Alexandre ZANNI 2019-01-10 18:24:43 +0100
  • ea0bddc18a Windows RCE wildcard + XSS UI redressing Swissky 2019-01-08 20:49:05 +0100
  • 2e3aef1a19 Shell IPv6 + Sandbox credential Swissky 2019-01-07 18:15:45 +0100
  • 8b39647de6 AWS S3 and Open redirect rewritten Swissky 2018-12-29 13:05:29 +0100
  • 67c644a300 Directory traversal / File inclusion rewritten Swissky 2018-12-28 00:27:15 +0100
  • e480c9358d SQL wildcard '_' + CSV injection reverse shell Swissky 2018-12-26 01:02:17 +0100
  • bd97c0be86 README update + Typo fix in Active Directory Swissky 2018-12-25 20:41:43 +0100
  • d57d59eca7 NTLMv2 hash capturing, cracking, replaying Swissky 2018-12-25 20:35:39 +0100
  • d5478d1fd6 AWS Pacu and sections + Kerberoasting details Swissky 2018-12-25 19:38:37 +0100
  • 82d4ff6c1d References added based on @ngalongc bug-bounty-references Swissky 2018-12-25 16:10:15 +0100
  • b9efdb52d3 Linux - PrivEsc - First draft Swissky 2018-12-25 15:51:11 +0100
  • 38c3bfbd9f Windows Priv Esc - Unquoted Path, Password looting and Powershell version Swissky 2018-12-25 15:19:45 +0100
  • cdc3b5e080 XXE references + summary Swissky 2018-12-25 12:08:32 +0100
  • c25af52316 Blind XSS Angular JS Swissky 2018-12-24 15:09:43 +0100
  • a6475a19d9 Adding references sectio Swissky 2018-12-24 15:02:50 +0100
  • 9c529535a5 CSRF - Fix image Swissky 2018-12-24 14:17:49 +0100
  • 9c878f9b09 CSRF - First draft Swissky 2018-12-24 14:14:51 +0100
  • b4aff1a826 Architecture - Files/Intruder/Images and README + template Swissky 2018-12-23 00:45:45 +0100
  • e096d10a30
    Merge pull request #34 from Fisjkars/master Swissky 2018-12-18 14:03:22 +0100
  • b59e24312e
    Update Springboot readme Maxime Escourbiac 2018-12-18 11:18:50 +0100
  • 5b7a3a95d3 Add Springboot Actuator management interface Fisjkars 2018-12-18 11:05:15 +0100
  • 69c1d601fa Kerberoasting + SQLmap write SSH key Swissky 2018-12-15 00:51:33 +0100
  • 8403068681
    Merge pull request #32 from Meatballs1/Meatballs1-patch-1 Swissky 2018-12-14 10:25:04 +0300
  • 20c6bb2299
    Update httpd.conf Meatballs1 2018-12-14 00:03:50 +0000
  • 1d6b34ace5
    Create README.md Meatballs1 2018-12-14 00:02:58 +0000
  • f1fec1c952
    Create shellymcshellface.sh Meatballs1 2018-12-13 23:58:24 +0000
  • 1e4e04831b
    Create httpd.conf Meatballs1 2018-12-13 23:56:10 +0000
  • 68325c8b98 Insecure deserialization Python Swissky 2018-11-27 23:04:17 +0100
  • c8d7575ba3 Minor edit in deserialization PHP and type juggling Swissky 2018-11-26 23:35:43 +0100
  • 521d61d956 Attacks details + Summary JWT + XXE adjustments Swissky 2018-11-26 00:25:06 +0100
  • 928a454531 Blind XSS endpoint + SSRF Google + Nmap subdomains Swissky 2018-11-25 15:44:17 +0100
  • b34cff5a74 XXE in docx, pptx, .. : Open XML files Swissky 2018-11-24 15:50:43 +0100
  • 1225a9a23d Metasploit Cheatsheet Swissky 2018-11-24 15:32:44 +0100
  • 565b40d177 reGeorg + Meterpreter socks + S3 trick name Swissky 2018-11-24 13:49:08 +0100
  • 0309a2efbd
    Merge pull request #30 from m-veljkovic/master Swissky 2018-11-19 14:01:44 +0100
  • 59d0020c86
    Update README.md Milan Veljkovic 2018-11-19 12:45:01 +0100
  • a0f8e846fa Blind XSS - XSS Hunter, Sleepy Puppy etc Swissky 2018-11-18 15:37:01 +0100
  • fd99da6c06 Insecure source code - harvesting secrets Swissky 2018-11-18 14:12:05 +0100
  • 5c1d025b03 README - CVE update Swissky 2018-11-18 13:40:47 +0100
  • 2799653083 add Apache Struts 2.md hktalent 2018-11-18 14:36:37 +0800
  • 907d14b62a add Apache Struts 2.md hktalent 2018-11-18 14:32:42 +0800