Commit Graph

824 Commits

Author SHA1 Message Date
g0t mi1k
46f55b814f Add CFM Shell
Source: http://pastebin.com/3HKGQCWF // https://web.archive.org/web/20170322222809/http://pastebin.com/3HKGQCWF
2020-03-25 13:25:00 +00:00
g0t mi1k
9428544c6f Add author table 2019-12-02 22:01:59 +00:00
g0t mi1k
73cd7d6577 Add creds for web-shells 2019-12-02 21:58:53 +00:00
g0tmi1k
376a5de32a
Merge pull request #378 from dejanzelic/master
Added wordpress plugin shell by leonjza

Source: https://github.com/leonjza/wordpress-shell/blob/master/shell.php
2019-12-02 21:52:51 +00:00
Dejan Zelic
ec75402c12 Added wordpress plugin shell by leonjza 2019-12-02 14:49:17 -07:00
g0tmi1k
152c4a2a91
Merge pull request #374 from s7x/master
Added the entire XSS Cheat Sheet of PortSwigger, their HTML events and tags. Added keyhacks by streaak.

Keyhacks:
https://github.com/streaak/keyhacks

Portswigger XSS Cheat Sheet:
https://portswigger.net/web-security/cross-site-scripting/cheat-sheet
2019-11-25 09:20:00 +00:00
S7X Deckard Case
9059518579 Added keyhacks by streaak. 2019-11-18 10:41:05 +01:00
S7X Deckard Case
b8e87ad36c Added the entire XSS Cheat Sheet of PortSwigger, their HTML events and tags. 2019-11-18 09:33:26 +01:00
g0tmi1k
d455890b37
Merge pull request #373 from xrobhal/patch-1
Create CommonAdminBase64.txt

Source: https://github.com/danielmiessler/SecLists/blob/master/Usernames/top-usernames-shortlist.txt
2019-11-13 11:52:38 +00:00
xrobhal
e53542ccb9
Update CommonAdminBase64.txt 2019-11-13 09:52:12 +00:00
xrobhal
563b995df0
Create CommonAdminBase64.txt
Common administrator usernames encoded into ASCII Base64 strings.
2019-11-11 23:01:14 +00:00
g0tmi1k
54ff1ef18a
Merge pull request #372 from camas/fixlines
Remove extra newline
2019-11-10 21:49:55 +00:00
Camas
eb2cd4518a Remove extra newline 2019-11-08 23:32:46 +00:00
g0tmi1k
2e4fc74c39
Merge pull request #371 from camas/fixlines
Fix line endings
2019-11-08 19:38:20 +00:00
Camas
a7184dd1f7 Fix line endings 2019-11-08 15:09:15 +00:00
g0tmi1k
0783efa7fd
Merge pull request #370 from ricardojba/patch-1
Hidden SNMP community in Cisco SG220 series

Source: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
2019-11-08 14:40:19 +00:00
Ricardo
5bdfce1568
Hidden SNMP community in Cisco SG220 series
Reference: https://www.synacktiv.com/ressources/advisories_cisco_switch_sg220_default_snmp.pdf
2019-11-08 10:39:12 +00:00
g0tmi1k
6d1783b613
Merge pull request #369 from parthmalhotra/patch-1
Create 1-4_all_letters_a-z.txt
2019-11-08 07:09:02 +00:00
g0tmi1k
461a11a7f2
Merge pull request #368 from bkimminich/master
Add list of dangerous Angular/AngularJS functions

Source: https://angular.io/guide/security
2019-11-07 22:44:24 +00:00
Parth Malhotra
01b280755c
Create 1-4_all_letters_a-z.txt 2019-11-07 21:50:55 +05:30
Björn Kimminich
c3fe5c5dda
Add list of dangerous Angular/AngularJS functions
(for #367)
2019-11-07 17:08:37 +01:00
g0tmi1k
a627b78566
Update README.md 2019-11-03 11:04:57 +00:00
g0tmi1k
5da5dacb23
Merge pull request #366 from davidegirardi/master
Add CICS transaction list

Source: https://www.ibm.com/support/knowledgecenter/SSGMCP_5.4.0/reference/transactions/dfha726.html
2019-11-03 11:03:51 +00:00
davidegirardi
78190b79a6 Add CICS transaction list 2019-11-03 11:50:45 +01:00
g0tmi1k
af721716c1
Merge pull request #365 from wasamasa/fix-jsp-web-shell
Fix JSP webshell syntax errors
2019-10-22 22:01:27 +01:00
Vasilij Schneidermann
8dfac3774b Fix syntax errors 2019-10-22 20:27:12 +02:00
g0tmi1k
93e2c5b064
Merge pull request #364 from righettod/master
Add local ports for local services discovery
2019-10-21 16:53:24 +01:00
Dominique RIGHETTO
9f94cae21b
Add local ports for scan 2019-10-21 17:49:56 +02:00
g0tmi1k
6b405ea8d8
Merge pull request #363 from oh6hay/master
51k random creds obtained by running Heralding for two weeks in Sep/2019
2019-10-21 10:23:05 +01:00
osku
a7b446ce8c 51k random creds obtained by running Heralding for two weeks in Sep/2019 2019-10-20 17:02:07 +03:00
g0tmi1k
97ea172c1e
Merge pull request #362 from tkisason/patch-3
adds jolokia

Source: https://jolokia.org
2019-10-13 22:19:08 +01:00
Tonimir Kisasondi
b472dfc528
added jolokia
See https://jolokia.org/

Gets exposed in combination with springboot.
2019-10-13 22:04:35 +02:00
g0tmi1k
b8a8cc5a44
Merge pull request #361 from righettod/master
Add dictionary for GraphQL

Source: https://graphql.org/
2019-10-11 17:19:21 +01:00
Dominique RIGHETTO
5c917b1cba
Add dictionary for GraphQL
Help to detect GraphQL endpoint
2019-10-11 17:19:05 +02:00
g0tmi1k
06d29fa2b0
Merge pull request #360 from righettod/master
Add VIM and NANO backup file
2019-10-11 15:59:03 +01:00
Dominique RIGHETTO
b93f54f4fb
Add VIM and NANO backup file 2019-10-11 15:55:38 +02:00
g0tmi1k
6fae58fa9b
Merge pull request #357 from govolution/patch-3
Update ssh-betterdefaultpasslist.txt

https://github.com/SamuraiWTF/samuraiwtf
http://docs.graylog.org/en/2.4/pages/installation/virtual_machine_appliances.html
https://openvpn.net/vpn-server-resources/deploying-the-access-server-appliance-on-vmware-esxi/
https://www.circl.lu/services/misp-training-materials/
https://documentation.wazuh.com/3.10/installation-guide/virtual-machine.html
https://my.nps.edu/web/c3o/virtual-machine-images
https://virtualboxes.org/images/centos/
2019-10-10 12:13:29 +01:00
g0tmi1k
8e42ce0a0e
Merge pull request #358 from govolution/patch-4
Update windows-betterdefaultpasslist.txt

Source: https://github.com/PowerShellMafia/PowerSploit/blob/master/Privesc/PowerUp.ps1
2019-10-10 12:13:11 +01:00
g0tmi1k
2dcab37f3e
Merge pull request #359 from govolution/patch-5
Update mssql-betterdefaultpasslist.txt

Source: https://github.com/fgrehm/vagrant-mssql-express
2019-10-10 12:12:42 +01:00
govolution
993893e0dc
Update mssql-betterdefaultpasslist.txt
Source: https://github.com/fgrehm/vagrant-mssql-express
2019-10-10 12:31:10 +02:00
govolution
2942b4d373
Update windows-betterdefaultpasslist.txt
Source:
https://github.com/PowerShellMafia/PowerSploit/blob/master/Privesc/PowerUp.ps1
2019-10-10 12:29:05 +02:00
govolution
3bafebc1ea
Update ssh-betterdefaultpasslist.txt
https://github.com/SamuraiWTF/samuraiwtf
http://docs.graylog.org/en/2.4/pages/installation/virtual_machine_appliances.html
https://openvpn.net/vpn-server-resources/deploying-the-access-server-appliance-on-vmware-esxi/
https://www.circl.lu/services/misp-training-materials/
https://documentation.wazuh.com/3.10/installation-guide/virtual-machine.html
https://my.nps.edu/web/c3o/virtual-machine-images
https://virtualboxes.org/images/centos/
2019-10-10 12:26:41 +02:00
g0tmi1k
7c4ef6f4dd
Merge pull request #355 from XalfiE/master
Addition of Oracle EBS default users, passwords and URLs

Source: https://the-infosec.com/2017/03/29/do-you-know-what-your-erp-is-telling-us/
2019-10-07 11:28:32 +01:00
XalfiE
e685bfabe0
Oracle EBS default passwords 2019-10-07 13:16:17 +03:00
XalfiE
7b896da2c4
Oracle EBS default users 2019-10-07 13:15:41 +03:00
XalfiE
5d2567ab0e
Oracle EBS wordlist addition
Oracle EBS wordlist addition
2019-10-07 13:12:51 +03:00
g0tmi1k
6adcec0fda
Merge pull request #354 from stuntguy3000/patch-1
Fix Fuzzing Types (Fixes #339)
2019-10-04 16:39:46 +01:00
Luke Anderson
68f8d60da5
Fix Fuzzing Types (Fixes #339) 2019-10-05 00:35:43 +09:30
g0tmi1k
8ebc73f1c1
Merge pull request #353 from tkisason/patch-2
adds mappings and restart
2019-10-03 09:34:33 +01:00
Tonimir Kisasondi
7afc0c42a7
adds mappings and restart
This list is missing mappings and restart. Just added them.
2019-10-03 10:11:17 +02:00