Commit graph

1676 commits

Author SHA1 Message Date
Mo Langning
51a20e05b6
changed some strings slightly 2023-11-24 01:47:28 +08:00
g0tmi1k
03002fbc27
Merge pull request #900 from nekonugget/master-1
Create OMI-Agent-Linux.txt

Source: https://github.com/nekonugget/lfi-stuff/blob/main/OMI-Agent-Linux.txt
2023-11-23 17:35:52 +00:00
g0tmi1k
0c8af0a18b
Merge pull request #901 from stefanman125/patch-1
Update LFI-gracefulsecurity-linux.txt to include older SSH key format "ECDSA"
2023-11-23 17:33:38 +00:00
g0tmi1k
ced93ad4ec
Merge pull request #902 from souravvvv123/sourav
Trace.axd has been added 

Source: https://www.linkedin.com/posts/therceman_bug-bounty-tips-sensitive-data-exposure-activity-6986685674506600448-wHW0/
2023-11-23 17:32:47 +00:00
g0tmi1k
b75841f60f
Merge pull request #904 from CountablyInfinite/master
added wso2 api manager endpoint /services/WorkflowCallbackService?wsdl

Source: https://apim.docs.wso2.com/en/3.2.0/develop/extending-api-manager/extending-workflows/invoking-the-api-manager-from-the-bpel-engine/
2023-11-23 17:31:56 +00:00
GitHub Action
fd4d0a7807 [Github Action] Updated combined_directories.txt 2023-11-23 17:31:36 +00:00
g0tmi1k
7dcdadeeed
Merge pull request #905 from ThomasBucaioni/master
Typos in discovery files
2023-11-23 17:30:51 +00:00
GitHub Action
af5c6419e7 [Github Action] Updated combined_words.txt 2023-11-23 17:30:12 +00:00
g0tmi1k
7606e16b66
Merge pull request #906 from DmytroKashchuk/patch-1
Update raft-medium-words.txt

Source: https://docs.spring.io/spring-boot/docs/current/reference/html/actuator.html
2023-11-23 17:29:33 +00:00
g0tmi1k
7efd8d7d9b
Merge pull request #907 from righettod/add_oracle_sid
Add a list of Oracle DB common SID.

Source: http://www.red-database-security.com/whitepaper/oracle_default_sid.html
2023-11-23 17:28:13 +00:00
g0tmi1k
6e912c6116
Merge pull request #908 from ItsIgnacioPortal/i690
feat(wordlists): Added LFI wordlist "LFI-linux-and-windows_by-1N3@CrowdShield.txt".

Source: ec37930af3
2023-11-23 17:27:16 +00:00
g0tmi1k
237f1ff319
Merge pull request #909 from ItsIgnacioPortal/i856
feat(wordlist): Added clean fortinet-2021 username and passwords wordlists.
2023-11-23 17:26:11 +00:00
g0tmi1k
6aff8b92e0
Merge pull request #912 from cosad3s/master
Update HTML tags & HTTP verbs
2023-11-23 17:24:04 +00:00
g0tmi1k
65a1d20276
Merge pull request #914 from olizimmermann/master
Certstream subdomains analysis
2023-11-23 17:22:14 +00:00
g0tmi1k
486f547f9d
Merge pull request #915 from zyairelai/master
Update common-http-ports.txt
2023-11-23 17:20:08 +00:00
g0tmi1k
2393f770de
Merge pull request #916 from molangning/master
List of os

Source: https://en.wikipedia.org/w/index.php?title=List_of_operating_systems&oldid=1182336353
2023-11-23 17:18:42 +00:00
Mo Langning
3902902441
Update .bin 2023-11-03 09:39:25 +08:00
Mo Langning
1cdd4b9906
Update os-names-mutation.txt 2023-11-03 09:37:59 +08:00
Mo Langning
63b85cbdf1
Update os-names-mutation.txt 2023-11-03 09:33:14 +08:00
Mo Langning
31f04833aa
Os-names but with mutation 2023-11-03 09:29:09 +08:00
Mo Langning
764155f83f
Update os-names.txt
stripped extra space
space
2023-11-03 09:12:13 +08:00
Mo Langning
1588c54106
Create os-names.txt 2023-11-03 09:04:27 +08:00
Zyaire
cb5c387a2b
Update common-http-ports.txt
Add port 8000
2023-10-23 09:50:17 +08:00
olizimmermann
81cdc0b85e added certstream subdomains analysis 2023-10-22 20:01:08 +02:00
Sébastien Copin
1c98513def Update HTML tags
Sources:
- https://developer.mozilla.org/en-US/docs/Web/HTML
- https://reference.codeproject.com/html/
2023-10-17 12:51:55 +02:00
Sébastien Copin
44e92240a7 Add HTTP versb TRACK and DEBUG
Especially used in IIS servers.

Sources:
- https://nmap.org/nsedoc/scripts/http-aspnet-debug.html
- https://techcommunity.microsoft.com/t5/iis-support-blog/http-track-and-trace-verbs/ba-p/784482
2023-10-17 12:39:22 +02:00
Ignacio J. Perez Portal
51929e9f00 feat(wordlist): Added clean fortinet-2021 username and passwords wordlists 2023-10-10 20:35:58 -03:00
Ignacio J. Perez Portal
306339aff6 feat(wordlist): Added LFI-linux-and-windows_by-1N3@CrowdShield.txt
This wordlist has duplicate lines removed, and normalized Windows paths
2023-10-10 09:15:00 -03:00
Dominique RIGHETTO
55c4988410
Rename OracleSID.txt to OracleDB-SID.txt 2023-10-08 19:26:29 +02:00
Dominique RIGHETTO
f81a9803f8
Add file 2023-10-08 19:17:49 +02:00
Dmytro Kashchuk
65d8f6eb4d
Update raft-medium-words.txt
Adding "actuator" word in the list
2023-10-05 11:54:47 +02:00
ThomasBucaioni
2874a0acaa Typos 2023-09-23 09:15:11 +02:00
CountablyInfinite
59bd80122e added wso2 api manager endpoint /services/WorkflowCallbackService?wsdl 2023-09-20 20:18:49 +02:00
Sourav Chakraborty
bbbba7123e Trace.axd has been added to dirsearch.txt which can expose sensitive information about the target 2023-09-08 10:40:41 +05:30
Stefan
96940203b1
Update LFI-gracefulsecurity-linux.txt
Includes older SSH key format "ECDSA"
2023-09-06 14:21:17 -04:00
not main acc
e36dfa24fa
Create OMI-Agent-Linux.txt
from (my mistaken) issue: https://github.com/danielmiessler/SecLists/issues/891#issuecomment-1679646712
2023-08-20 23:57:17 +02:00
GitHub Action
395c945627 [Github Action] Updated combined_directories.txt 2023-08-15 21:48:36 +00:00
g0tmi1k
7862c863d3
Merge pull request #895 from g0tmi1k/master
Update for 2023.2
2023-08-15 22:43:58 +01:00
g0t mi1k
b20a40774d Update for 2023.2 2023-08-15 22:43:05 +01:00
g0tmi1k
16dd537332
Merge pull request #864 from cosad3s/master
Add PulseSecure wordlist
2023-08-15 22:31:46 +01:00
g0tmi1k
e034442490
Merge pull request #894 from dylleb/patch-1
Added .phar

Source: https://cheatsheetseries.owasp.org/cheatsheets/File_Upload_Cheat_Sheet.html#introduction
2023-08-15 22:31:22 +01:00
g0tmi1k
e97433a3b1
Merge pull request #890 from tomtastic/master
Update Alexa top-1m.csv list

Source: http://s3.amazonaws.com/alexa-static/top-1m.csv.zip
2023-08-15 22:29:39 +01:00
g0tmi1k
80b93067ef
Merge pull request #881 from NicolasCARPi/honey
Complete Usernames list from Honeypot-Captures
2023-08-15 22:22:57 +01:00
g0tmi1k
98def1f70b
Merge pull request #879 from Xhoenix/master
updated laudanum to v1.0

Source: https://downloads.sourceforge.net/project/laudanum/laudanum-1.0/laudanum-1.0.tgz
2023-08-15 22:22:20 +01:00
g0tmi1k
8b719e8a28
Merge pull request #878 from denandz/restandardize-leading-slashes
Fixes #876 - Standardize leading slases in web content discovery lists
2023-08-15 22:20:17 +01:00
GitHub Action
16048fe918 [Github Action] Updated combined_words.txt 2023-08-15 21:06:56 +00:00
g0tmi1k
acf002dc42
Merge pull request #877 from righettod/add_config.proerties_files
Add config files and FOSUserBundlebundle entries to common.txt dict as well as new API objects

Source: 

https://twitter.com/win3zz/status/1657624974851702784?t=AjNPuTXB6odpHxHT742-nQ&s=19

https://github.com/FriendsOfSymfony/FOSUserBundle
2023-08-15 22:06:07 +01:00
lebz
83b47d72aa
Creation of web-extensions-big.txt 2023-08-14 14:23:42 +02:00
lebz
f16bde83c0
Added .phar 2023-08-14 13:32:22 +02:00
Dominique RIGHETTO
e3ae747e69
Add K8S monitoring endpoints 2023-07-27 09:21:19 +02:00