Commit graph

1207 commits

Author SHA1 Message Date
PinkDev1
61c5f5a018
Added a couple of scopes
https://infosecwriteups.com/how-did-i-earned-6000-from-tokens-and-scopes-in-one-day-12f95c6bf8aa?source=rss----7b722bfd1b8d---4&gi=1e1df8e602a6
2021-10-18 01:36:33 +00:00
PinkDev1
0bcb01ad6a
Sorted and removed duplicates 2021-09-02 19:25:40 +00:00
PinkDev1
e737a0f96b
Added officially recognized OpenID scopes
from https://openid.net/specs/openid-connect-core-1_0.html#ScopeClaims
2021-09-02 19:24:57 +00:00
PinkDev1
e1c0693292
Added dropbox-app oauth scopes
Scraped internally
2021-09-02 19:21:48 +00:00
PinkDev1
30b2c22d24
Removed scopes with nonces/temporary identifiers
I left `delete-after-date1619708000534-admin` because it seems to have a UNIX timestamp, so it *might* be useful.
2021-09-02 19:03:43 +00:00
PinkDev1
bb991ad09a
Sorted and removed duplicates from oauth-oidc-scopes.txt 2021-09-02 19:00:44 +00:00
PinkDev1
647366b113
Added 155 scopes to oauth-oidc-scopes.txt
All of these were manually gathered from:
- https://developers.google.com/identity/protocols/oauth2/scopes
- https://docs.github.com/en/developers/apps/building-oauth-apps/scopes-for-oauth-apps
- https://api.slack.com/legacy/oauth-scopes
- https://dev.fitbit.com/build/reference/web-api/oauth2/#scope
2021-09-02 18:59:51 +00:00
g0tmi1k
cb81804316
Merge pull request #647 from g0tmi1k/spaces
dos2unix
2021-08-28 21:36:19 +01:00
g0tmi1k
44523e27a8
Merge pull request #644 from han0x7300/issues-642
add "___graphql" to "Discovery/Web-Content/graphql.txt

https://www.gatsbyjs.com/docs/reference/graphql-data-layer/graphql-api/
https://www.gatsbyjs.com/docs/tutorial/part-4/
2021-08-28 21:31:10 +01:00
g0t mi1k
545e57b02d dos2unix 2021-08-28 21:29:32 +01:00
g0tmi1k
4e47e1f0ff
Merge pull request #646 from g0tmi1k/spaces
Replace ' ' with ' ' (Empty Characters)
2021-08-28 21:07:30 +01:00
g0t mi1k
efeb38808c Replace ' ' with ' ' (Empty Characters) 2021-08-28 21:05:13 +01:00
han0x7300
ecd9da9dc2 add ___graphql to Discovery/Web-Content/graphql.txt,https://github.com/danielmiessler/SecLists/issues/642 2021-08-28 11:44:02 +08:00
g0tmi1k
2f98438a2d
Update CONTRIBUTORS.md 2021-08-27 21:25:41 +01:00
g0tmi1k
e017d54a22
Merge pull request #643 from 5tr1x/patch-1
Create aem2.txt
2021-08-27 21:17:43 +01:00
g0tmi1k
656105853a
Merge pull request #592 from afaq1337/patch-1
Update all.txt
2021-08-27 21:17:26 +01:00
g0tmi1k
38ba2a007a
Merge pull request #602 from sAsPeCt488/master
Add Base64 Encoded tomcat-betterdefaultpasslist
2021-08-27 21:16:56 +01:00
g0tmi1k
26bc13c98f
Merge pull request #620 from righettod/feature_add_http_req_headers
Add "UniqueId" http request header
2021-08-27 21:16:25 +01:00
g0tmi1k
06cfff0475
Merge pull request #621 from jakecraige/patch-1
Add port 3000 (Ruby on Rails) to common ports

Source: https://guides.rubyonrails.org/command_line.html#bin-rails-server
2021-08-27 21:16:04 +01:00
g0tmi1k
60fbd42063
Merge pull request #622 from realArcherL/patch-2
A very new naming scheme for Graphql endpoints
2021-08-27 21:15:39 +01:00
g0tmi1k
b4637896ef
Merge pull request #623 from righettod/feature_add_oauth2-odic_endpoints
Add missing OAUTH2/OIDC endpoints.

Source: https://righettod.eu.auth0.com/.well-known/openid-configuration
2021-08-27 21:15:07 +01:00
g0tmi1k
177f25ba69
Merge pull request #625 from cbk914/master
Some additions

Source: http://www.whatsmypass.com/the-top-500-worst-passwords-of-all-time
2021-08-27 21:14:37 +01:00
g0tmi1k
01f7723ddd
Merge pull request #626 from 7PH/master
Add waybackverify.txt filename to raft medium and large lists
2021-08-27 21:13:55 +01:00
g0tmi1k
975fac21dd
Merge pull request #627 from redstonedesigner/special-chars-fix
Add "-" and remove duplicate "_" entry
2021-08-27 21:12:54 +01:00
g0tmi1k
eea747817d
Merge pull request #628 from Anon-Exploiter/patch-1
Added ga-google-analytics in wp-plugins.txt

Source https://wordpress.org/plugins/ga-google-analytics/
2021-08-27 21:12:25 +01:00
g0tmi1k
4002c2c970
Merge pull request #630 from whitehauler/patch-1
Update raft-large-files.txt
2021-08-27 21:12:01 +01:00
g0tmi1k
de06dbb492
Merge pull request #637 from dabasanta/DaniloBasanta
Added list of IPv4 address class A&C. Also a script to generate these lists.
2021-08-27 21:11:24 +01:00
g0tmi1k
d8294e9763
Merge pull request #629 from righettod/feature_add_oauth-oidc_scopes_dict
Add a dict with OAUTH2/OIDC scopes.
2021-08-27 21:00:07 +01:00
g0tmi1k
5a70ecdbde
Merge pull request #632 from righettod/feature_psd2_headers
Add PSD2 PSU request headers.

https://www.stet.eu/assets/files/PSD2/1-5-1-6/api-dsp2-stet-v1.5.1.6-part-1-framework.pdf
https://www.stet.eu/assets/files/PSD2/1-5-1-6/api-dsp2-stet-v1.5.1.6-part-3-interaction-examples.pdf
2021-08-27 20:58:24 +01:00
g0tmi1k
8120e9e48c
Merge pull request #631 from afaq1337/patch-2
added a critical endpoint
2021-08-27 20:54:40 +01:00
5tr1x
a45a11ecca
Create aem2.txt 2021-08-25 15:22:35 -05:00
Danilo
6473406b1e Shell script to generate any IP ranges as you need 2021-08-13 12:44:32 -05:00
Danilo
28f2b5b9eb Added list of 192.168.x.x Class B IP range 2021-08-13 12:42:49 -05:00
Danilo
48258a71ce Added list of 10.10.x.x Class A IP range 2021-08-13 12:42:21 -05:00
Dominique RIGHETTO
ec5eaa9781
Add PSD2 SPU headers
Source: https://www.stet.eu/assets/files/PSD2/1-5-1-6/api-dsp2-stet-v1.5.1.6-part-3-interaction-examples.pdf
Section 6.1.1.2
2021-07-29 14:46:21 +02:00
Dominique RIGHETTO
93674add0c
Add PSD2 PSU headers
Source: https://www.stet.eu/assets/files/PSD2/1-5-1-6/api-dsp2-stet-v1.5.1.6-part-1-framework.pdf
Section 3.6
2021-07-29 14:44:20 +02:00
Afaq
0e6d80b6d9
added a critical endpoint
added a critical endpoint which contains critical DB information.
2021-07-27 17:39:44 +05:00
cbk914
229fa3f855 Updated Citrix and Avaya default passwords 2021-07-22 00:21:57 +02:00
Dominique RIGHETTO
388cac333b
Merge all versions of the file 2021-07-17 19:28:42 +02:00
Dominique RIGHETTO
48cc424388
Add files via upload 2021-07-17 19:23:28 +02:00
Dominique RIGHETTO
8572bd91ad
Update oauth-oidc-scopes.txt 2021-07-17 08:12:51 +02:00
cbk914
83b091396c Updated cryptominers 2021-07-16 22:01:51 +02:00
cbk914
49c5e8c0c4 Updated cryptominers 2021-07-16 20:49:52 +02:00
Dominique RIGHETTO
ea3268e688
Add a dict with OAUTH/OIDC scopes.
See PR to extended description.
2021-07-16 14:33:26 +02:00
Syed Umar Arfeen
da169ef5d0
Added ga-google-analytics in wp-plugins.txt
From: https://wordpress.org/plugins/ga-google-analytics/

```
Plugin Name: GA Google Analytics
Plugin URI: https://perishablepress.com/google-analytics-plugin/
Description: Adds your Google Analytics Tracking Code to your WordPress site.
Tags: analytics, ga, google, google analytics, tracking, statistics, stats
Author: Jeff Starr
Author URI: https://plugin-planet.com/
Donate link: https://monzillamedia.com/donate.html
Contributors: specialk
Requires at least: 4.1
Tested up to: 5.3
Stable tag: 20191109
Version: 20191109
Requires PHP: 5.6.20
Text Domain: ga-google-analytics
Domain Path: /languages
License: GPL v2 or later
```
2021-07-16 16:38:36 +05:00
Gabriel
fb613f25bf
Add "-" and remove duplicate "_" entry
Fixes #612
2021-07-13 14:42:14 +01:00
7PH
43cbe32e24 Add waybackverify.txt filename to raft medium and large lists 2021-07-13 13:09:49 +02:00
cbk914
2a78823f25 Add cryptominers default passwords 2021-07-13 05:13:43 +02:00
Dominique RIGHETTO
2c97b1bea1
Add missing OAUTH2/OIDC endpoints
See https://righettod.eu.auth0.com/.well-known/openid-configuration
2021-07-05 14:17:15 +02:00
cbk914
9a871facf1
Merge branch 'danielmiessler:master' into master 2021-06-26 23:06:55 +02:00