Skip to content

Conversation

@laluka
Copy link
Owner

@laluka laluka commented Apr 24, 2023

  • Changing the default save level to 2
  • Adding json output file
  • Adding pre-commit checks for consistency
  • Existing output dir bug-fix

jtof-fap
jtof-fap previously approved these changes Apr 26, 2023
@jtof-fap
Copy link
Collaborator

Diff of bup-payloads-2023-04-24.lst file with previous version:

$ git diff --no-index $(find tests-history -type f | sort -n | tail -n 2)
diff --git a/tests-history/bup-payloads-2023-04-18.lst b/tests-history/bup-payloads-2023-04-24.lst
index af485f4..4560abe 100644
--- a/tests-history/bup-payloads-2023-04-18.lst
+++ b/tests-history/bup-payloads-2023-04-24.lst
@@ -1,5 +1,5 @@

-Bypasser has generated 3213 payloads for 'http://127.0.0.1:8000/foo/bar' url:
+Bypasser has generated 3236 payloads for 'http://127.0.0.1:8000/foo/bar' url:
 [case_substitution] http://127.0.0.1:8000/Foo/bar
 [case_substitution] http://127.0.0.1:8000/fOo/bar
 [case_substitution] http://127.0.0.1:8000/foO/bar
@@ -142,8 +142,8 @@ Bypasser has generated 3213 payloads for 'http://127.0.0.1:8000/foo/bar' url:
 [end_paths] http://127.0.0.1:8000/foo/bar/true/
 [end_paths] http://127.0.0.1:8000/foo/bar/~
 [end_paths] http://127.0.0.1:8000/foo/bar/~/
-[end_paths] http://127.0.0.1:8000/foo/bar/<B0>/
-[end_paths] http://127.0.0.1:8000/foo/bar/<B0>//
+[end_paths] http://127.0.0.1:8000/foo/bar/°/
+[end_paths] http://127.0.0.1:8000/foo/bar/°//
 [end_paths] http://127.0.0.1:8000/foo/bar0
 [end_paths] http://127.0.0.1:8000/foo/bar0/
 [end_paths] http://127.0.0.1:8000/foo/bar1
@@ -166,8 +166,8 @@ Bypasser has generated 3213 payloads for 'http://127.0.0.1:8000/foo/bar' url:
 [end_paths] http://127.0.0.1:8000/foo/bar\/\//
 [end_paths] http://127.0.0.1:8000/foo/bar~
 [end_paths] http://127.0.0.1:8000/foo/bar~/
-[end_paths] http://127.0.0.1:8000/foo/bar<B0>/
-[end_paths] http://127.0.0.1:8000/foo/bar<B0>//
+[end_paths] http://127.0.0.1:8000/foo/bar°/
+[end_paths] http://127.0.0.1:8000/foo/bar°//
 [http_headers_ip] -H Ali-CDN-Real-IP: * http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H Ali-CDN-Real-IP: 0.0.0.0 http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H Ali-CDN-Real-IP: 0177.1 http://127.0.0.1:8000/foo/bar
@@ -1333,18 +1333,6 @@ Bypasser has generated 3213 payloads for 'http://127.0.0.1:8000/foo/bar' url:
 [http_headers_ip] -H X-Http-Host-Override: localhost http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H X-Http-Host-Override: norealhost http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H X-Http-Host-Override: null http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: * http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 0.0.0.0 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 0177.1 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 10.0.0.1 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 127.0.0.1 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 172.17.0.1 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 192.168.0.2 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 192.168.1.1 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: 8.8.8.8 http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: localhost http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: norealhost http://127.0.0.1:8000/foo/bar
-[http_headers_ip] -H X-Http-Method-Override: null http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H X-IP-Addr: * http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H X-IP-Addr: 0.0.0.0 http://127.0.0.1:8000/foo/bar
 [http_headers_ip] -H X-IP-Addr: 0177.1 http://127.0.0.1:8000/foo/bar
@@ -1919,6 +1907,41 @@ Bypasser has generated 3213 payloads for 'http://127.0.0.1:8000/foo/bar' url:
 [http_headers_method] -H X-HTTP-Method: UPDATE http://127.0.0.1:8000/foo/bar
 [http_headers_method] -H X-HTTP-Method: UPDATEREDIRECTREF http://127.0.0.1:8000/foo/bar
 [http_headers_method] -H X-HTTP-Method: VERSION-CONTROL http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: ACL http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: BIND http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: CHECKIN http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: CHECKOUT http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: CONNECT http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: COPY http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: DELETE http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: GET http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: HEAD http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: LABEL http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: LINK http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: LOCK http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: MERGE http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: MKCOL http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: MOVE http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: OPTIONS http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: ORDERPATCH http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: PATCH http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: POST http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: POUET http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: PRI http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: PROPFIND http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: PROPPATCH http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: PUT http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: QUERY http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: REBIND http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: REPORT http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: SEARCH http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: TRACE http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: TRACK http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: UNCHECKOUT http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: UNLOCK http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: UPDATE http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: UPDATEREDIRECTREF http://127.0.0.1:8000/foo/bar
+[http_headers_method] -H X-Method-Override: VERSION-CONTROL http://127.0.0.1:8000/foo/bar
 [http_headers_port] -H Cdn-Server-Port: 1080 http://127.0.0.1:8000/foo/bar
 [http_headers_port] -H Cdn-Server-Port: 2080 http://127.0.0.1:8000/foo/bar
 [http_headers_port] -H Cdn-Server-Port: 3000 http://127.0.0.1:8000/foo/bar

@laluka laluka merged commit e03d160 into main Apr 26, 2023
@laluka laluka deleted the laluka-make-things-pretty branch April 26, 2023 14:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants