w3af-svn-notify Mailing List for w3af (Page 245)
Status: Beta
Brought to you by:
andresriancho
You can subscribe to this list here.
2008 |
Jan
|
Feb
(235) |
Mar
(336) |
Apr
(280) |
May
(278) |
Jun
(159) |
Jul
(270) |
Aug
(240) |
Sep
(121) |
Oct
(110) |
Nov
(199) |
Dec
(228) |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2009 |
Jan
(251) |
Feb
(206) |
Mar
(115) |
Apr
(45) |
May
(27) |
Jun
(67) |
Jul
(49) |
Aug
(38) |
Sep
(10) |
Oct
(131) |
Nov
(89) |
Dec
(38) |
2010 |
Jan
(85) |
Feb
(71) |
Mar
(45) |
Apr
(23) |
May
(12) |
Jun
|
Jul
(11) |
Aug
(7) |
Sep
(81) |
Oct
(79) |
Nov
(165) |
Dec
(62) |
2011 |
Jan
(134) |
Feb
(73) |
Mar
(34) |
Apr
(63) |
May
(147) |
Jun
(43) |
Jul
(21) |
Aug
(26) |
Sep
(43) |
Oct
(34) |
Nov
(44) |
Dec
(112) |
2012 |
Jan
(47) |
Feb
(44) |
Mar
(72) |
Apr
(209) |
May
(54) |
Jun
(279) |
Jul
(151) |
Aug
(332) |
Sep
(39) |
Oct
(268) |
Nov
(116) |
Dec
(368) |
2013 |
Jan
(73) |
Feb
|
Mar
|
Apr
(1) |
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
From: <and...@us...> - 2008-05-04 02:36:18
|
Revision: 1092 http://w3af.svn.sourceforge.net/w3af/?rev=1092&view=rev Author: andresriancho Date: 2008-05-03 19:36:16 -0700 (Sat, 03 May 2008) Log Message: ----------- Adding new consoleUi. Added Paths: ----------- trunk/core/ui/consoleUi/ trunk/core/ui/consoleUi/exploit.py Removed Paths: ------------- trunk/core/ui/consoleUi/exploit.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-04 02:35:12
|
Revision: 1091 http://w3af.svn.sourceforge.net/w3af/?rev=1091&view=rev Author: andresriancho Date: 2008-05-03 19:35:10 -0700 (Sat, 03 May 2008) Log Message: ----------- consoleUi migration. Modified Paths: -------------- trunk/core/ui/gtkUi/helpers.py Removed Paths: ------------- trunk/core/ui/consoleUi/ This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-04 02:19:54
|
Revision: 1090 http://w3af.svn.sourceforge.net/w3af/?rev=1090&view=rev Author: andresriancho Date: 2008-05-03 19:19:52 -0700 (Sat, 03 May 2008) Log Message: ----------- Better comments and stuff. Modified Paths: -------------- trunk/core/ui/gtkUi/helpers.py trunk/core/ui/gtkUi/profiles.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 22:20:31
|
Revision: 1089 http://w3af.svn.sourceforge.net/w3af/?rev=1089&view=rev Author: andresriancho Date: 2008-05-03 15:20:26 -0700 (Sat, 03 May 2008) Log Message: ----------- Better handling of scapy import, with help for users in windows. Modified Paths: -------------- trunk/core/controllers/extrusionScanning/server/extrusionServer.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 21:36:42
|
Revision: 1088 http://w3af.svn.sourceforge.net/w3af/?rev=1088&view=rev Author: andresriancho Date: 2008-05-03 14:36:39 -0700 (Sat, 03 May 2008) Log Message: ----------- Added some documentation lines to the core so the UI writers know what to expect from getPluginOptions. Modified Paths: -------------- trunk/core/controllers/w3afCore.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 21:33:54
|
Revision: 1087 http://w3af.svn.sourceforge.net/w3af/?rev=1087&view=rev Author: andresriancho Date: 2008-05-03 14:33:52 -0700 (Sat, 03 May 2008) Log Message: ----------- Removing XML... Modified Paths: -------------- trunk/plugins/attack/davShell.py trunk/plugins/attack/fileUploadShell.py trunk/plugins/attack/googleProxy.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 18:46:44
|
Revision: 1086 http://w3af.svn.sourceforge.net/w3af/?rev=1086&view=rev Author: andresriancho Date: 2008-05-03 11:46:01 -0700 (Sat, 03 May 2008) Log Message: ----------- Added help line that explains how to use the interact command. Modified Paths: -------------- trunk/core/ui/consoleUi/exploit.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 16:59:01
|
Revision: 1085 http://w3af.svn.sourceforge.net/w3af/?rev=1085&view=rev Author: andresriancho Date: 2008-05-03 09:58:55 -0700 (Sat, 03 May 2008) Log Message: ----------- Fixing plugins based on bug #1955640. Modified Paths: -------------- trunk/plugins/attack/rfiProxy.py trunk/plugins/attack/sqlmap.py trunk/plugins/attack/xssBeef.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 16:17:35
|
Revision: 1084 http://w3af.svn.sourceforge.net/w3af/?rev=1084&view=rev Author: andresriancho Date: 2008-05-03 09:17:31 -0700 (Sat, 03 May 2008) Log Message: ----------- Fixing something related to bug #1955095. Modified Paths: -------------- trunk/core/ui/gtkUi/scanrun.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 14:27:29
|
Revision: 1083 http://w3af.svn.sourceforge.net/w3af/?rev=1083&view=rev Author: andresriancho Date: 2008-05-03 07:27:16 -0700 (Sat, 03 May 2008) Log Message: ----------- Fixing bug #1953850. Modified Paths: -------------- branches/sasha/core/ui/consoleUi/exploit.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 14:26:43
|
Revision: 1082 http://w3af.svn.sourceforge.net/w3af/?rev=1082&view=rev Author: andresriancho Date: 2008-05-03 07:26:29 -0700 (Sat, 03 May 2008) Log Message: ----------- Fixing bug #1953850. Modified Paths: -------------- trunk/core/ui/gtkUi/exploittab.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-05-03 13:49:44
|
Revision: 1081 http://w3af.svn.sourceforge.net/w3af/?rev=1081&view=rev Author: andresriancho Date: 2008-05-03 06:49:41 -0700 (Sat, 03 May 2008) Log Message: ----------- Handling w3afMustStopException as expected. Modified Paths: -------------- trunk/core/ui/consoleUi/exploit.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-05-02 17:31:46
|
Task #148111 has been updated. Project: w3af Subproject: gtkUi - OWASP SoC 2008 Summary: Manually create a fuzzed requests based on tokens Complete: 10% Status: Open Authority : facundobatista Assigned to: facundobatista Description: A new option "Fuzzy Request" (search for an icon), in the toolbar and the menu (in "Tools"). It will open a new window The Help text is only for the fuzzy syntax Feedbacks. Analyze: greyed out until the user clicked on "analyze"; if the user changes the request, it goes grey again. Send: it updates dynamicly with the requests that are being sent. When user clicks on "send", if will sent more than 20 request, popup a confirmation question. Selector: the text entry background will be yellow if its value is wrong; if the user gives enter with the wrong value, it will do nothing, just a message to the statusbar). Andres needs to implement something in the core for this. The request/post fields are repeated because the upper has what the user wrote, and the lower has the different alternatives created with the fuzzy syntax (actually those are sent as requests). Syntax: - the "$" is the delimiter - to actually include a "$", use "$$" - if you write "$something$", the "something" will be evaluated with eval, having the "string" module already imported (eg: "$range(1,5,2)$", "$string.lowercase$"). Follow-Ups: ------------------------------------------------------- Date: 2008-05-02 14:31 By: facundobatista Comment: This is the agreed new design: http://www.taniquetil.com.ar/facundo/owasp/soc08-148111b.svg ------------------------------------------------------- Date: 2008-05-01 21:43 By: facundobatista Comment: First draft ------------------------------------------------------- Date: 2008-04-27 11:53 By: facundobatista Comment: GUI design: http://www.taniquetil.com.ar/facundo/owasp/soc08-148111.svg Other detail talked initially: When user clicks on "Analyze", with the "preview" activated, it'll popup a new window showing (but don't sending) all the generated requests. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148111&group_id=170274&group_project_id=56282 |
From: SourceForge.net <no...@so...> - 2008-05-02 17:23:37
|
Task #148266 has been updated. Project: w3af Subproject: Package TODO Summary: add python powered logo to the w3af site Complete: 0% Status: Open Authority : andresriancho Assigned to: andresriancho Description: add python powered logo to the w3af site ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148266&group_id=170274&group_project_id=50604 |
From: SourceForge.net <no...@so...> - 2008-05-02 17:22:44
|
Task #148265 has been updated. Project: w3af Subproject: gtkUi - Phase 4 Summary: status bar with findings summary Complete: 0% Status: Open Authority : andresriancho Assigned to: nobody Description: Add a findings summary to the status bar. Something with the icons of info/low/med/high that have a little number to the right of the icon that indicates how many vulns have been found. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148265&group_id=170274&group_project_id=55676 |
From: SourceForge.net <no...@so...> - 2008-05-02 13:16:13
|
Task #148264 has been updated. Project: w3af Subproject: Plugin TODO v1.10 Summary: Identify squid proxy Complete: 0% Status: Open Authority : andresriancho Assigned to: nobody Description: dz0@dz0cybsec:~/clientes/PY/casals$ nc 200.85.48.110 80 -n -n -v (UNKNOWN) [200.85.48.110] 80 (www) open GET / HTTP/1.0 HTTP/1.0 403 Forbidden Server: squid/2.5.STABLE6 Mime-Version: 1.0 Date: Fri, 02 May 2008 13:14:44 GMT Content-Type: text/html Content-Length: 773 Expires: Fri, 02 May 2008 13:14:44 GMT X-Squid-Error: ERR_BANNED_SITE 0 X-Cache: MISS from filtro.dnra.gov.py Connection: close <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"> <HTML><HEAD><META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1"> <TITLE>ERROR: Sitio Bloqueado</TITLE> <STYLE type="text/css"><!--BODY{background-color:#ffffff;font-family:verdana,sans-serif}PRE{font-family:sans-serif}--></STYLE> </HEAD><BODY> <H1>ERROR</H1> <H2>Esta página no puede ser visitada</H2> <HR noshade size="1px"> <P> <STRONG>Accesso Denegado</STRONG> al intentar acceder al URL: <A HREF="http://200.85.48.110/">http://200.85.48.110/</A> </UL> <H2>Proxy - D.N.R.A.</H2> <BR clear="all"> <HR noshade size="1px"> <ADDRESS> Generated Fri, 02 May 2008 13:14:44 GMT by filtro.dnra.gov.py (squid/2.5.STABLE6) </ADDRESS> </BODY></HTML> ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148264&group_id=170274&group_project_id=55629 |
From: <and...@us...> - 2008-05-02 13:08:34
|
Revision: 1080 http://w3af.svn.sourceforge.net/w3af/?rev=1080&view=rev Author: andresriancho Date: 2008-05-02 06:08:31 -0700 (Fri, 02 May 2008) Log Message: ----------- Adding FIXME to the core so I remember what I have to do. Hmm... when I finish with all bugs, should I continue with the FIXMEs ?! Modified Paths: -------------- trunk/core/controllers/w3afCore.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-05-02 12:48:26
|
Task #148261 has been updated. Project: w3af Subproject: gtkUi - OWASP SoC 2008 Summary: Remember size of all windows Complete: 0% Status: Open Authority : andresriancho Assigned to: facundobatista Description: It would be great if all the windows, like the manual request editor, and the fuzzer would remember their size, just like the main window does. Maybe you could create a sizeRememberingWindow class ? ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148261&group_id=170274&group_project_id=56282 |
From: <and...@us...> - 2008-05-02 12:19:44
|
Revision: 1079 http://w3af.svn.sourceforge.net/w3af/?rev=1079&view=rev Author: andresriancho Date: 2008-05-02 05:19:39 -0700 (Fri, 02 May 2008) Log Message: ----------- Fixing bug 1955775. Modified Paths: -------------- trunk/w3af This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <uli...@us...> - 2008-05-02 06:13:45
|
Revision: 1078 http://w3af.svn.sourceforge.net/w3af/?rev=1078&view=rev Author: ulises2k Date: 2008-05-01 23:13:43 -0700 (Thu, 01 May 2008) Log Message: ----------- - Deleted "DetailPrint" unnecessary in .onInit - Option w3af is required and read only Modified Paths: -------------- windows_installer/w3af-setup.nsi This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <uli...@us...> - 2008-05-02 03:52:07
|
Revision: 1077 http://w3af.svn.sourceforge.net/w3af/?rev=1077&view=rev Author: ulises2k Date: 2008-05-01 20:52:03 -0700 (Thu, 01 May 2008) Log Message: ----------- - w3af_update.bat Included within w3af-setup.nsi - compile_w3af-setup.cmd for all users - w3af-setup.nsi w3af detects Python - header_image.bmp New Image Modified Paths: -------------- windows_installer/compile_w3af-setup.cmd windows_installer/header_image.bmp windows_installer/w3af-setup.nsi Removed Paths: ------------- windows_installer/w3af_update.bat This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-05-02 01:53:24
|
Task #148250 has been updated. Project: w3af Subproject: Package TODO Summary: make google plugins work without pygoogle Complete: 0% Status: Closed Authority : andresriancho Assigned to: andresriancho Description: make google plugins work without pygoogle; this is high priority. Follow-Ups: ------------------------------------------------------- Date: 2008-05-01 22:53 By: andresriancho Comment: Done! ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148250&group_id=170274&group_project_id=50604 |
From: <and...@us...> - 2008-05-02 01:52:20
|
Revision: 1076 http://w3af.svn.sourceforge.net/w3af/?rev=1076&view=rev Author: andresriancho Date: 2008-05-01 18:52:19 -0700 (Thu, 01 May 2008) Log Message: ----------- Changing the way that w3af uses pygoogle! Modified Paths: -------------- trunk/core/data/searchEngines/google.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-05-02 01:14:55
|
Task #148250 has been updated. Project: w3af Subproject: Package TODO Summary: make google plugins work without pygoogle Complete: 0% Status: Open Authority : andresriancho Assigned to: andresriancho Description: make google plugins work without pygoogle; this is high priority. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148250&group_id=170274&group_project_id=50604 |
From: SourceForge.net <no...@so...> - 2008-05-02 00:43:19
|
Task #148111 has been updated. Project: w3af Subproject: gtkUi - OWASP SoC 2008 Summary: Manually create a fuzzed requests based on tokens Complete: 10% Status: Open Authority : facundobatista Assigned to: facundobatista Description: A new option "Fuzzy Request" (search for an icon), in the toolbar and the menu (in "Tools"). It will open a new window The Help text is only for the fuzzy syntax Feedbacks. Analyze: greyed out until the user clicked on "analyze"; if the user changes the request, it goes grey again. Send: it updates dynamicly with the requests that are being sent. When user clicks on "send", if will sent more than 20 request, popup a confirmation question. Selector: the text entry background will be yellow if its value is wrong; if the user gives enter with the wrong value, it will do nothing, just a message to the statusbar). Andres needs to implement something in the core for this. The request/post fields are repeated because the upper has what the user wrote, and the lower has the different alternatives created with the fuzzy syntax (actually those are sent as requests). Syntax: - the "$" is the delimiter - to actually include a "$", use "$$" - if you write "$something$", the "something" will be evaluated with eval, having the "string" module already imported (eg: "$range(1,5,2)$", "$string.lowercase$"). Follow-Ups: ------------------------------------------------------- Date: 2008-05-01 21:43 By: facundobatista Comment: First draft ------------------------------------------------------- Date: 2008-04-27 11:53 By: facundobatista Comment: GUI design: http://www.taniquetil.com.ar/facundo/owasp/soc08-148111.svg Other detail talked initially: When user clicks on "Analyze", with the "preview" activated, it'll popup a new window showing (but don't sending) all the generated requests. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=148111&group_id=170274&group_project_id=56282 |