w3af-svn-notify Mailing List for w3af (Page 263)
Status: Beta
Brought to you by:
andresriancho
You can subscribe to this list here.
2008 |
Jan
|
Feb
(235) |
Mar
(336) |
Apr
(280) |
May
(278) |
Jun
(159) |
Jul
(270) |
Aug
(240) |
Sep
(121) |
Oct
(110) |
Nov
(199) |
Dec
(228) |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2009 |
Jan
(251) |
Feb
(206) |
Mar
(115) |
Apr
(45) |
May
(27) |
Jun
(67) |
Jul
(49) |
Aug
(38) |
Sep
(10) |
Oct
(131) |
Nov
(89) |
Dec
(38) |
2010 |
Jan
(85) |
Feb
(71) |
Mar
(45) |
Apr
(23) |
May
(12) |
Jun
|
Jul
(11) |
Aug
(7) |
Sep
(81) |
Oct
(79) |
Nov
(165) |
Dec
(62) |
2011 |
Jan
(134) |
Feb
(73) |
Mar
(34) |
Apr
(63) |
May
(147) |
Jun
(43) |
Jul
(21) |
Aug
(26) |
Sep
(43) |
Oct
(34) |
Nov
(44) |
Dec
(112) |
2012 |
Jan
(47) |
Feb
(44) |
Mar
(72) |
Apr
(209) |
May
(54) |
Jun
(279) |
Jul
(151) |
Aug
(332) |
Sep
(39) |
Oct
(268) |
Nov
(116) |
Dec
(368) |
2013 |
Jan
(73) |
Feb
|
Mar
|
Apr
(1) |
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
From: SourceForge.net <no...@so...> - 2008-03-19 01:17:03
|
Task #146857 has been updated. Project: w3af Subproject: Plugin TODO v1.10 Summary: Detect source code leak Complete: 0% Status: Open Authority : andresriancho Assigned to: nobody Description: Note that there is a grep plugin that already performs this task, I just should add the signatures: One === <%@ include file="/crm/crm_header_inc.jsp" %> Two === <jsp:include page="linksHB.jsp" flush="true"/> Follow-Ups: ------------------------------------------------------- Date: 2008-03-18 22:15 By: andresriancho Comment: The plugin that detects source code leaks is grep.codeDisclosure ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=146857&group_id=170274&group_project_id=55629 |
From: SourceForge.net <no...@so...> - 2008-03-19 01:16:26
|
Task #146857 has been updated. Project: w3af Subproject: Package TODO Summary: Detect source code leak Complete: 0% Status: Open Authority : andresriancho Assigned to: nobody Description: Note that there is a grep plugin that already performs this task, I just should add the signatures: One === <%@ include file="/crm/crm_header_inc.jsp" %> Two === <jsp:include page="linksHB.jsp" flush="true"/> Follow-Ups: ------------------------------------------------------- Date: 2008-03-18 22:15 By: andresriancho Comment: The plugin that detects source code leaks is grep.codeDisclosure ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=146857&group_id=170274&group_project_id=50604 |
From: SourceForge.net <no...@so...> - 2008-03-19 01:15:56
|
Task #146857 has been updated. Project: w3af Subproject: Plugin TODO v1.10 Summary: Detect source code leak Complete: 0% Status: Open Authority : andresriancho Assigned to: nobody Description: Note that there is a grep plugin that already performs this task, I just should add the signatures: One === <%@ include file="/crm/crm_header_inc.jsp" %> Two === <jsp:include page="linksHB.jsp" flush="true"/> Follow-Ups: ------------------------------------------------------- Date: 2008-03-18 22:15 By: andresriancho Comment: The plugin that detects source code leaks is grep.codeDisclosure ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=146857&group_id=170274&group_project_id=55629 |
From: SourceForge.net <no...@so...> - 2008-03-18 10:28:10
|
Task #147178 has been updated. Project: w3af Subproject: TODO v1.10 Summary: create new plugin type Complete: 0% Status: Open Authority : andresriancho Assigned to: andresriancho Description: I should separate discovery plugins into two different types: - The ones that find new URLs - The ones that find things about the site ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147178&group_id=170274&group_project_id=54341 |
From: SourceForge.net <no...@so...> - 2008-03-18 03:06:55
|
Task #147178 has been updated. Project: w3af Subproject: TODO v1.10 Summary: create new plugin type Complete: 0% Status: Open Authority : andresriancho Assigned to: andresriancho Description: I should separate discovery plugins into two different types: - The ones that find new URLs - The ones that find things about the site ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147178&group_id=170274&group_project_id=54341 |
From: SourceForge.net <no...@so...> - 2008-03-18 02:15:01
|
Task #147177 has been updated. Project: w3af Subproject: Plugin TODO v1.00 Summary: mysqlWebShell Complete: 0% Status: Open Authority : andresriancho Assigned to: andresriancho Description: I should: - do a complete refactoring of this plugin! It doesn't respect the new attack plugin way of doing things. - create a test script and add it to the trunk. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147177&group_id=170274&group_project_id=50603 |
From: SourceForge.net <no...@so...> - 2008-03-17 16:12:37
|
Task #147138 has been updated. Project: w3af Subproject: consoleUi Summary: Ctrl+c should exit exploit shell Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: Ctrl+c should exit exploit shell ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147138&group_id=170274&group_project_id=55343 |
From: <ab...@us...> - 2008-03-17 16:10:24
|
Revision: 847 http://w3af.svn.sourceforge.net/w3af/?rev=847&view=rev Author: aberezh Date: 2008-03-17 09:10:02 -0700 (Mon, 17 Mar 2008) Log Message: ----------- consoleUi: Fixed #147138 (Ctrl+c should exit exploit shell) Modified Paths: -------------- branches/sasha/core/ui/consoleUi/consoleUi.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-17 15:40:42
|
Task #145903 has been updated. Project: w3af Subproject: consoleUi Summary: more comments and license information Complete: 100% Status: Open Authority : andresriancho Assigned to: aberezh Description: more comments and license information, please perform this task first, I don't want any file in the project without a GPL header. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145903&group_id=170274&group_project_id=55343 |
From: SourceForge.net <no...@so...> - 2008-03-17 15:39:05
|
Task #147141 has been updated. Project: w3af Subproject: consoleUi Summary: "plugins audit xss, sqli" should work and ain't Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: "plugins audit xss, sqli" should work and ain't: w3af>>>plugins audit xss, ppepe I don't know the plugin. w3af>>>plugins audit xss,pepe I don't know the pepe plugin. w3af>>>plugins audit xss, sqli I don't know the plugin. w3af>>>plugins audit xss,sqli w3af>>>plugins audit Also, the error "I don't know the plugin." is misleading. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147141&group_id=170274&group_project_id=55343 |
From: <ab...@us...> - 2008-03-17 15:36:05
|
Revision: 846 http://w3af.svn.sourceforge.net/w3af/?rev=846&view=rev Author: aberezh Date: 2008-03-17 08:35:06 -0700 (Mon, 17 Mar 2008) Log Message: ----------- consoleUi: Fixed #147141 (space delimeter for the plugins set didn't work) Modified Paths: -------------- branches/sasha/core/ui/consoleUi/plugins.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-17 10:37:27
|
Task #146816 has been updated. Project: w3af Subproject: Plugin TODO v1.10 Summary: buzhug database should be in home directory Complete: 95% Status: Open Authority : andresriancho Assigned to: andresriancho Description: buzhug database should be in home directory Follow-Ups: ------------------------------------------------------- Date: 2008-03-17 07:37 By: andresriancho Comment: Done, I just need to see how to alert the user that this directory will grow a lot. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=146816&group_id=170274&group_project_id=55629 |
From: <and...@us...> - 2008-03-17 02:06:05
|
Revision: 845 http://w3af.svn.sourceforge.net/w3af/?rev=845&view=rev Author: andresriancho Date: 2008-03-16 19:05:58 -0700 (Sun, 16 Mar 2008) Log Message: ----------- Ignoring pyc files in db directory and performing a better error handling in gtkOutput. Modified Paths: -------------- trunk/plugins/output/gtkOutput.py Property Changed: ---------------- trunk/core/data/db/ This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: <and...@us...> - 2008-03-17 01:47:44
|
Revision: 844 http://w3af.svn.sourceforge.net/w3af/?rev=844&view=rev Author: andresriancho Date: 2008-03-16 18:47:40 -0700 (Sun, 16 Mar 2008) Log Message: ----------- Added a new module to handle the home directory creation and retrieval. Also, started the refactoring of the db handler. Modified Paths: -------------- trunk/core/controllers/w3afCore.py trunk/core/data/url/handlers/localCache.py trunk/core/data/url/xUrllib.py trunk/core/ui/gtkUi/httpLogTab.py trunk/core/ui/gtkUi/scanrun.py trunk/plugins/output/gtkOutput.py trunk/w3af.e3p trunk/w3af.e3t Added Paths: ----------- trunk/core/controllers/misc/homeDir.py trunk/core/data/db/ trunk/core/data/db/__init__.py trunk/core/data/db/reqResDBHandler.py Removed Paths: ------------- trunk/core/ui/gtkUi/reqResDBHandler.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-17 01:09:03
|
Task #145902 has been updated. Project: w3af Subproject: consoleUi Summary: windows support Complete: 0% Status: Deleted Authority : andresriancho Assigned to: aberezh Description: windows support Follow-Ups: ------------------------------------------------------- Date: 2008-03-16 22:08 By: andresriancho Comment: Duplicated with another one which already has more information. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145902&group_id=170274&group_project_id=55343 |
From: SourceForge.net <no...@so...> - 2008-03-17 01:08:25
|
Task #145905 has been updated. Project: w3af Subproject: consoleUi Summary: support for now missed features Complete: 75% Status: Open Authority : andresriancho Assigned to: andresriancho Description: Dont really know what you meant by: "support for now missed features", but I added it just to be sure that we remember to do the task. Follow-Ups: ------------------------------------------------------- Date: 2008-03-16 22:08 By: andresriancho Comment: I should do some refactoring of the tools section... they suck. After my refactoring we'll talk about them. ------------------------------------------------------- Date: 2008-03-15 10:45 By: aberezh Comment: I don't remember what I meant, most probable that was about profile, exploit and tools menus. Profiles and exploit are done, but tools are still not, are they required? ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145905&group_id=170274&group_project_id=55343 |
From: SourceForge.net <no...@so...> - 2008-03-17 00:50:03
|
Task #147132 has been updated. Project: w3af Subproject: consoleUi Summary: new consoleUi doesn't work on windows Complete: 15% Status: Open Authority : andresriancho Assigned to: aberezh Description: The termios shouldn't be used inside w3af, or if it is used you should provide a different way to perform the same tasks on windows/macosx/etc. Error: Traceback (most recent call last): File "w3af", line 88, in <module> main() File "w3af", line 67, in main from core.ui.consoleUi.consoleUi import consoleUi File "/home/dz0/w3af-sasha/core/ui/consoleUi/consoleUi.py", line 27, in <modul e> File "/home/dz0/w3af-sasha/core/ui/consoleUi/rootMenu.py", line 27, in <module > File "/home/dz0/w3af-sasha/core/ui/consoleUi/posixterm.py", line 25, in <modul e> File "C:\python25\lib\tty.py", line 5, in <module> from termios import * ImportError: No module named termios Follow-Ups: ------------------------------------------------------- Date: 2008-03-16 21:50 By: andresriancho Comment: fixed the module problem, but now we have two new problems: 1- Freaky chars when typing anything: C:\Documents and Settings\Administrador\Mis documentos\tools\w3af-sa\w3af-sasha> python w3af WARNING: This branch is under development and unstable. Please see http://w3af.sourceforge.net for the stable version info. You won't be able to use the web20Spider without zc.testbrowser.real library ins talled. Exception: No module named testbrowser.src.zc.testbrowser.real global name 'Browser' is not defined. You can get MozRepl at http://hyperstruct. net/projects/mozlab . w3af>>>â[slâ[uâ[1Câ[saâ[uâ[1Câ[slâ[uâ[1Câ[saâ[uâ[1C I don't know what to do with lala w3af>>>â[shâ[uâ[1Câ[seâ[uâ[1Câ[slâ[uâ[1Câ[spâ[uâ[1C |-----------------------------------------------------------------------------| | start | Start the scan. | | plugins | Configure plugins. | | exploit | Exploit the vulnerability. | | profiles | List and start scan profiles. | |-----------------------------------------------------------------------------| | http-settings | Configure the URL opener. | | misc-settings | Configure w3af misc settings. | | target | Configure the target URL. | |-----------------------------------------------------------------------------| | keys | Display keys combination. | | back | Go to the previous menu. | | exit | Exit w3af. | | help | Display help. | | assert | Check assertion. | |-----------------------------------------------------------------------------| 2- Strange unicode problems when trying to use command history with arrows: w3af>>>â[sÃâ[uâ[1Câ[sHâ[uâ[1C Traceback (most recent call last): File "/home/dz0/w3af-sasha/core/ui/consoleUi/consoleUi.py", line 168, in _hand leKey File "/home/dz0/w3af-sasha/core/ui/consoleUi/consoleUi.py", line 234, in _onEn ter File "/home/dz0/w3af-sasha/core/ui/consoleUi/consoleUi.py", line 209, in _exec ute File "C:\Documents and Settings\Administrador\Mis documentos\tools\w3af-sa\w3a f-sasha\core\controllers\outputManager.py", line 149, in console oPlugin.console( message, newLine ) File "/home/dz0/w3af-sasha/plugins/output/console.py", line 92, in console UnicodeEncodeError: 'ascii' codec can't encode character u'\ufffd' in position 2 9: ordinal not in range(128) ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147132&group_id=170274&group_project_id=55343 |
From: <and...@us...> - 2008-03-17 00:48:14
|
Revision: 843 http://w3af.svn.sourceforge.net/w3af/?rev=843&view=rev Author: andresriancho Date: 2008-03-16 17:48:12 -0700 (Sun, 16 Mar 2008) Log Message: ----------- The sasha branch can now be used in windows. The only problem is that it prints freaky chars to the output. In windows, tab completion works but history doesn't. Modified Paths: -------------- branches/sasha/core/ui/consoleUi/posixterm.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-17 00:38:47
|
Task #145076 has been updated. Project: w3af Subproject: consoleUi Summary: second and third level autocompletion Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: Extend the autocompletion feature of w3af, in order to have autocompletion for every command, in every level. By level I mean this: audit config xss [L1] [L2] [L3] And also it should work for the settings configuration set configParameter value [L1][L2] This was proposed by Alexander Berezhnoy Follow-Ups: ------------------------------------------------------- Date: 2008-02-03 09:06 By: andresriancho Comment: Seems to be working ok, needs more testing. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145076&group_id=170274&group_project_id=55343 |
From: SourceForge.net <no...@so...> - 2008-03-17 00:38:24
|
Task #145901 has been updated. Project: w3af Subproject: consoleUi Summary: automated terminal width detection Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: automated terminal width detection ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145901&group_id=170274&group_project_id=55343 |
From: SourceForge.net <no...@so...> - 2008-03-16 22:55:49
|
Task #147141 has been updated. Project: w3af Subproject: consoleUi Summary: "plugins audit xss, sqli" should work and ain't Complete: 0% Status: Open Authority : andresriancho Assigned to: aberezh Description: "plugins audit xss, sqli" should work and ain't: w3af>>>plugins audit xss, ppepe I don't know the plugin. w3af>>>plugins audit xss,pepe I don't know the pepe plugin. w3af>>>plugins audit xss, sqli I don't know the plugin. w3af>>>plugins audit xss,sqli w3af>>>plugins audit Also, the error "I don't know the plugin." is misleading. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147141&group_id=170274&group_project_id=55343 |
From: <and...@us...> - 2008-03-16 22:55:49
|
Revision: 842 http://w3af.svn.sourceforge.net/w3af/?rev=842&view=rev Author: andresriancho Date: 2008-03-16 15:55:36 -0700 (Sun, 16 Mar 2008) Log Message: ----------- Changed unknown plugin error message. Modified Paths: -------------- branches/sasha/core/ui/consoleUi/exploit.py branches/sasha/core/ui/consoleUi/plugins.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-16 17:35:11
|
Task #147139 has been updated. Project: w3af Subproject: consoleUi Summary: Enabling unknown plugins should show an error Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: w3af/plugins>>>grep pepe w3af/plugins>>>grep lang w3af/plugins>>>list grep ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=147139&group_id=170274&group_project_id=55343 |
From: <ab...@us...> - 2008-03-16 17:35:05
|
Revision: 841 http://w3af.svn.sourceforge.net/w3af/?rev=841&view=rev Author: aberezh Date: 2008-03-16 10:35:03 -0700 (Sun, 16 Mar 2008) Log Message: ----------- consoleUi: #147139 (Enabling unknown plugins should show an error) Modified Paths: -------------- branches/sasha/core/ui/consoleUi/plugins.py This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |
From: SourceForge.net <no...@so...> - 2008-03-16 17:18:11
|
Task #145930 has been updated. Project: w3af Subproject: consoleUi - Phase 2 Summary: Toogle True/False Complete: 100% Status: Closed Authority : andresriancho Assigned to: aberezh Description: When I have boolean configurable parameters like: w3af/plugins/audit/config:xss>>>set checkPersistent True It would be great if when hitting TAB the value would toogle from True to False and cycle through those values. ------------------------------------------------------- For more info, visit: http://sourceforge.net/pm/task.php?func=detailtask&project_task_id=145930&group_id=170274&group_project_id=55868 |