RE: [WIP] Hacker Toolkit 06-25-2013, 10:48 AM
#14
-- Update --
Added basic vulnerability scanner that detects possible
Currently the existence of FPD is only detected through improperly handled SQLI errors.
-- Question ---
Methods to detect FPD outside SQLI. I know that by turning a parameter into an array, such as modifying ?id= to ?id[]=, can do the trick. Does anyone have any other good methods?
Added basic vulnerability scanner that detects possible
- SQL Injection
- Cross-Site Scripting
- Cross-Site Request Forgery
- Remote File Inclusion
- Local File Inclusion
- Full Path Disclosure
Currently the existence of FPD is only detected through improperly handled SQLI errors.
-- Question ---
Methods to detect FPD outside SQLI. I know that by turning a parameter into an array, such as modifying ?id= to ?id[]=, can do the trick. Does anyone have any other good methods?




![[+]](https://sinister.li/images/modern/collapse_collapsed.png)