PortSwigger / param-miner

https://portswigger.net/blog/practical-web-cache-poisoning
Other
1.2k stars 163 forks source link

additional params/headers from BigQuery query #83

Closed liquidsec closed 1 year ago

liquidsec commented 1 year ago

Hi! We're using these lists as part of our python recreation of param-miner in BBOT in the form of our cookie_brute, header_brute, and getparam_brute modules there.

We have been doing some work with BigQuery, searching across the public GitHub dataset, and found some headers/params not already included doing that which we thought would be good additions to these lists. Tried to filter off a lot of the one-offs so as to not add much junk, and this was what was left.

albinowax commented 1 year ago

Thanks, much appreciated. Looks like some high quality words.