From 1ed59267df4980fba729dc2dba1622f3e2367d03 Mon Sep 17 00:00:00 2001 From: Miroslav Stampar Date: Fri, 12 Apr 2019 15:35:13 +0200 Subject: [PATCH] Adding new WAF script (Issue #3579) --- lib/core/settings.py | 2 +- waf/safeline.py | 19 +++++++++++++++++++ 2 files changed, 20 insertions(+), 1 deletion(-) create mode 100644 waf/safeline.py diff --git a/lib/core/settings.py b/lib/core/settings.py index f0c2bf4a0..ad8e277c8 100644 --- a/lib/core/settings.py +++ b/lib/core/settings.py @@ -17,7 +17,7 @@ from lib.core.enums import DBMS_DIRECTORY_NAME from lib.core.enums import OS # sqlmap version (...) -VERSION = "1.3.4.5" +VERSION = "1.3.4.6" TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable" TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34} VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE) diff --git a/waf/safeline.py b/waf/safeline.py new file mode 100644 index 000000000..c9d6c669e --- /dev/null +++ b/waf/safeline.py @@ -0,0 +1,19 @@ +#!/usr/bin/env python2 + +""" +Copyright (c) 2006-2019 sqlmap developers (http://sqlmap.org/) +See the file 'LICENSE' for copying permission +""" + +from lib.core.settings import WAF_ATTACK_VECTORS + +__product__ = "SafeLine (Chaitin Tech)" + +def detect(get_page): + retval = False + + for vector in WAF_ATTACK_VECTORS: + page, _, _ = get_page(get=vector) + retval = all(_ in (page or "") for _ in ("SafeLine", "