We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
dev / main
out of memory issue
id: decompression-bomb info: name: test author: parthmalhotra severity: critical description: | test reference: - http://example.com tags: bomb http: - raw: - | GET /compr.txt HTTP/1.1 Host: {{Hostname}} matchers: - type: dsl dsl: - 'contains(zlib_decode(body), "223ff")' - 'contains(zlib_decode(body), "2232ff")' - 'contains(zlib_decode(body), "22322ff")' - 'contains(zlib_decode(body), "223f333f")' - 'contains(zlib_decode(body), "224443ff")' - 'contains(zlib_decode(body), "223fdf")' - 'contains(zlib_decode(body), "2232cff")' - 'contains(zlib_decode(body), "2232b2ff")' - 'contains(zlib_decode(body), "223fx333f")' - 'contains(zlib_decode(body), "2s24443ff")' - 'contains(zlib_decode(body), "223fccxf")' - 'contains(zlib_decode(body), "223zz2ff")' - 'contains(zlib_decode(body), "2332322ff")' - 'contains(zlib_decode(body), "22w3f333f")' - 'contains(zlib_decode(body), "2244463ff")' - 'contains(zlib_decode(body), "22344ffdf")' - 'contains(zlib_decode(body), "2232333cff")' - 'contains(zlib_decode(body), "2232224b2ff")' - 'contains(zlib_decode(body), "223fdfe3x333f")' - 'contains(zlib_decode(body), "2s244ffrfrf343ff")' condition: and
test.yaml
nuclei -t test.yaml -u 64.227.170.3
compr.txt
The text was updated successfully, but these errors were encountered:
Fixed here -
Sorry, something went wrong.
Ice3man543
No branches or pull requests
Nuclei version:
dev / main
Current Behavior:
out of memory issue
Expected Behavior:
Steps To Reproduce:
test.yaml
nuclei -t test.yaml -u 64.227.170.3
(test host with compressed filecompr.txt
)The text was updated successfully, but these errors were encountered: