InjectionMultibit.java

1
package com.jsql.model.injection.strategy.blind;
2
3
import com.jsql.model.InjectionModel;
4
import com.jsql.model.exception.StoppedByUserSlidingException;
5
import com.jsql.model.injection.strategy.blind.callable.CallableMultibit;
6
import com.jsql.util.LogLevelUtil;
7
import org.apache.commons.lang3.StringUtils;
8
import org.apache.logging.log4j.LogManager;
9
import org.apache.logging.log4j.Logger;
10
11
import java.util.ArrayList;
12
import java.util.Collection;
13
import java.util.List;
14
import java.util.concurrent.CompletionService;
15
import java.util.concurrent.ExecutionException;
16
import java.util.concurrent.ExecutorService;
17
import java.util.concurrent.Future;
18
import java.util.concurrent.atomic.AtomicInteger;
19
20
import static name.fraser.neil.plaintext.diff_match_patch.Diff;
21
22
public class InjectionMultibit extends AbstractInjectionBit<CallableMultibit> {
23
24
    private static final Logger LOGGER = LogManager.getRootLogger();
25
26
    private String sourceReference;
27
28
    private List<Diff> diffsCommonWithAllIds = new ArrayList<>();
29
    private final List<List<Diff>> diffsById = new ArrayList<>();
30
31
    public InjectionMultibit(InjectionModel injectionModel, BlindOperator blindOperator) {
32
        super(injectionModel, blindOperator);
33
        
34 1 1. <init> : negated conditional → NO_COVERAGE
        if (this.injectionModel.isStoppedByUser()) {
35
            return;
36
        }
37
38
        this.sourceReference = this.callUrl("8", "multi#ref");
39
        ExecutorService taskExecutor = this.injectionModel.getMediatorUtils().getThreadUtil().getExecutor("CallableGetMultibitIds");
40
        Collection<CallableMultibit> callablesId = new ArrayList<>();
41
42 2 1. <init> : changed conditional boundary → NO_COVERAGE
2. <init> : negated conditional → NO_COVERAGE
        for (int i = 0 ; i < 8 ; i++) {
43
            callablesId.add(
44
                new CallableMultibit(
45
                    String.valueOf(i),
46
                    this,
47
                    "multi#ref~" + i
48
                )
49
            );
50
        }
51
52
        try {
53
            List<Future<CallableMultibit>> futuresId = taskExecutor.invokeAll(callablesId);
54 1 1. <init> : removed call to com/jsql/util/ThreadUtil::shutdown → NO_COVERAGE
            this.injectionModel.getMediatorUtils().getThreadUtil().shutdown(taskExecutor);
55
56
            for (Future<CallableMultibit> futureId: futuresId) {
57
                List<Diff> diffsWithReference = futureId.get().getDiffsWithReference();
58 1 1. <init> : negated conditional → NO_COVERAGE
                if (this.diffsCommonWithAllIds.isEmpty()) {
59
                    this.diffsCommonWithAllIds = new ArrayList<>(diffsWithReference);
60
                } else {
61
                    this.diffsCommonWithAllIds.retainAll(diffsWithReference);
62
                }
63
                this.diffsById.add(diffsWithReference);
64
            }
65
66
            for (List<Diff> diffById : this.diffsById) {
67
                diffById.removeAll(this.diffsCommonWithAllIds);
68
            }
69
        } catch (ExecutionException e) {
70
            LOGGER.log(LogLevelUtil.CONSOLE_JAVA, e, e);
71
        } catch (InterruptedException e) {
72
            LOGGER.log(LogLevelUtil.IGNORE, e, e);
73 1 1. <init> : removed call to java/lang/Thread::interrupt → NO_COVERAGE
            Thread.currentThread().interrupt();
74
        }
75
    }
76
77
    public CallableMultibit getCallableTest(String sqlQuery, int indexChar, int block) {
78 1 1. getCallableTest : replaced return value with null for com/jsql/model/injection/strategy/blind/InjectionMultibit::getCallableTest → NO_COVERAGE
        return new CallableMultibit(
79
            sqlQuery,
80
            indexChar,
81
            block,
82
            this.injectionModel,
83
            this,
84
            "multi#" + indexChar + "." + block
85
        );
86
    }
87
88
    @Override
89
    public boolean isInjectable() throws StoppedByUserSlidingException {
90 1 1. isInjectable : negated conditional → NO_COVERAGE
        if (this.injectionModel.isStoppedByUser()) {
91
            throw new StoppedByUserSlidingException();
92
        }
93
        var callableBlock1 = new CallableMultibit("'a'", 1, 1, this.injectionModel, this, "multi#confirm.1");
94
        var callableBlock2 = new CallableMultibit("'a'", 1, 2, this.injectionModel, this, "multi#confirm.2");
95
        var callableBlock3 = new CallableMultibit("'a'", 1, 3, this.injectionModel, this, "multi#confirm.3");
96
        callableBlock1.call();
97
        callableBlock2.call();
98
        callableBlock3.call();
99 4 1. isInjectable : replaced boolean return with true for com/jsql/model/injection/strategy/blind/InjectionMultibit::isInjectable → NO_COVERAGE
2. isInjectable : negated conditional → NO_COVERAGE
3. isInjectable : negated conditional → NO_COVERAGE
4. isInjectable : negated conditional → NO_COVERAGE
        return callableBlock1.getIdPage() == 3 && callableBlock2.getIdPage() == 0 && callableBlock3.getIdPage() == 1;
100
    }
101
102
    @Override
103
    public String getInfoMessage() {
104 1 1. getInfoMessage : replaced return value with "" for com/jsql/model/injection/strategy/blind/InjectionMultibit::getInfoMessage → NO_COVERAGE
        return "- Strategy Multibit: query 3 bits when Diffs match index in " + this.diffsById + "\n\n";
105
    }
106
107
    @Override
108
    public void initNextChar(
109
        String sqlQuery,
110
        List<char[]> bytes,
111
        AtomicInteger indexChar,
112
        CompletionService<CallableMultibit> taskCompletionService,
113
        AtomicInteger countTasksSubmitted,
114
        AtomicInteger countBadAsciiCode,
115
        CallableMultibit currentCallable
116
    ) {
117
        indexChar.incrementAndGet();
118
        bytes.add(AbstractInjectionBit.getBitsUnset());
119
        for (int block: new int[]{ 1, 2, 3 }) {
120
            taskCompletionService.submit(
121
                this.getCallableTest(
122
                    sqlQuery,
123
                    indexChar.get(),
124
                    block
125
                )
126
            );
127
            countTasksSubmitted.addAndGet(1);
128
        }
129
    }
130
131
    @Override
132
    public char[] initMaskAsciiChar(List<char[]> bytes, CallableMultibit currentCallable) {
133
        // Bits for current url
134 1 1. initMaskAsciiChar : Replaced integer subtraction with addition → NO_COVERAGE
        char[] asciiCodeMask = bytes.get(currentCallable.getCurrentIndex() - 1);
135 1 1. initMaskAsciiChar : removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::extractBitsFromBlock → NO_COVERAGE
        this.extractBitsFromBlock(currentCallable, asciiCodeMask);
136 1 1. initMaskAsciiChar : replaced return value with null for com/jsql/model/injection/strategy/blind/InjectionMultibit::initMaskAsciiChar → NO_COVERAGE
        return asciiCodeMask;
137
    }
138
139
    /**
140
     * Extract 3 bits from callable for specific block
141
     */
142
    private void extractBitsFromBlock(CallableMultibit currentCallable, char[] bits) {
143 1 1. extractBitsFromBlock : negated conditional → NO_COVERAGE
        if (currentCallable.getBlock() == 1) {
144 1 1. extractBitsFromBlock : removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE
            this.convertIdPageToBits(currentCallable.getIdPage(), bits, 0, 1, 2);
145 1 1. extractBitsFromBlock : negated conditional → NO_COVERAGE
        } else if (currentCallable.getBlock() == 2) {
146 1 1. extractBitsFromBlock : removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE
            this.convertIdPageToBits(currentCallable.getIdPage(), bits, 3, 4, 5);
147 1 1. extractBitsFromBlock : negated conditional → NO_COVERAGE
        } else if (currentCallable.getBlock() == 3) {
148 1 1. extractBitsFromBlock : removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE
            this.convertIdPageToBits(currentCallable.getIdPage(), bits, -1, 6,7);
149
        }
150
    }
151
152
    /**
153
     * Set bits by page id
154
     */
155
    private void convertIdPageToBits(int idPage, char[] bits, int i1, int i2, int i3) {
156
        String idPageBinary = Integer.toBinaryString(idPage);
157
        String idPageBinaryPadded = StringUtils.leftPad(idPageBinary, 3, "0");
158 2 1. convertIdPageToBits : changed conditional boundary → NO_COVERAGE
2. convertIdPageToBits : negated conditional → NO_COVERAGE
        if (i1 > -1) {
159
            bits[i1] = idPageBinaryPadded.charAt(0);
160
        }
161
        bits[i2] = idPageBinaryPadded.charAt(1);
162
        bits[i3] = idPageBinaryPadded.charAt(2);
163
    }
164
165
166
    // Getter
167
168
    public String getSourceReference() {
169 1 1. getSourceReference : replaced return value with "" for com/jsql/model/injection/strategy/blind/InjectionMultibit::getSourceReference → NO_COVERAGE
        return this.sourceReference;
170
    }
171
172
    public List<Diff> getDiffsCommonWithAllIds() {
173 1 1. getDiffsCommonWithAllIds : replaced return value with Collections.emptyList for com/jsql/model/injection/strategy/blind/InjectionMultibit::getDiffsCommonWithAllIds → NO_COVERAGE
        return this.diffsCommonWithAllIds;
174
    }
175
176
    public List<List<Diff>> getDiffsById() {
177 1 1. getDiffsById : replaced return value with Collections.emptyList for com/jsql/model/injection/strategy/blind/InjectionMultibit::getDiffsById → NO_COVERAGE
        return this.diffsById;
178
    }
179
}

Mutations

34

1.1
Location : <init>
Killed by : none
negated conditional → NO_COVERAGE

42

1.1
Location : <init>
Killed by : none
changed conditional boundary → NO_COVERAGE

2.2
Location : <init>
Killed by : none
negated conditional → NO_COVERAGE

54

1.1
Location : <init>
Killed by : none
removed call to com/jsql/util/ThreadUtil::shutdown → NO_COVERAGE

58

1.1
Location : <init>
Killed by : none
negated conditional → NO_COVERAGE

73

1.1
Location : <init>
Killed by : none
removed call to java/lang/Thread::interrupt → NO_COVERAGE

78

1.1
Location : getCallableTest
Killed by : none
replaced return value with null for com/jsql/model/injection/strategy/blind/InjectionMultibit::getCallableTest → NO_COVERAGE

90

1.1
Location : isInjectable
Killed by : none
negated conditional → NO_COVERAGE

99

1.1
Location : isInjectable
Killed by : none
replaced boolean return with true for com/jsql/model/injection/strategy/blind/InjectionMultibit::isInjectable → NO_COVERAGE

2.2
Location : isInjectable
Killed by : none
negated conditional → NO_COVERAGE

3.3
Location : isInjectable
Killed by : none
negated conditional → NO_COVERAGE

4.4
Location : isInjectable
Killed by : none
negated conditional → NO_COVERAGE

104

1.1
Location : getInfoMessage
Killed by : none
replaced return value with "" for com/jsql/model/injection/strategy/blind/InjectionMultibit::getInfoMessage → NO_COVERAGE

134

1.1
Location : initMaskAsciiChar
Killed by : none
Replaced integer subtraction with addition → NO_COVERAGE

135

1.1
Location : initMaskAsciiChar
Killed by : none
removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::extractBitsFromBlock → NO_COVERAGE

136

1.1
Location : initMaskAsciiChar
Killed by : none
replaced return value with null for com/jsql/model/injection/strategy/blind/InjectionMultibit::initMaskAsciiChar → NO_COVERAGE

143

1.1
Location : extractBitsFromBlock
Killed by : none
negated conditional → NO_COVERAGE

144

1.1
Location : extractBitsFromBlock
Killed by : none
removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE

145

1.1
Location : extractBitsFromBlock
Killed by : none
negated conditional → NO_COVERAGE

146

1.1
Location : extractBitsFromBlock
Killed by : none
removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE

147

1.1
Location : extractBitsFromBlock
Killed by : none
negated conditional → NO_COVERAGE

148

1.1
Location : extractBitsFromBlock
Killed by : none
removed call to com/jsql/model/injection/strategy/blind/InjectionMultibit::convertIdPageToBits → NO_COVERAGE

158

1.1
Location : convertIdPageToBits
Killed by : none
changed conditional boundary → NO_COVERAGE

2.2
Location : convertIdPageToBits
Killed by : none
negated conditional → NO_COVERAGE

169

1.1
Location : getSourceReference
Killed by : none
replaced return value with "" for com/jsql/model/injection/strategy/blind/InjectionMultibit::getSourceReference → NO_COVERAGE

173

1.1
Location : getDiffsCommonWithAllIds
Killed by : none
replaced return value with Collections.emptyList for com/jsql/model/injection/strategy/blind/InjectionMultibit::getDiffsCommonWithAllIds → NO_COVERAGE

177

1.1
Location : getDiffsById
Killed by : none
replaced return value with Collections.emptyList for com/jsql/model/injection/strategy/blind/InjectionMultibit::getDiffsById → NO_COVERAGE

Active mutators

Tests examined


Report generated by PIT 1.19.1