keyhacks
keyhacks copied to clipboard
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
Hello, I have suggestion add apigee client id and secret. With client id and secret, we can gain full access to apigee service of that company who leak id and...
I've started this work cleaning up the ToC in #44 however after doing so I noticed there's further work to be done to remove duplicates (github personal access tokens, for...
Hi @streaak i have a query that, I'm unable understood how to use Google recaptcha key to be exploited. Can you explain it please? Thank you
In android application developers hard code Cloudinary basic auth details. Auth details when hard coded in application looks very similar to this : `cloudinary://:@cloud_name` `cloudinary://992338483313848:bCfgrMedsaRF75zB3rr08yY_8pI1k@dfjx2e1y6` To verify those ```bash curl...
Waw
found instances where certain tokens give invalid auth using the method published, this one works and and it's used by https://github.com/trufflesecurity/trufflehog/blob/main/pkg/detectors/slack/slack.go for example
HI I don't Know how to approach you & this is my first time in contribution i don't know how to contribute in github but recently i found COIN MARKET...