keyhacks icon indicating copy to clipboard operation
keyhacks copied to clipboard

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

Results 49 keyhacks issues
Sort by recently updated
recently updated
newest added

Hello, I have suggestion add apigee client id and secret. With client id and secret, we can gain full access to apigee service of that company who leak id and...

status: pr needed

I've started this work cleaning up the ToC in #44 however after doing so I noticed there's further work to be done to remove duplicates (github personal access tokens, for...

help wanted
good first issue

Hi @streaak i have a query that, I'm unable understood how to use Google recaptcha key to be exploited. Can you explain it please? Thank you

In android application developers hard code Cloudinary basic auth details. Auth details when hard coded in application looks very similar to this : `cloudinary://:@cloud_name` `cloudinary://992338483313848:bCfgrMedsaRF75zB3rr08yY_8pI1k@dfjx2e1y6` To verify those ```bash curl...

found instances where certain tokens give invalid auth using the method published, this one works and and it's used by https://github.com/trufflesecurity/trufflehog/blob/main/pkg/detectors/slack/slack.go for example

HI I don't Know how to approach you & this is my first time in contribution i don't know how to contribute in github but recently i found COIN MARKET...