Skip to content

Instantly share code, notes, and snippets.

@yassineaboukir
Forked from ehsahil/github-recon
Created April 10, 2019 15:47
Show Gist options
  • Save yassineaboukir/210c81f3d08ff9d9ca21e0ea543e016d to your computer and use it in GitHub Desktop.
Save yassineaboukir/210c81f3d08ff9d9ca21e0ea543e016d to your computer and use it in GitHub Desktop.

Revisions

  1. @ehsahil ehsahil revised this gist Jun 4, 2018. 2 changed files with 24 additions and 24 deletions.
    24 changes: 0 additions & 24 deletions Github-recon-dork
    Original file line number Diff line number Diff line change
    @@ -1,24 +0,0 @@
    “Hackme.tld” **API_key**
    “Hackme.tld” **secret_key**
    “Hackme.tld” **aws_key**
    “Hackme.tld” **Password** 
    “Hackme.tld” **FTP**
    “Hackme.tld” **login**
    “Hackme.tld” **github_token** 
    “Hackme.tld” **http:// & https://**  
    “Hackme.tld” **amazonaws** 
    “Hackme.tld” **digitaloceanspaces** 
    “Hackme.tld” **storage.googleapis.com** 
    “Hackme.tld” **access_token** 
    “Hackme.tld” **blob.core.windows.net**
    “Hackme.tld” **token**
    “Hackme.tld” **secret**
    “Hackme.tld” **TODO**
    “Hackme.tld” **vulnerable**
    “Hackme.tld” **CSRF**
    “Hackme.tld” **Hash**
    “Hackme.tld” **random**
    “Hackme.tld” **HMAC**
    “Hackme.tld” **MD5, SHA-1, SHA-2, etc.**

    Most of above strings taken from https://edoverflow.com//2017/github-for-bugbountyhunters
    24 changes: 24 additions & 0 deletions github-recon
    Original file line number Diff line number Diff line change
    @@ -0,0 +1,24 @@
    “Hackme.tld” API_key
    “Hackme.tld” secret_key
    “Hackme.tld” aws_key
    “Hackme.tld” Password 
    “Hackme.tld” FTP
    “Hackme.tld” login
    “Hackme.tld” github_token
    “Hackme.tld” http:// & https://  
    “Hackme.tld” amazonaws
    “Hackme.tld” digitaloceanspaces
    “Hackme.tld” storage.googleapis.com
    “Hackme.tld” access_token
    “Hackme.tld” blob.core.windows.net
    “Hackme.tld” token
    “Hackme.tld” secret
    “Hackme.tld” TODO
    “Hackme.tld” vulnerable
    “Hackme.tld” CSRF
    “Hackme.tld” Hash
    “Hackme.tld” random
    “Hackme.tld” HMAC
    “Hackme.tld” MD5, SHA-1, SHA-2, etc.

    credits @edoverflow & @nahamsec.
  2. @ehsahil ehsahil created this gist Jun 4, 2018.
    24 changes: 24 additions & 0 deletions Github-recon-dork
    Original file line number Diff line number Diff line change
    @@ -0,0 +1,24 @@
    “Hackme.tld” **API_key**
    “Hackme.tld” **secret_key**
    “Hackme.tld” **aws_key**
    “Hackme.tld” **Password** 
    “Hackme.tld” **FTP**
    “Hackme.tld” **login**
    “Hackme.tld” **github_token** 
    “Hackme.tld” **http:// & https://**  
    “Hackme.tld” **amazonaws** 
    “Hackme.tld” **digitaloceanspaces** 
    “Hackme.tld” **storage.googleapis.com** 
    “Hackme.tld” **access_token** 
    “Hackme.tld” **blob.core.windows.net**
    “Hackme.tld” **token**
    “Hackme.tld” **secret**
    “Hackme.tld” **TODO**
    “Hackme.tld” **vulnerable**
    “Hackme.tld” **CSRF**
    “Hackme.tld” **Hash**
    “Hackme.tld” **random**
    “Hackme.tld” **HMAC**
    “Hackme.tld” **MD5, SHA-1, SHA-2, etc.**

    Most of above strings taken from https://edoverflow.com//2017/github-for-bugbountyhunters