Added Razorpay-client-id, Zapier webhook, mapbox, fcm api keys
parent
9fc1d1cac2
commit
7634ef7153
|
@ -0,0 +1,18 @@
|
|||
id: fcm-api-key
|
||||
|
||||
info:
|
||||
name: Firebase Cloud Messaging Token
|
||||
author: Devang-Solanki
|
||||
severity: medium
|
||||
tags: token,file,fcm,firebase,google
|
||||
|
||||
requests:
|
||||
- method: GET
|
||||
path:
|
||||
- "{{BaseURL}}"
|
||||
extractors:
|
||||
- type: regex
|
||||
part: body
|
||||
regex:
|
||||
- '[A-Za-z0-9-_]+:APA91b[A-Za-z0-9-_#]+'
|
||||
|
|
@ -0,0 +1,17 @@
|
|||
id: mapbox-token
|
||||
|
||||
info:
|
||||
name: Mapbox Token
|
||||
author: Devang-Solanki
|
||||
severity: medium
|
||||
tags: token,file,mapbox
|
||||
|
||||
requests:
|
||||
- method: GET
|
||||
path:
|
||||
- "{{BaseURL}}"
|
||||
extractors:
|
||||
- type: regex
|
||||
part: body
|
||||
regex:
|
||||
- 'sk\.eyJ1Ijoi\w+\.[\w-]*'
|
|
@ -0,0 +1,17 @@
|
|||
id: razorpay-client-id
|
||||
|
||||
info:
|
||||
name: Razorpay Clienr ID Disclosure
|
||||
author: Devang-Solanki
|
||||
severity: info
|
||||
tags: exposure,token,razorpay
|
||||
|
||||
requests:
|
||||
- method: GET
|
||||
path:
|
||||
- "{{BaseURL}}"
|
||||
extractors:
|
||||
- type: regex
|
||||
part: body
|
||||
regex:
|
||||
- "rzp_(live|test)_.{14}"
|
|
@ -0,0 +1,16 @@
|
|||
id: fcm-api-key
|
||||
|
||||
info:
|
||||
name: Firebase Cloud Messaging Token
|
||||
author: Devang-Solanki
|
||||
severity: medium
|
||||
tags: token,file,fcm,firebase,google
|
||||
|
||||
file:
|
||||
- extensions:
|
||||
- all
|
||||
|
||||
extractors:
|
||||
- type: regex
|
||||
regex:
|
||||
- '[A-Za-z0-9-_]+:APA91b[A-Za-z0-9-_#]+'
|
|
@ -0,0 +1,16 @@
|
|||
id: mapbox-token
|
||||
|
||||
info:
|
||||
name: Mapbox Token
|
||||
author: Devang-Solanki
|
||||
severity: medium
|
||||
tags: token,file,mapbox
|
||||
|
||||
file:
|
||||
- extensions:
|
||||
- all
|
||||
|
||||
extractors:
|
||||
- type: regex
|
||||
regex:
|
||||
- 'sk\.eyJ1Ijoi\w+\.[\w-]*'
|
|
@ -0,0 +1,15 @@
|
|||
id: razorpay-client-id
|
||||
|
||||
info:
|
||||
name: Razorpay client-id
|
||||
author: Devang-Solanki
|
||||
severity: high
|
||||
tags: token,file,razorpay
|
||||
file:
|
||||
- extensions:
|
||||
- all
|
||||
|
||||
extractors:
|
||||
- type: regex
|
||||
regex:
|
||||
- "rzp_(live|test)_.{14}"
|
|
@ -0,0 +1,16 @@
|
|||
id: zapier-webhook
|
||||
|
||||
info:
|
||||
name: Zapier Webhook
|
||||
author: Devang-Solanki
|
||||
severity: high
|
||||
tags: token,file,zapier
|
||||
|
||||
file:
|
||||
- extensions:
|
||||
- all
|
||||
|
||||
extractors:
|
||||
- type: regex
|
||||
regex:
|
||||
- 'https://(?:www.)?hooks\.zapier\.com/hooks/catch/[A-Za-z0-9]+/[A-Za-z0-9]+/'
|
Loading…
Reference in New Issue