From bf11edfbf02d59cc1352c37bd6a543ce15f6a45b Mon Sep 17 00:00:00 2001 From: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com> Date: Fri, 15 Sep 2023 14:26:02 +0530 Subject: [PATCH] added word matcher --- http/osint/yeswehack.yaml | 15 ++++++++++++--- 1 file changed, 12 insertions(+), 3 deletions(-) diff --git a/http/osint/yeswehack.yaml b/http/osint/yeswehack.yaml index 5c4cb1cb08..7c77babf84 100644 --- a/http/osint/yeswehack.yaml +++ b/http/osint/yeswehack.yaml @@ -3,16 +3,16 @@ id: yeswehack info: name: Yeswehack User Name Information - Detect author: philippedelteil - description: Yeswehack user name information check was conducted. (https://yeswehack.com/). - Detection will work if the profile is set to be public. severity: info + description: | + Yeswehack user name information check was conducted. Detection will work if the profile is set to be public. classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cvss-score: 0.0 cwe-id: CWE-200 - tags: osint,osint-tech,yeswehack metadata: max-request: 1 + tags: osint,osint-tech,yeswehack self-contained: true http: @@ -22,6 +22,15 @@ http: matchers-condition: and matchers: + - type: word + part: body + words: + - '"username":"{{user}}"' + - '"kyc_status":' + - 'hunter_profile' + condition: and + case-insensitive: true + - type: status status: - 200