Commit Graph

333 Commits (854016684c8291e4a406929a371150b5ba6735d4)

Author SHA1 Message Date
Kophjager007 2a0d868ce8 Updated and added Dell iDRAC files 2021-02-26 12:49:21 -06:00
sandeep 1ba9f0d33d syntax update and added additional endpoints 2021-02-26 20:04:38 +05:30
sandeep 80ab50a9f0 misc changes 2021-02-26 18:41:33 +05:30
sandeep 81e6c97c65 Adding templates for dell-idrac 2021-02-26 04:01:38 +05:30
sandeep dfc59f32af ext update 2021-02-26 00:40:01 +05:30
Joan Bono 5c87671a00
Create gunicorn-detect.yml 2021-02-25 16:18:05 +01:00
sandeep a4f8127283 improved matcher 2021-02-22 12:06:39 +05:30
PikPikcU 30b38bb9d1
Create harbor-detect.yaml 2021-02-19 12:54:30 +07:00
PikPikcU 7f1d6ee362
Update path apache-nifi-detect (#824) 2021-02-08 16:13:14 +05:30
PD-Team da2080f15e removing duplicate 2021-02-05 11:06:46 +05:30
PD-Team 675c576b86
Merge pull request #757 from wdahlenburg/split_spring_boot_detect
Split up springboot-detect
2021-01-29 00:07:17 +05:30
PD-Team 663de70127 workflow updates 2021-01-28 23:47:22 +05:30
Geeknik Labs 26ded33ff7
Create selea-ip-camera.yaml
This only detects the presence of the camera control panel. It's up to the user to verify the "unauthenticated stream disclosure" exists. Please see the URL in the description for details.
2021-01-22 16:16:49 +00:00
PD-Team 1a14ff8c44 syntax update 2021-01-19 12:33:48 +05:30
parrot 58ebf59035 Added ThinkPHP templates and signature. 2021-01-19 01:16:59 -03:00
Geeknik Labs 1a6c4e7f33
Update lucee-detect.yaml 2021-01-16 15:25:15 +00:00
Geeknik Labs 642480ecb8
Create lucee-detect.yaml 2021-01-16 15:02:41 +00:00
PD-Team dc24595935 BaseURL updates 2021-01-14 20:11:56 +05:30
PD-Team 9234a6801f moving files around 2021-01-14 12:27:13 +05:30
team-projectdiscovery 106da77fc3 Preparing for request clustering 2021-01-13 13:01:46 +05:30
team-projectdiscovery eaaf56e9da workflow updates 2021-01-09 18:58:57 +05:30
team-projectdiscovery 187e4a5feb moving more files around 2021-01-09 18:32:04 +05:30
team-projectdiscovery 95d784d9b7 moving folder/files around 2021-01-08 22:25:54 +05:30
team-projectdiscovery 7b749674d4 Delete monit-detect.yaml 2021-01-08 00:51:59 +05:30
team-projectdiscovery 81e207870e Update tech-detect.yaml 2021-01-08 00:51:12 +05:30
team-projectdiscovery 07d2aec8b6 Update monit-detect.yaml 2021-01-08 00:48:22 +05:30
Geeknik Labs b6328c0951
Create monit-detect.yaml 2021-01-07 09:57:51 -06:00
team-projectdiscovery 88927b0593 Update tor-socks-proxy.yaml 2020-12-28 15:31:48 +05:30
Geeknik Labs 339b4c1e5a
Update tor-socks-proxy.yaml 2020-12-27 21:30:40 -06:00
Geeknik Labs 876e405d98
Create tor-socks-proxy.yaml
Can find examples on Shodan with the `title:"This is a SOCKS Proxy, Not An HTTP Proxy"` search query. 👍🏻
2020-12-27 21:27:51 -06:00
PD-Team 01af7248cb
Merge pull request #673 from geeknik/patch-26
Create cacti-detect.yaml
2020-12-13 23:41:21 +05:30
PD-Team 9fc9c83855
Merge pull request #672 from geeknik/patch-25
Create mrtg-detect.yaml
2020-12-13 23:38:28 +05:30
Geeknik Labs cffc385810
Update cacti-detect.yaml 2020-12-11 17:24:58 +00:00
Geeknik Labs fc5976e055
Update mrtg-detect.yaml
Missing `matchers-condition: and`. All good now.
2020-12-11 17:23:23 +00:00
Geeknik Labs 7b3cfde5ce
Create cacti-detect.yaml 2020-12-11 14:39:47 +00:00
Geeknik Labs 37476b9aa9
Create mrtg-detect.yaml 2020-12-11 14:31:16 +00:00
Geeknik Labs d3f59bdf73
Create prtg-detect.yaml 2020-12-11 14:31:04 +00:00
bauthard d547d09bfd moving dirs 2020-12-03 10:12:22 +05:30
bauthard 18ca239039 Added oipm-detect 2020-12-01 18:50:54 +05:30
nodauf 5a677bb8a7
Detect One Identity Password Manager 2020-11-30 17:01:13 +01:00
bauthard f72215b580 Added pfsense to tech detect 2020-11-29 17:34:03 +05:30
Geeknik Labs 7885fd32c2
Create pfsense-detect.yaml 2020-11-28 13:56:18 +00:00
bauthard ccc7cfba52 reference update 2020-11-27 19:37:46 +05:30
Geeknik Labs 178b142c01
Create redmine-cli-detect.yaml 2020-11-25 20:29:10 +00:00
bauthard 1c912b753d matcher fix n updates 2020-11-25 01:41:47 +05:30
Geeknik Labs 5f390de054
Update terraform-detect.yaml 2020-11-23 22:30:25 +00:00
Geeknik Labs e041688b8d
Create terraform-detect.yaml
More info on Terraform and their configuration files can be found here: https://www.freecodecamp.org/news/build-a-screenshot-capture-api-using-terraform-aws-api-gateway-and-aws-lambda/
2020-11-23 22:28:55 +00:00
bauthard e59b433c3e Favicon recon ++
Adding 500+ signatures based on shodan-favicon-hashes
2020-11-19 19:38:49 +05:30
bauthard 3b36d0c246 removing favicon-detection 2020-11-19 19:28:35 +05:30
bauthard a61ffd47a8 Favicon recon ++
Adding 500+ signatures based on shodan-favicon-hashes
2020-11-19 19:26:42 +05:30
bauthard e9902629c1 moving files 2020-11-08 15:47:24 +05:30
Mukul 9fc3e503da fixed file ext issue 2020-11-08 15:30:03 +05:30
Mukul dadf6694e8 added aws load balancer tech detect yml 2020-11-08 14:46:02 +05:30
bauthard 1505e88b68
Merge pull request #556 from projectdiscovery/basic-auth-fuzzing
Adding basic auth fuzzing
2020-11-07 18:23:18 +05:30
bauthard de55e6439d Update kibana-detect.yaml 2020-11-06 16:24:02 +05:30
Aan d2c0b785ba
Simplifying Yaml Format 2020-11-04 16:40:46 +07:00
Aan 9893610bb1
Add Kibana Service Technology 2020-11-04 15:49:18 +07:00
Casper Guldbech Nielsen f8c6b9672b Add detection of SEEEMS CMS
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-10-22 21:06:09 +02:00
bauthard fbab199d58 Update oidc-detect.yaml 2020-10-20 17:49:01 +05:30
Jari Jääskelä b80d5a0c4e Add oidc-detect 2020-10-19 22:50:55 +03:00
Dwi Siswanto c91dda0d54 Improves WAF detects 2020-10-18 03:46:46 +07:00
bauthard 5a3a1134f9
Update graphql.yaml 2020-10-16 23:09:52 +05:30
Geeknik Labs 71d2b16a88
Create pi-hole-detect.yaml 2020-10-15 17:03:33 +00:00
gevakun f10c8c8363
Update graphql.yaml
Reference:
https://twitter.com/sillydadddy/status/1309403695977648129/photo/1
2020-10-15 16:05:13 +07:00
bauthard 1c4c6982d5 Adding basic auth detection / bruteforce / workflows 2020-10-13 23:55:28 +05:30
bauthard bcc2d55a92 Update kong-detect.yaml 2020-10-12 21:28:41 +05:30
Geeknik Labs 51761b0444
Create kong-detect.yaml
34,747 results for `Kong` on Shodan. Good luck!
2020-10-12 14:13:21 +00:00
bauthard 4e3e48f30a removing duplicate tech 2020-10-11 18:09:49 +05:30
bauthard d7c406209b
Merge pull request #547 from 0xTeles/master
Add template to detect Cloud Storage Bucket
2020-10-09 21:50:16 +05:30
bauthard a79b4a05c8 updates 2020-10-09 21:49:00 +05:30
Teles df5d990550 Add gstorage 2020-10-09 12:54:04 -03:00
bauthard a323cb0fa3 Updating GraphQL endpoints 2020-10-09 21:19:07 +05:30
Dwi Siswanto 0524135cc2 ✏️ Update type matchers 2020-10-05 14:24:50 +07:00
Dwi Siswanto 0ecec7d303 🔨 Add apache-nifi-detect 2020-10-05 14:23:49 +07:00
Jari Jääskelä be93d672eb Fix "prometheus-exporter-detect" false positives 2020-10-04 14:23:02 +03:00
Jari Jääskelä c7176eed20 Change author 2020-10-02 19:33:03 +03:00
Jari Jääskelä 3a6e0c533d Strip trailing whitespace 2020-10-02 00:18:22 +03:00
Jari Jääskelä a08409bfbe Add prometheus exporter detect template 2020-10-02 00:09:13 +03:00
bauthard c66a6f47ee
Merge pull request #502 from dwisiswant0/add/WhatWAF
Add WhatWAF detection
2020-09-29 01:14:53 +05:30
bauthard e92afd659e template update 2020-09-29 01:14:06 +05:30
un-fmunozs bc6e1b3a13 Update favicon-detection.yaml 2020-09-28 00:29:12 -05:00
Dwi Siswanto 3ba24809b1 📝 Fix indentation 2020-09-28 03:16:10 +07:00
Dwi Siswanto 05d1fe77f6 🔥 Add WhatWAF detection 2020-09-28 03:13:29 +07:00
bauthard 164075fb28 syntax update 2020-09-24 23:46:21 +05:30
Philippe Delteil 6b1ec31424 tomcat detected improved using groups 2020-09-24 01:34:05 +00:00
Philippe Delteil b47fa0f130 apache version detector 2020-09-22 22:16:37 +00:00
Philippe Delteil 01d618c2e0 apache tomcat version detecter 2020-09-22 21:26:52 +00:00
bauthard 9396e6058d Update graphql.yaml 2020-09-21 19:31:20 +05:30
bauthard dbfa0fca2d severity updates 2020-09-20 18:27:43 +05:30
bauthard 00406c5683 Update shiro-detect.yaml 2020-09-17 22:15:58 +05:30
Ares-X 0530e7df4e Create shiro-detect.yaml 2020-09-17 22:53:16 +08:00
bauthard 4d98fb599a
Merge pull request #474 from CasperGN/mida-framework-workflow
Mida eframework workflow
2020-09-16 23:07:13 +05:30
Casper Guldbech Nielsen 1fe0a1d4b6 Linting
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-16 19:29:50 +02:00
Casper Guldbech Nielsen 8f8a3074b7 Addition of detection of Mida eFramework - prep for workflow
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-16 19:25:53 +02:00
Dwi Siswanto 227205621e 🔨 Add MobileIron 2020-09-14 21:27:37 +07:00
bauthard ba446fae09 Update lotus-domino-version.yaml 2020-09-10 02:04:24 +05:30
Casper Nielsen 7c653326b5
Update lotus-domino-version.yaml 2020-09-09 10:43:16 +02:00
Casper Guldbech Nielsen 2faf456c12 Yamlint passing now
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-09 10:37:34 +02:00
Casper Guldbech Nielsen 8a9d5b96da Had another spacing issue lurking about
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-09 10:33:25 +02:00
Casper Guldbech Nielsen 1fe256c363 Spacing removed
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-09 10:17:21 +02:00
Casper Guldbech Nielsen c3c2d9f61c Removing newlines for visuals
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-09 10:16:25 +02:00
Casper Guldbech Nielsen 8ef356cc75 Inclusion of lotus domino version detection
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-09-09 10:11:07 +02:00
Dwi Siswanto e90d6742c9 🔨 Remove version from matcher 2020-09-06 12:23:52 +07:00
Dwi Siswanto 3446569f93 🔨 Add MAGMI detect 2020-09-04 20:31:05 +07:00
Dwi Siswanto ca4dbf605b 🔡 Justifying id's 2020-09-01 09:25:25 +07:00
bauthard f70ab2d5c8 Update tech-detect.yaml 2020-08-31 23:56:18 +05:30
bauthard 2341811f65 moving this to tech detect 2020-08-31 22:50:06 +05:30
Casper Guldbech Nielsen 99cd7a6b3c Included detection of Lotus-Domino server based on Headers
Signed-off-by: Casper Guldbech Nielsen <whopsec@protonmail.com>
2020-08-31 15:52:36 +02:00
un-fmunozs 42035ee66f Update favicon-detection.yaml 2020-08-31 00:01:26 -05:00
un-fmunozs d107dc26ad Update favicon-detection.yaml
Add jira, gitlab and fixed wordpress hash
2020-08-29 12:40:08 -05:00
bauthard 3ce4f7619a Update tech-detect.yaml 2020-08-27 15:02:33 +05:30
bauthard d2b2d0b280 Update tech-detect.yaml 2020-08-27 14:53:15 +05:30
bauthard f21e451e4c Update tech-detect.yaml 2020-08-27 14:41:00 +05:30
bauthard cdc58647ed adding additional path for jira 2020-08-27 14:24:46 +05:30
bauthard 85065e916a
Merge pull request #340 from un-fmunozs/favicon
Recon using favicon
2020-08-24 12:02:00 +05:30
bauthard bd6b6bb7fc updates 2020-08-24 11:59:54 +05:30
un-fmunozs ba9d66c0e5 Update favicon.yaml
fix spaces again
2020-08-23 20:24:34 -05:00
un-fmunozs c0846eed5e Update favicon.yaml
spaces
2020-08-23 20:18:27 -05:00
un-fmunozs b94e0b0600 Create favicon.yaml
Favicon fingerprinting
2020-08-23 20:16:20 -05:00
Dwi Siswanto 6b6ca0a3f5 🔨 Remove trailing newlines 2020-08-21 02:10:31 +07:00
bauthard 26fc8b5a23 updating PR 2020-08-21 00:31:07 +05:30
Dwi Siswanto f571f2c0ac 🔨 Add Artica Web Proxy Detection 2020-08-20 22:04:51 +07:00
bauthard f102c94ef4 reworking ntlm-directories 2020-08-20 13:10:24 +05:30
bauthard 4124bfe326 vbulletin update 2020-08-10 14:38:50 +05:30
bauthard 7807d16913 tech updates 2020-08-08 03:21:16 +05:30
un-fmunozs 4425ee7a01 Update tech-detect.yaml 2020-08-07 16:15:38 -05:00
un-fmunozs c21eccd8e6 Improve drupal detection on tech-detect and drop cms-detect
tech-detect does a better job with more cms than cms-detect, strings from cms-detect added for drupal. wordpress detection on tech-detect is ok. Fix #289
2020-08-07 16:14:24 -05:00
bauthard c30dc25289 uniform severity update 2020-08-04 03:22:00 +05:30
Dwi Siswanto 6c7c64342c Add SAP NetWeaver AS JAVA detection 2020-07-21 13:53:29 +07:00
dw1 f664a763dc 🔨 Add Netsweeper WebAdmin detection 2020-07-08 02:26:45 +07:00
dw1 c3a0b6c5a6 🔨 Update BIG-IP Configuration Utility detection matchers 2020-07-06 08:45:33 +07:00
dw1 25d5c5afb0 🔥 BIG-IP Configuration Utility detection 2020-07-06 08:36:25 +07:00
bauthard 765b15d79a
Update ntlm-directories.yaml 2020-07-04 10:58:15 +05:30
Manuel Bua cd4da8998a Perform comparison on the normalized header name 2020-07-03 23:07:32 +02:00
Manuel Bua ec5b66a941 Remove duplicate entries 2020-07-03 23:06:50 +02:00
dw1 c173cb357b 🔧 Update Liferay Portal Detection 2020-07-04 00:53:46 +07:00
bauthard 72f3939981 syntax updates 2020-07-02 18:11:53 +00:00
organiccrap 2d8c78c263 updates 2020-07-02 21:53:41 +08:00
bauthard 3b8e5ae229 Added Wappalyzer Technology Detection
Ported hakluke PR into single template
2020-06-27 16:39:16 +05:30
bauthard d7a5af2b28 updating severity of multiple templates 2020-06-25 02:37:58 +05:30
Manuel Bua 410423834c Tweak flags 2020-06-22 23:41:24 +02:00
Manuel Bua 19edc73166 Fix formatting 2020-06-22 23:31:30 +02:00
Manuel Bua c5fc99af49 Add rules Linkerd service detection 2020-06-22 23:25:52 +02:00
Fabian Affolter f91db35304
Add more servers 2020-05-27 11:16:45 +02:00
bauthard e7a60ff23f updating file name 2020-05-27 14:40:52 +05:30
bauthard 57f5c32a4c
Merge pull request #124 from fabaff/cdn
Support for detecting content delivery networks (CDNs)
2020-05-27 14:40:22 +05:30
Fabian Affolter bb0c5f5427
Support for detecting content delivery networks (CDNs) 2020-05-27 10:58:12 +02:00
Fabian Affolter cf805d1f50
Fix typo 2020-05-27 10:57:33 +02:00
bauthard 827db6a33e
updating format 2020-05-25 18:24:19 +05:30
bauthard a93940e671
Merge pull request #116 from rakeshmane/patch-1
Create sap-netweaver-detect.yaml
2020-05-25 18:07:30 +05:30
Fabian Affolter ca5fcdb921
Add some more servers 2020-05-25 14:16:17 +02:00
Rakesh Mane 04d44eda8a
Create sap-netweaver-detect.yaml 2020-05-25 16:07:40 +05:30
Fabian Affolter 3dfc2f99db
Update syntax 2020-05-25 10:24:39 +02:00
bauthard bf645f6c1f
Merge pull request #105 from fabaff/web-server
Add support for detecting web server daemons
2020-05-25 10:41:51 +05:30
bauthard 0a93e3ff5c
Merge pull request #103 from fabaff/home-assistant
Add support for detecting a Home Assistant instance
2020-05-25 10:17:39 +05:30
Fabian Affolter e62e98eecb
Use the page's title 2020-05-24 22:41:36 +02:00
Fabian Affolter 0e55fef167
Add support for detecting web server daemons 2020-05-24 22:16:42 +02:00
Fabian Affolter 0e3f78cc09
Add CPython 2020-05-24 20:31:35 +02:00
Fabian Affolter 6456518812
Add support for detecting a Home Assistant instance 2020-05-24 20:23:35 +02:00
bauthard 94cdb52ee1
added Werkzeug debugger console finder 2020-05-20 18:27:45 +05:30
Koti Reddy Aluri 35335a8e68
Update jaspersoft-detect.yaml 2020-05-07 15:15:12 +05:30
Koti Reddy Aluri 85b6ec40cb
jaspersoft-detect 2020-05-07 15:10:45 +05:30
Aditya Soni aeb208a5ee
update aem-cms-finder 2020-05-02 22:01:39 +05:30
bauthard ebcc4b1823 added aem checker 2020-04-26 14:12:16 +00:00
bauthard f2c1a7225a
updating with new matcher condition 2020-04-26 08:29:23 +05:30
bauthard a0bd579973
updating with new matcher condition 2020-04-26 08:28:42 +05:30
bauthard 277aef02b3
updating with new matcher condition 2020-04-26 08:28:00 +05:30
bauthard 9eb7de2fa3
updating with new matcher condition 2020-04-26 08:27:19 +05:30
bauthard 599c682a99
Merge pull request #45 from NkxxkN/NkxxkN/multiple-fingerprints
Add ReverseProxy/Language/CMS/Web-Framework&Tools detect
2020-04-23 03:44:17 +05:30
Kevin Antoine e221dcfed1 Add ReverseProxy/Language/CMS/Web-Framework&Tools detect 2020-04-22 15:31:59 +02:00
NkxxkN c136e7f77a Add graphql.yaml 2020-04-20 12:52:29 +00:00
med pro 0f22c6deb6
Update weblogic-detect.yaml 2020-04-19 21:12:59 +01:00
med pro 8d1d429f23
Create weblogic-detect.yaml 2020-04-19 20:38:02 +01:00
bauthard f121770ecc
Merge pull request #16 from puzzlepeaches/master
More PHPMyAdmin paths and NTLM dirs check
2020-04-07 21:15:47 +05:30
Nicholas 82ce64e9a8 oops 2020-04-07 10:12:59 -05:00
Nicholas e6ba734753 syncing 2020-04-07 10:12:45 -05:00
bauthard 6951baef4f
updating to maintain the uniform structure 2020-04-07 19:32:32 +05:30
bauthard c0ebb726a3
Merge pull request #13 from puzzlepeaches/master
Mailchimp and Amazon MWS API Keys
2020-04-07 19:19:22 +05:30
Nicholas Anastasi cb2d158386 Detecting Microsoft SQL Server Reporting webui 2020-04-07 08:25:49 -05:00
Sahil Ahamad f08b4a678c
Gitlab Detect
Fingerprinting Gitlab can help the hacker in multiple ways, Sometimes hackers can find the signup or explore option open and using these he can escalate the access further.
2020-04-07 15:38:21 +05:30
Sahil Ahamad 68b0abf7b2
Github Enterprise Detect
Detecting the Github Enterprise can help the hacker in multiple ways to understand the structure of the internal services for a target.
2020-04-07 15:29:18 +05:30
Mohamed Elbadry 40944e996b
Create s3-detect.yaml 2020-04-06 06:36:46 +02:00
Ice3man543 229ea11e8b Added templates 2020-04-04 23:49:48 +05:30