sandeep
cda7245de9
misc update
2021-10-21 04:21:52 +05:30
Sandeep Singh
00b0b7ecd0
Merge pull request #2936 from FlorianMaak/master
...
Add jetbrains datasource exposure check
2021-10-21 04:13:38 +05:30
Sandeep Singh
06b38542ff
Update jetbrains-datasources.yaml
2021-10-21 04:11:30 +05:30
martincodes
5f7519a89a
add template for .idea files with sensitive data
2021-10-20 22:13:41 +02:00
Geeknik Labs
ccc026ac70
Update github-workflows-disclosure.yaml
...
Might expose a SNYK_TOKEN
2021-10-20 13:44:17 -05:00
Florian Maak
ecdb28d826
Add jetbrains datasource exposure check
2021-10-20 19:14:25 +02:00
Sufijen Bani
9ded2fcccf
Add Gruntfile Expose Test
...
Gruntfile can include secrets or other information that helps find
further vulnerabilities.
2021-10-20 19:05:54 +02:00
Prince Chaddha
0152a2c355
Merge pull request #2917 from geeknik/patch-36
...
Create prometheus-config-endpoint.yaml
2021-10-19 22:28:09 +05:30
Prince Chaddha
e2a074730e
Merge pull request #2919 from geeknik/patch-37
...
Create prometheus-flags-endpoint.yaml
2021-10-19 22:27:39 +05:30
Prince Chaddha
c0857e0ab6
Merge pull request #2920 from geeknik/patch-38
...
Create prometheus-targets-endpoint.yaml
2021-10-19 22:27:23 +05:30
Prince Chaddha
8a69822285
Update prometheus-config-endpoint.yaml
2021-10-19 22:26:52 +05:30
Prince Chaddha
1d70ac6ccb
Update prometheus-flags-endpoint.yaml
2021-10-19 22:26:31 +05:30
Prince Chaddha
a25a9f3020
Update prometheus-targets-endpoint.yaml
2021-10-19 22:25:44 +05:30
Prince Chaddha
6d13118df6
Update prometheus-targets-endpoint.yaml
2021-10-19 20:35:34 +05:30
Prince Chaddha
2893847959
Update prometheus-flags-endpoint.yaml
2021-10-19 20:34:13 +05:30
Prince Chaddha
8d36ebe1d6
Update prometheus-config-endpoint.yaml
2021-10-19 20:32:48 +05:30
Prince Chaddha
10c2314367
Update prometheus-flags-endpoint.yaml
2021-10-19 20:32:37 +05:30
Prince Chaddha
7016e71473
Update prometheus-config-endpoint.yaml
2021-10-19 20:27:46 +05:30
Philippe Delteil
667ee78cb5
Update sensitive-storage-exposure.yaml
2021-10-18 23:09:27 -03:00
Geeknik Labs
c9f2ef68ed
Update prometheus-config-endpoint.yaml
2021-10-18 17:28:10 -05:00
Geeknik Labs
eac799774d
Update prometheus-flags-endpoint.yaml
2021-10-18 14:36:49 -05:00
Geeknik Labs
86a8332187
Update prometheus-flags-endpoint.yaml
...
adding regex extractor to alert if `optional` Prometheus management API is enabled as per the linked reference article. 👍🏻
2021-10-18 13:51:11 -05:00
Geeknik Labs
72805491d0
Create prometheus-targets-endpoint.yaml
2021-10-18 13:44:55 -05:00
Geeknik Labs
0f20469e96
Update prometheus-flags-endpoint.yaml
2021-10-18 13:43:36 -05:00
Geeknik Labs
a8a063d14c
Create prometheus-flags-endpoint.yaml
2021-10-18 13:36:27 -05:00
Geeknik Labs
c7efad4b58
Create prometheus-config-endpoint.yaml
2021-10-18 13:35:04 -05:00
opp?
aec00d0d11
add more tags to keycloak json file template
2021-10-18 13:38:04 -03:00
sandeep
233ca1fef9
improved regex to handle more cases
2021-10-13 11:53:02 +05:30
Geeknik Labs
a476fc9ca4
Update laravel-env.yaml
...
added case insensitivity to the regex matcher
2021-10-08 11:30:44 -05:00
Sandeep Singh
4d52f354ee
Merge pull request #2853 from pdelteil/patch-66
...
Update zend-config-file.yaml
2021-10-08 19:15:45 +05:30
sandeep
8960821db1
Update zend-config-file.yaml
2021-10-08 19:15:26 +05:30
Philippe Delteil
976f695929
Update zend-config-file.yaml
2021-10-08 03:53:52 -03:00
Geeknik Labs
589a1c16ee
Update github-workflows-disclosure.yaml
2021-10-07 16:51:45 -05:00
Geeknik Labs
793f3474b0
Update github-workflows-disclosure.yaml
...
Add new paths
2021-10-07 16:50:57 -05:00
Prince Chaddha
5b5e764b48
Merge pull request #2787 from mr-rizwan-syed/master
...
wp-config-file and aws-s3-access-key-leak
2021-10-05 18:25:04 +05:30
Prince Chaddha
5c4dd11b6b
Rename misconfiguration/wpconfig-aws-keys.yaml to exposures/configs/wpconfig-aws-keys.yaml
2021-10-05 18:20:43 +05:30
Prince Chaddha
56c8c36ef2
Merge pull request #2802 from geeknik/patch-32
...
Create axiom-digitalocean-key-exposure.yaml
2021-10-05 09:34:53 +05:30
Prince Chaddha
74f0620a9f
Update axiom-digitalocean-key-exposure.yaml
2021-10-04 22:09:12 +05:30
sandeep
5618fcaa7e
Update axiom-digitalocean-key-exposure.yaml
2021-10-02 04:41:32 +05:30
sandeep
e08ccf85db
adding missing condition
2021-10-02 04:37:10 +05:30
Geeknik Labs
2327224260
Update axiom-digitalocean-key-exposure.yaml
2021-10-01 13:22:35 -05:00
Geeknik Labs
bdbf73cd34
Update tugboat-config-exposure.yaml
2021-10-01 13:21:58 -05:00
Geeknik Labs
ec88d62ad4
Create axiom-digitalocean-key-exposure.yaml
...
create axiom-digitalocean-key-exposure.yaml
2021-10-01 13:20:23 -05:00
Geeknik Labs
c05df76ed2
Create tugboat-config-exposure.yaml
...
Create tugboat-config-exposure.yaml
2021-10-01 13:13:35 -05:00
Prince Chaddha
807920c0ac
clean-up
2021-09-21 17:16:53 +05:30
Prince Chaddha
cf0edc490a
Rename crossdomin-xml.yaml to crossdomain-xml.yaml
2021-09-20 23:28:06 +05:30
Geeknik Labs
8eea40d15c
Update php-warning.yaml
...
Additional status matcher
2021-09-17 13:07:59 -05:00
Geeknik Labs
2cce7831a6
Update php-warning.yaml
...
Fixes #2705
2021-09-17 13:04:07 -05:00
Prince Chaddha
ab4e6a4dd6
Merge pull request #2696 from DhiyaneshGeek/master
...
New Templates Added
2021-09-17 16:29:58 +05:30
Prince Chaddha
5858e3a01c
Update and rename exposures/logs/database-error.yaml to misconfiguration/database-error.yaml
2021-09-17 13:33:54 +05:30
Prince Chaddha
156daddde0
Update phpinfo.yaml
2021-09-17 13:20:06 +05:30
Prince Chaddha
0b7c12951c
Update php-warning.yaml
2021-09-17 13:13:40 +05:30
Prince Chaddha
52162716e5
Update and rename exposures/logs/zabbix-error.yaml to misconfiguration/zabbix-error.yaml
2021-09-17 13:00:35 +05:30
Prince Chaddha
a3ce6426f6
Update database-error.yaml
2021-09-17 12:46:35 +05:30
Dhiyaneshwaran
24b40f5f5d
Update phpinfo.yaml
2021-09-17 08:19:28 +05:30
Dhiyaneshwaran
8554474fd2
Create database-error.yaml
2021-09-17 08:14:18 +05:30
Dhiyaneshwaran
4959b99a7d
Create zabbix-error.yaml
2021-09-17 08:11:38 +05:30
Dhiyaneshwaran
320c973288
Create php-warning.yaml
2021-09-17 08:07:18 +05:30
Sandeep Singh
f47c4da9e8
Merge pull request #2694 from geeknik/geeknik-patch-1
...
MIscellaneous updates
2021-09-17 02:22:26 +05:30
sandeep
f0cac598cb
misc update
2021-09-17 02:18:04 +05:30
Geeknik Labs
56590675cf
Update squid-analysis-report-generator.yaml
2021-09-16 15:16:26 -05:00
Geeknik Labs
95664dfc18
Update credentials-disclosure.yaml
2021-09-16 15:13:12 -05:00
Geeknik Labs
42e644b7fd
Update bower-json.yaml
2021-09-16 15:11:24 -05:00
Dhiyaneshwaran
cb80cbb537
Create dsm-terminator-error.yaml
2021-09-14 22:46:01 +05:30
Dhiyaneshwaran
c225428932
Create struts-problem-report.yaml
2021-09-14 22:30:18 +05:30
Dhiyaneshwaran
be24688a48
Create error-processing.yaml
2021-09-14 21:49:36 +05:30
sandeep
bd24dc198e
Coverage for all templates using tags
2021-09-09 19:08:13 +05:30
sandeep
609705f676
removed extra headers not required for template
2021-09-08 17:47:19 +05:30
sullo
ef1f7c5e92
Updates across many templates for clarity, spelling, and grammar.
2021-09-05 17:13:45 -04:00
Sandeep Singh
cdd022c29d
Merge pull request #2550 from projectdiscovery/adding-sfm
...
Added stop-at-first-match in applicable templates
2021-09-02 23:09:21 +05:30
sandeep
8b37808730
misc update
2021-09-02 22:57:55 +05:30
Geeknik Labs
5414f9a618
Update general-tokens.yaml
2021-09-02 10:36:46 -05:00
sandeep
c266084621
Added stop-at-first-match in applicable templates
2021-09-02 17:29:10 +05:30
Sandeep Singh
0d1d2b3b1b
Merge pull request #2512 from DhiyaneshGeek/master
...
Webpack Sourcemap Disclosure
2021-09-02 00:34:56 +05:30
sandeep
aeac5bbec3
misc update
2021-08-31 01:03:44 +05:30
Sandeep Singh
7608386bb3
Update dbeaver-credentials.yaml
2021-08-30 15:24:34 +05:30
Philippe Delteil
7a9093c8a7
Update dbeaver-credentials.yaml
...
Change solve the false positives due to {} (empty response)
Example
nuclei -t nuclei-templates/exposures/configs/dbeaver-credentials.yaml -u https://lbs.map.qq.com
2021-08-30 02:55:35 -04:00
sandeep
8c1de71ec9
wip - update
2021-08-29 18:50:29 +05:30
Dhiyaneshwaran
6bade73727
Create webpack-sourcemap-disclosure.yaml
2021-08-29 17:13:44 +05:30
forgedhallpass
a4250b8f2f
Merge remote-tracking branch 'origin' into dynamic_attributes
2021-08-26 15:04:14 +03:00
sandeep
39ce8ee5b2
misc updates
2021-08-26 15:03:35 +05:30
Douglas Santos
1685ce08b0
Apache Axis 1 and 2 templates
2021-08-26 02:11:02 +00:00
sandeep
ee49f89109
misc update
2021-08-26 03:51:35 +05:30
sandeep
0d3d9a37d9
misc update
2021-08-26 03:47:32 +05:30
Sandeep Singh
ce1daa8c80
Update glpi-status-ldap-domain-disclosure.yaml
2021-08-26 03:42:53 +05:30
Douglas Santos
22d0b35775
GLPI detection, status and telemetry exposure
2021-08-25 21:55:22 +00:00
forgedhallpass
110f9c9ddd
Merge remote-tracking branch 'origin' into dynamic_attributes
2021-08-24 20:38:11 +03:00
sandeep
ae0aabd905
misc update
2021-08-24 02:50:14 +05:30
forgedhallpass
a124e393b4
Merge remote-tracking branch 'origin' into dynamic_attributes
2021-08-23 19:15:14 +03:00
Prince Chaddha
647d27925a
Merge pull request #2426 from projectdiscovery/generic
...
Templates by geeknik
2021-08-23 19:55:32 +05:30
Prince Chaddha
b5ec33e4c0
Update dockercfg-config.yaml
2021-08-23 19:52:39 +05:30
Sandeep Singh
1def46a72e
Update firebase-config-exposure.yaml
2021-08-23 15:11:10 +05:30
Sandeep Singh
93894d5b8c
Update dbeaver-credentials.yaml
2021-08-23 15:09:33 +05:30
Sandeep Singh
43fe743729
Update and rename dockercfg.yaml to dockercfg-config.yaml
2021-08-23 15:07:02 +05:30
sandeep
e160acb481
misc updates
2021-08-20 16:37:22 +05:30
forgedhallpass
77103bc629
Satisfying the linter (all errors and warnings)
...
* whitespace modifications only
2021-08-19 17:44:46 +03:00
forgedhallpass
002e8db616
Moved the "vendor" custom attribute under reference
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-19 17:00:46 +03:00
forgedhallpass
f55d6b75e1
Removed pipe (|) character from references, because the structure requires it to be a string slice, not a string
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-19 16:59:12 +03:00
forgedhallpass
7b29be739e
Merge branch 'master' into dynamic_attributes
2021-08-19 16:23:26 +03:00
forgedhallpass
0b432b341b
Added comments with URLs under the "references" field
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-19 16:15:35 +03:00
forgedhallpass
e68d15ab63
Fixed mistakes/typos in the templates.
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-19 15:30:14 +03:00
Prince Chaddha
f65a78bb5c
Create firebase-config-exposure.yaml
2021-08-19 16:56:13 +05:30
Prince Chaddha
acbacf339d
Update dockercfg.yaml
2021-08-19 16:48:50 +05:30
Prince Chaddha
2e4c8e22f2
Create dockercfg.yaml
2021-08-19 16:47:22 +05:30
Prince Chaddha
d7e7c39982
Update dbeaver-credentials.yaml
2021-08-19 16:34:32 +05:30
Prince Chaddha
c980eea40b
Create dbeaver-credentials.yaml
2021-08-19 16:32:09 +05:30
Prince Chaddha
760af33ce9
Update db-schema.yaml
2021-08-19 15:03:10 +05:30
Prince Chaddha
4c27b5d5ee
Create db-schema.yaml
2021-08-19 15:00:00 +05:30
Prince Chaddha
20e66005b7
Update and rename couchbase-buckets-rest-api.yaml to couchbase-buckets-api.yaml
2021-08-19 14:57:01 +05:30
Prince Chaddha
d10c81b2ba
Create couchbase-buckets-rest-api.yaml
2021-08-19 14:56:35 +05:30
Prince Chaddha
4d9bd2d13b
Update zend-config-file.yaml
2021-08-19 14:27:45 +05:30
forgedhallpass
cdf9451158
Removed pipe (|) character from references, because the structure requires it to be a string slice, not a string
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-18 14:44:27 +03:00
forgedhallpass
4c920b2552
Rename "references" to "reference" to match the expected template info structure
...
Related nuclei tickets:
* #259 - dynamic key-value field support for template information
* #940 - new infos in template
* #834
* RES-84
2021-08-18 14:29:20 +03:00
Sandeep Singh
5b17aea895
Merge pull request #2388 from geeknik/patch-17
...
Update general-tokens.yaml
2021-08-17 22:34:03 +05:30
Geeknik Labs
5c994cfad6
Update general-tokens.yaml
...
I believe this might work.
2021-08-17 11:52:31 -05:00
sandeep
9850ced093
strict matchers
2021-08-17 22:11:28 +05:30
Prince Chaddha
5e55dc1e24
Create django-debug-exposure.yaml
2021-08-17 17:37:57 +05:30
sandeep
51b15ff0d4
severity update
2021-08-14 17:28:23 +05:30
sandeep
ffcfaa5cb1
minor update
2021-08-14 16:51:20 +05:30
Prince Chaddha
739622c7ab
Merge pull request #2394 from gabrielb3lmont/exposures_templates
...
Added crossdomain-xml Template
2021-08-14 15:46:53 +05:30
Prince Chaddha
77f59df9c8
Update crossdomin-xml.yaml
2021-08-14 15:45:34 +05:30
Prince Chaddha
d13bc82a2e
Update crossdomin-xml.yaml
2021-08-14 14:42:16 +05:30
Prince Chaddha
3183242eb3
Merge pull request #2366 from pikpikcu/patch-250
...
Create iceflow-vpn-disclosure
2021-08-14 14:37:09 +05:30
Prince Chaddha
9c51bc0abb
Update iceflow-vpn-disclosure.yaml
2021-08-14 14:35:41 +05:30
Prince Chaddha
6b65897dd9
Update iceflow-vpn-disclosure.yaml
2021-08-14 14:30:29 +05:30
LogicalHunter
e6d9a1ec90
Fixed crossdomain-xml template
2021-08-13 11:25:10 -07:00
LogicalHunter
126e27e3b2
Added crossdomain-xml Template
2021-08-13 10:49:41 -07:00
Geeknik Labs
c9daa11bd8
Update general-tokens.yaml
2021-08-12 09:54:57 -05:00
Geeknik Labs
166049bf0b
Update general-tokens.yaml
...
more FP work
2021-08-12 09:53:33 -05:00
Sandeep Singh
68dad33565
Merge pull request #2365 from daffainfo/patch-144
...
Update laravel-env.yaml
2021-08-12 18:48:11 +05:30
Geeknik Labs
39e0fd7c54
Update general-tokens.yaml
...
Nuking more false positives
2021-08-12 07:55:11 -05:00
PikPikcU
ca3af4527d
Update iceflow-vpn-disclosure.yaml
2021-08-10 14:31:05 +07:00
PikPikcU
2956610eab
Create iceflow-vpn-disclosure.yaml
2021-08-10 10:02:17 +07:00
Muhammad Daffa
999a8febb9
Update laravel-env.yaml
2021-08-10 09:54:37 +07:00
Sandeep Singh
a6e3a6a458
Merge branch 'master' into master
2021-08-09 16:09:41 +05:30
adriyansyah-mf
8ab6fc07bc
Update laravel-env.yaml
...
added new path
2021-08-09 13:43:29 +07:00
sandeep
b86e8eabf9
Update codeigniter-env.yaml
2021-08-08 01:22:58 +05:30
sandeep
a5500cca02
Additional optional matcher
2021-08-08 01:19:15 +05:30
sandeep
5767a0d5a2
Merge branch 'master' of https://github.com/projectdiscovery/nuclei-templates into pr/1241
2021-08-08 01:13:41 +05:30
sandeep
b111aeadc3
Update laravel-env.yaml
2021-08-08 01:11:14 +05:30
PikPikcU
31a77d4e02
Update symfony-profiler.yaml
2021-08-07 09:19:05 +07:00
PikPikcU
f01678b9c6
Update symfony-database-config.yaml
2021-08-07 09:18:02 +07:00
sandeep
685183858e
minor update
2021-08-06 23:35:35 +05:30
sandeep
30c5d2c3b8
Update ruijie-eg-password-leak.yaml
2021-08-06 23:07:27 +05:30
sandeep
6a3a7ae691
password extractor
2021-08-06 23:04:32 +05:30
sandeep
fc1af10daa
Added ruijie-eg-password-leak
2021-08-06 22:42:41 +05:30
PikPikcU
5952685f5c
Create ruijie-nbr1300g-cli-password-leak.yaml
2021-08-06 17:46:57 +07:00
sandeep
24efdfd678
Update qdpm-info-leak.yaml
2021-08-05 16:17:30 +05:30
Prince Chaddha
8e0a730e3d
Rename vulnerabilities/other/qdpm-info-leak.yaml to exposures/configs/qdpm-info-leak.yaml
2021-08-05 16:10:17 +05:30
Geeknik Labs
a02ae7bef7
Update general-tokens.yaml
2021-08-02 12:27:07 -05:00
Geeknik Labs
61bb675add
Update general-tokens.yaml
...
squashing false positives
2021-08-02 12:25:54 -05:00
Geeknik Labs
3c713144d4
Update general-tokens.yaml
...
fix more fp
2021-08-02 10:17:06 -05:00
Sandeep Singh
162cf14687
Merge pull request #782 from hahwul/master
...
Create github-page-files.yml
2021-07-30 18:15:28 +05:30
sandeep
7fe896ae45
Update github-page-config.yaml
2021-07-30 18:13:32 +05:30
sandeep
efb5b9e7a3
Added tags
2021-07-30 18:12:12 +05:30
sandeep
51915f8f9a
Template improvements
2021-07-30 18:01:05 +05:30
nxnjz
a7f75416f0
Update and rename appsec-yml-disclosure.yaml to appspec-yml-disclosure.yaml
2021-07-30 13:16:30 +03:00
Geeknik Labs
5e3cc340ee
Update credentials-disclosure.yaml
...
I feel like we should make these regex case insensitive so they match unexpected variations. For example, the `api[_-]?key(=| =|:| :)` regex before my change would match `apikey :`, `api_key =` and `api-key:` but not `apiKey=`.
2021-07-29 14:08:41 -05:00
Nicolas Mattiocco
8da48bbea8
Update git-config.yaml
...
improvement suggestion to keep it simple and flexible
2021-07-29 15:17:15 +02:00
sandeep
e9210d80bf
strict negative matchers
2021-07-26 15:14:33 +05:30
sandeep
b990243906
uniform tags
2021-07-26 14:25:43 +05:30
sandeep
d4a3f345fb
tags update
2021-07-26 14:23:27 +05:30
Sandeep Singh
eaa2561c70
Merge pull request #2170 from geeknik/patch-13
...
Create development-logs.yaml
2021-07-26 14:21:12 +05:30
Sandeep Singh
c15e827b84
Update development-logs.yaml
2021-07-26 14:18:24 +05:30
Sandeep Singh
7c7e3f06bc
Merge pull request #2169 from geeknik/patch-12
...
Create production-logs.yaml
2021-07-26 01:53:26 +05:30
Sandeep Singh
09a5ea061a
Update production-logs.yaml
2021-07-26 01:52:26 +05:30
Sandeep Singh
9f66b8925d
Merge pull request #2115 from geeknik/patch-5
...
Update general-tokens.yaml
2021-07-26 01:47:39 +05:30
Sandeep Singh
5441d97bea
Merge pull request #2131 from geeknik/patch-8
...
Create wp-app-log.yaml
2021-07-26 01:22:37 +05:30
Sandeep Singh
d43b57b56a
Update wp-app-log.yaml
2021-07-26 01:21:43 +05:30
Sandeep Singh
130f3576b6
Merge pull request #2130 from geeknik/patch-7
...
Create cold-fusion-cfcache-map.yaml
2021-07-26 01:17:15 +05:30
Sandeep Singh
037c531d58
Update cold-fusion-cfcache-map.yaml
2021-07-26 01:15:39 +05:30
sandeep
c9f5f01bb9
minor update
2021-07-26 00:39:16 +05:30
Geeknik Labs
41c41abdb7
Update exposed-gitignore.yaml
...
Fixes the issue here: https://github.com/projectdiscovery/nuclei-templates/issues/1898#issuecomment-886237512
2021-07-25 18:29:28 +00:00
Geeknik Labs
7afc39cb32
Create development-logs.yaml
2021-07-24 14:29:43 -05:00
Geeknik Labs
e428dc6454
Create production-logs.yaml
2021-07-24 14:28:33 -05:00
Sandeep Singh
4b444af3c4
Merge pull request #2125 from DhiyaneshGeek/master
...
17 New Templates Added
2021-07-24 03:26:09 +05:30
sandeep
b1d8ab1193
more matchers update
2021-07-24 03:13:09 +05:30
sandeep
1ea3b8a8bf
matcher updates
2021-07-24 03:03:31 +05:30
sandeep
9788ebbf27
more matcher updates
2021-07-24 02:54:09 +05:30
sandeep
19533bcc08
removed content type check to avoid valid matches
2021-07-24 02:53:11 +05:30
Geeknik Labs
4795c084e1
Update nginx-config.yaml
...
fixes a false positive
2021-07-23 15:18:51 -05:00
Sandeep Singh
a957dc230c
Update exposures/files/snyk-ignore-file-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-24 00:51:05 +05:30
sandeep
96c78d8695
additional negative matcher
2021-07-24 00:39:30 +05:30
sandeep
1f4f8ce332
matcher update
2021-07-24 00:30:53 +05:30
sandeep
840d3ee4e3
Update github-workflows-disclosure.yaml
...
removing content type check as this might miss valid results with no content type in response
2021-07-24 00:26:56 +05:30
Sandeep Singh
5f4127cdaf
Update exposures/files/ruby-on-rails-secret-token-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-24 00:24:45 +05:30
Sandeep Singh
b0b737e0eb
Update exposures/configs/hp-ilo-serial-key-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-24 00:24:26 +05:30
Sandeep Singh
2dbeb70480
Update exposures/configs/github-workflows-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-24 00:24:11 +05:30
Sandeep Singh
fccc31717a
Update exposures/configs/github-workflows-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-24 00:16:13 +05:30
sandeep
763591bc97
lint fixes
2021-07-24 00:12:28 +05:30
Dhiyaneshwaran
1d9979fead
Update exposures/configs/hp-ilo-serial-key-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 17:54:36 +05:30
Dhiyaneshwaran
3528cd7bef
Update exposures/configs/github-workflows-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 17:54:27 +05:30
Dhiyaneshwaran
62c2693d34
Update exposures/configs/appsec-yml-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 17:54:17 +05:30
Dhiyaneshwaran
834d6b8f2a
Update dockerfile-hidden-disclosure.yaml
2021-07-23 17:49:32 +05:30
Dhiyaneshwaran
1671b074c0
Update exposures/logs/roundcube-log-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:47:22 +05:30
Dhiyaneshwaran
6754ef5dd2
Update exposures/files/thumbs-db-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:47:16 +05:30
Dhiyaneshwaran
7b5af09772
Update exposures/files/snyk-ignore-file-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:47:06 +05:30
Dhiyaneshwaran
fd2df6ca59
Update exposures/files/snyk-ignore-file-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:47:00 +05:30
Dhiyaneshwaran
fd918ee65c
Update exposures/files/pyproject-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:52 +05:30
Dhiyaneshwaran
f21894a431
Update exposures/files/pyproject-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:46 +05:30
Dhiyaneshwaran
bdc15afe1b
Update exposures/files/putty-private-key-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:40 +05:30
Dhiyaneshwaran
cb73dc4630
Update exposures/files/putty-private-key-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:32 +05:30
Dhiyaneshwaran
e96b8ca338
Update exposures/files/php-user-ini-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:26 +05:30
Dhiyaneshwaran
c4a1a12fe8
Update exposures/files/php-user-ini-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:46:06 +05:30
Dhiyaneshwaran
80b1205379
Update exposures/configs/kubernetes-kustomization-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:45:58 +05:30
Dhiyaneshwaran
a96c9c74c6
Update exposures/configs/kubernetes-kustomization-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:45:52 +05:30
Dhiyaneshwaran
4051f03440
Update exposures/configs/kubernetes-kustomization-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:45:44 +05:30
Dhiyaneshwaran
1646db1156
Update exposures/configs/hp-ilo-serial-key-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:45:37 +05:30
Dhiyaneshwaran
dd025100e7
Update exposures/configs/github-workflows-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:45:30 +05:30
Dhiyaneshwaran
ea45cdd369
Update exposures/configs/git-credentials-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:44:54 +05:30
Dhiyaneshwaran
9271fa9492
Update exposures/configs/dockerfile-hidden-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:44:47 +05:30
Dhiyaneshwaran
39f23522e4
Update exposures/configs/dockerfile-hidden-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:44:38 +05:30
Dhiyaneshwaran
838002d77a
Update exposures/configs/appsec-yml-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-23 09:44:23 +05:30
Dhiyaneshwaran
5b0b7a6781
Update exposures/logs/roundcube-log-disclosure.yaml
...
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-07-22 23:10:43 +05:30
Prince Chaddha
5455222476
Merge pull request #2140 from pussycat0x/master
...
New templates added
2021-07-22 17:53:25 +05:30
Prince Chaddha
4e3c869c79
Update sensitive-storage-data-exposure.yaml
2021-07-22 17:50:16 +05:30
sandeep
7d72783090
WIP improvements
2021-07-22 16:32:37 +05:30
pussycat0x
9aa36cd028
Add files via upload
2021-07-22 08:07:25 +05:30
Prince Chaddha
7666d8d1b6
Update cold-fusion-cfcache-map.yaml
2021-07-22 00:04:54 +05:30
Geeknik Labs
ee85819e34
Create wp-app-log.yaml
2021-07-21 13:22:01 -05:00
Geeknik Labs
41daa90400
Create cold-fusion-cfcache-map.yaml
2021-07-21 13:19:40 -05:00
Dhiyaneshwaran
59693f29e5
Create thumbs-db-disclosure.yaml
2021-07-21 14:07:47 +05:30
Dhiyaneshwaran
5200f16d4d
Create snyk-ignore-file-disclosure.yaml
2021-07-21 14:05:40 +05:30
Dhiyaneshwaran
733e98f1e2
Create ruby-on-rails-secret-token-disclosure.yaml
2021-07-21 14:03:20 +05:30
Dhiyaneshwaran
929250a6af
Create roundcube-log-disclosure.yaml
2021-07-21 14:01:09 +05:30
Dhiyaneshwaran
f66e7676a6
Create pyproject-disclosure.yaml
2021-07-21 13:57:17 +05:30
Dhiyaneshwaran
6bfc270917
Update php-user-ini-disclosure.yaml
2021-07-21 13:54:09 +05:30
Dhiyaneshwaran
4d53c1f2a5
Create putty-private-key-disclosure.yaml
2021-07-21 13:53:55 +05:30
Dhiyaneshwaran
f20c444b4e
Create php-user-ini-disclosure.yaml
2021-07-21 13:49:50 +05:30
Dhiyaneshwaran
419456f277
Update kubernetes-kustomization-disclosure.yaml
2021-07-21 13:39:36 +05:30
Dhiyaneshwaran
6e76e533c8
Create kubernetes-kustomization-disclosure.yaml
2021-07-21 13:36:59 +05:30
Dhiyaneshwaran
bf4d51136a
Create hp-ilo-serial-key-disclosure.yaml
2021-07-21 13:29:52 +05:30
Dhiyaneshwaran
15a19dea3d
Create github-workflows-disclosure.yaml
2021-07-21 13:21:05 +05:30
Dhiyaneshwaran
3425a83d38
Create git-credentials-disclosure.yaml
2021-07-21 11:19:35 +05:30
Dhiyaneshwaran
01bd0b38f4
Create dockerfile-hidden-disclosure.yaml
2021-07-21 11:13:50 +05:30
Dhiyaneshwaran
4f5a9f7d94
Create appsec-yml-disclosure.yaml
2021-07-21 11:09:04 +05:30
Geeknik Labs
f9b3724f87
Update general-tokens.yaml
2021-07-20 16:46:25 -05:00
Philippe Delteil
aec3d87e72
Update exposed-gitignore.yaml
...
New conditions to avoid false positives.
2021-07-17 23:15:08 -04:00
sandeep
e232ba52d4
Added additional path
2021-07-14 18:24:26 +05:30
sandeep
950cc356ee
path update
2021-07-14 17:39:50 +05:30
sandeep
367bfd4441
Added keycloak-openid-config
2021-07-14 17:38:01 +05:30
Sandeep Singh
360f8d9a94
Update exposed-glances-api.yaml
2021-07-14 14:20:18 +05:30
Prince Chaddha
5838f76600
Create exposed-glances-api.yaml
2021-07-14 12:37:51 +05:30
sandeep
6dd92167eb
minor updates
2021-07-13 19:35:58 +05:30
Dhiyaneshwaran
b283f65482
Create exposed-prometheus-log.yaml
2021-07-13 19:24:13 +05:30
Sandeep Singh
920255635b
Merge pull request #1876 from pussycat0x/master
...
web-ftp
2021-07-13 01:53:15 +05:30
sandeep
3c7f4ed78c
matcher update
2021-07-13 01:22:06 +05:30
pussycat0x
7947954aba
Add files via upload
2021-07-12 23:23:30 +05:30
sandeep
7f1b075cf0
Temporally removing as matcher needs to be improved.
2021-07-11 13:37:39 +05:30
Sandeep Singh
72781f8dfa
Merge branch 'master' into master
2021-07-10 15:07:33 +05:30
sandeep
a35c34127c
Added content length condition
2021-07-10 00:40:09 +05:30
Sandeep Singh
684761587d
Merge pull request #1913 from projectdiscovery/exposed-gitignore
...
Added exposed-gitignore
2021-07-09 22:52:44 +05:30
sandeep
899f1e732b
Added exposed-gitignore
2021-07-09 22:50:20 +05:30
Geeknik Labs
a77a3db701
Update symfony-database-config.yaml
...
Fixes #1910
2021-07-09 06:23:28 +00:00
Prince Chaddha
124b960503
Update lucee-stack-trace.yaml
2021-07-09 09:50:42 +05:30
Prince Chaddha
64b36e181b
Update lucee-stack-trace.yaml
2021-07-09 09:45:38 +05:30
Dhiyaneshwaran
b3bd3b4355
Create lucee-stack-trace.yaml
2021-07-09 01:44:30 +05:30
sandeep
cd8e485541
Added Git Logs
2021-07-07 20:51:33 +05:30
Sandeep Singh
1b65d294d3
Merge pull request #1878 from jeenikaa/master
...
templates added
2021-07-07 18:57:46 +05:30
sandeep
9d78a1656b
few updates
2021-07-07 18:52:35 +05:30
Dhiyaneshwaran
648def7a9c
Update strapi-page.yaml
2021-07-05 22:45:34 +05:30
Dhiyaneshwaran
eb0d1f9766
Create strapi-page.yaml
2021-07-05 22:31:57 +05:30
sandeep
afcbe4cfe4
minor updates
2021-07-04 01:22:08 +05:30
Dhiyaneshwaran
532bf58f3d
Update jboss-seam-debug-page.yaml
2021-07-02 20:52:09 +05:30
Dhiyaneshwaran
a53902e99c
Create jboss-seam-debug-page.yaml
2021-07-01 22:34:38 +05:30
sandeep
f97ae5ceba
minor update to check full header
2021-06-30 19:29:26 +05:30
pdparchitect
199ee498f8
Update javascript-env.yaml
...
Added additional matchers to broaden detection
2021-06-30 13:55:21 +01:00
sandeep
6d12b9bb6b
Added additional matcher
2021-06-30 17:53:27 +05:30
sandeep
9bd750e28e
Update javascript-env.yaml
2021-06-30 16:07:25 +05:30
Petko D. Petkov
e04b943dce
Detect javascript environment configs.
2021-06-30 10:17:58 +00:00
sandeep
96fc7bb341
more strict matchers
2021-06-30 03:26:01 +05:30
sandeep
102d0b21b4
Removing duplicate template
2021-06-28 20:07:22 +05:30
sandeep
525c0cce48
misc changes
2021-06-24 00:38:16 +05:30
Geeknik Labs
d7eae53622
Update general-tokens.yaml
...
fix more FP
2021-06-23 15:50:38 +00:00
Geeknik Labs
c2eb8b2df2
Update general-tokens.yaml
...
Better false positive protection.
https://regex101.com/r/taSYEa/1
2021-06-23 15:45:55 +00:00
sandeep
fd63d24d53
Additional matcher
2021-06-11 16:20:34 +05:30
sandeep
c539205559
Added phalcon-framework-source
2021-06-11 16:16:05 +05:30
Sandeep Singh
06faaf7736
Merge pull request #1652 from pdelteil/patch-12
...
Create shoppable-token.yaml
2021-06-10 14:32:01 +05:30
sandeep
2a6ba9a0e8
Update shoppable-token.yaml
2021-06-10 14:30:53 +05:30
Prince Chaddha
83ce809e8d
Updated author names
2021-06-09 17:50:56 +05:30
Philippe Delteil
8f12988b7b
Create shoppable-token.yaml
2021-06-09 02:22:28 -04:00
Geeknik Labs
3a307fdcdd
Update server-private-keys.yaml
2021-06-08 00:06:01 +00:00
Geeknik Labs
578f83f39a
Update server-private-keys.yaml
...
Adding support for JWT private key detection.
2021-06-08 00:04:02 +00:00
sandeep
52a7bfa124
minor updates
2021-06-07 20:22:33 +05:30
Dhiyaneshwaran
5eb6af15bd
Create shellscripts.yaml
2021-06-06 19:39:29 +05:30
sandeep
1b879d1dc7
Added missing condition
2021-06-06 17:44:27 +05:30
sandeep
9b3c3ec7a0
tags + additional string match
2021-06-06 14:14:01 +05:30
Geeknik Labs
f01abd3e6d
Update rails-database-config.yaml
...
False positive reduction. 12 matches out of 2 million hosts and they all showed a content-type of `application/octet-stream`.
2021-06-05 12:50:49 +00:00
sandeep
e4c1927a2f
Merge branch 'master' of https://github.com/projectdiscovery/nuclei-templates
2021-06-04 20:00:36 +05:30
sandeep
e2555d69d1
minor improvements
2021-06-04 19:59:41 +05:30
sandeep
b6396aa310
Added zend-config-file
2021-06-04 18:50:38 +05:30
Sandeep Singh
dac1649248
Merge pull request #1616 from projectdiscovery/CVE-2020-11978
...
Added CVE-2020-11978 & Airflow Workflow
2021-06-04 02:39:57 +05:30
sandeep
0f0ff2ee1e
moving files around
2021-06-03 21:54:08 +05:30
sandeep
9147d61ce7
Added missing tags
2021-06-03 19:48:37 +05:30
Sandeep Singh
9a21a3f24b
Merge pull request #1602 from geeknik/patch-102
...
Update general-tokens.yaml
2021-06-02 11:03:53 +05:30
Prince Chaddha
cdf6cdf638
Update detect-drone-config.yaml
2021-06-02 00:38:33 +05:30
Prince Chaddha
259eb048cc
Update detect-drone-config.yaml
2021-06-02 00:33:22 +05:30
Geeknik Labs
d949ad7520
Update general-tokens.yaml
...
fix another false positive
2021-06-01 18:22:05 +00:00
Geeknik Labs
5d083f1124
Create detect-drone-config.yaml
2021-06-01 09:07:39 -05:00
sandeep
91941dc8ed
Adding max-size to avoid timeout
2021-06-01 13:21:24 +05:30