id: passbolt-panel info: name: Passbolt Login Panel author: righettod severity: info description: | Passbolt login panel was detected. reference: - https://www.passbolt.com/ metadata: verified: true max-request: 1 shodan-query: http.title:"Passbolt | Open source password manager for teams" product: passbolt_api vendor: passbolt tags: panel,passbolt,login classification: cpe: cpe:2.3:a:passbolt:passbolt_api:*:*:*:*:*:*:*:* http: - method: GET path: - "{{BaseURL}}/auth/login" matchers: - type: dsl dsl: - 'status_code == 200' - 'contains(body, "Passbolt") && contains(body, "Open source password manager for teams")' condition: and extractors: - type: regex part: body group: 1 regex: - '(?i)v=([0-9a-z.-]+)' # digest: 4a0a00473045022100a88014cf962ec6f61e44d7dbe62cef11b6b5a22d5110345bdaaa9b10872089f20220551fd9f9a94363c082c57e1f5618537241e20297383a8313ff2bf7ef0317111c:922c64590222798bb761d5b6d8e72950