nuclei-templates/http/technologies/basic-auth-detect.yaml

34 lines
775 B
YAML

id: basic-auth-detect
info:
name: Basic Auth Detection
author: w4cky_,bhutch
severity: info
metadata:
max-request: 1
shodan-query: "www-authenticate:"
tags: tech,basic,auth
http:
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: and
matchers:
- type: regex
part: header
regex:
- "(?i)www-authenticate: basic"
- type: status
status:
- 401
extractors:
- type: regex
part: header
group: 1
regex:
- '(?i)www-authenticate: (basic.*)\r\n'
# digest: 4a0a004730450220102b932513cab57316c355c8cba748801af973344f41ab47c477be2fad15d751022100af4bbcb624f60eb8f6329727902f6a8cfe211154ace1c4f911197065db76eeeb:922c64590222798bb761d5b6d8e72950