Brut Security
15.1K subscribers
965 photos
76 videos
292 files
1.01K links
βœ…DM: @wtf_brut
πŸ›ƒWhatsApp: https://wa.link/brutsecurity
🈴Training: https://brutsecurity.com
πŸ“¨Mail: info@brutsec.com
Download Telegram
πŸ”₯πŸ”₯Github-DorkπŸš€πŸš€πŸ”₯πŸ”₯

Happy Hunting

πŸ” api_key
πŸ” app_AWS_SECRET_ACCESS_KEY
πŸ” app_secret
πŸ” authoriztion
πŸ” Ldap
πŸ” aws_access_key_id
πŸ” secret
πŸ” bash_history
πŸ” bashrc%20password
πŸ” beanstalkd
πŸ” client secre
πŸ” composer
πŸ” config
πŸ” credentials
πŸ” DB_PASSWORD
πŸ” dotfiles
πŸ” .env file
πŸ” .exs file
πŸ” extension:json mongolab.com
πŸ” extension:pem%20private
πŸ” extension:ppk private
πŸ” extension:sql mysql dump
πŸ” extension:yaml mongolab.com
πŸ” .mlab.com password
πŸ” mysql
πŸ” npmrc%20_auth
πŸ” passwd
πŸ” passkey
πŸ” rds.amazonaws.com password
πŸ” s3cfg
πŸ” send_key
πŸ” token
πŸ” filename:.bash_history
πŸ” filename:.bash_profile aws
πŸ” filename:.bashrc mailchimp
πŸ” filename:CCCam.cfg
πŸ” filename:config irc_pass
πŸ” filename:config.php dbpasswd
πŸ” filename:config.json auths
πŸ” filename:config.php pass
πŸ” filename:config.php dbpasswd
πŸ” filename:connections.xml
πŸ” filename:.cshrc
πŸ” filename:.git-credentials
πŸ” filename:.ftpconfig
πŸ” filename:.history
πŸ” filename:gitlab-recovery-codes.txt
πŸ” filename:.htpasswd
πŸ” filename:id_rsa
πŸ” filename:.netrc password
πŸ” FTP
πŸ” filename:wp-config.php
πŸ” git-credentials
πŸ” github_token
πŸ” HEROKU_API_KEY language:json
πŸ” HEROKU_API_KEY language:shell
πŸ” GITHUB_API_TOKEN language:shell
πŸ” oauth
πŸ” OTP
πŸ” databases password
πŸ” [WFClient] Password= extension:ica
πŸ” xoxa_Jenkins
πŸ” security_credentials

#bugbountytips #GitHub
πŸ”₯6πŸ‘4
China now has their own GitHub/public Git repository hosting service called GitCode; it is owned and operated by CSDN under the company name "ι‡εΊ†εΌ€ζΊε…±εˆ›η§‘ζŠ€ζœ‰ι™ε…¬εΈ"

It is being reported that many users' repository are being cloned and re-hosted on GitCode without authorization - meaning your project may very well be on this service without you explicitly allowing.

tldr: GitCode or China is attempting to mirror/clone the entire GitHub over to their own servers and there's nothing you can do about it, even if your license somehow disagrees with it.

Credit: https://x.com/azakasekai_/status/1805844941438075163?s=46&t=GxBcd0lJbjtL_W3TmBw-tA


#github #gitcode
🐳3πŸ‘1