Skip to content

Burp Suite extension to discover apikeys/accesstokens and sensitive data from HTTP response.

License

Notifications You must be signed in to change notification settings

R0X4R/BurpSuite-Secret_Finder

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

25 Commits
 
 
 
 
 
 

Repository files navigation

Burp Suite - Secret Finder (beta v0.1)

A Burp Suite extension to help pentesters to discover a apikeys,accesstokens and more sensitive data using a regular expressions. SecretFinder process any HTTP response (support javascript file) and support Passive and Active scan. This extension has been developed by M'hamed Outaadi (@m4ll0k).

Add RegEx

  • Download SecretFinder and open it with any editor
  • Now add your regex and save the file

img

Example

main

Install

  • download SecretFinder

install

Requirements

  • jython
  • burpsuite

About

Burp Suite extension to discover apikeys/accesstokens and sensitive data from HTTP response.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Languages

  • Python 100.0%