You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
For this enhancement the trufflehog module would need to consume CODE_REPOSITORY events ensuring they are github code repositories and pass the repo url to trufflehog github-experimental --repo <url> --object-discovery
It would also need to be changed to access the github api token provided to the github template module
I will start working on this shortly
The text was updated successfully, but these errors were encountered:
Description
Trufflehog recently released a blog demonstrating that you could access deleted fork data on github https://trufflesecurity.com/blog/anyone-can-access-deleted-and-private-repo-data-github
They since released an update to the open-source trufflehog tool to discover hidden objects from these deleted forks. by scanning the original repo
https://trufflesecurity.com/blog/trufflehog-now-finds-all-deleted-and-private-commits-on-github
For this enhancement the trufflehog module would need to consume
CODE_REPOSITORY
events ensuring they are github code repositories and pass the repo url totrufflehog github-experimental --repo <url> --object-discovery
It would also need to be changed to access the github api token provided to the github template module
I will start working on this shortly
The text was updated successfully, but these errors were encountered: