Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/devanshbatham/ArchiveFuzz
Hunt down the secrets from the WebArchives for Fun and Profit
https://github.com/devanshbatham/ArchiveFuzz
bughunting email-enumeration osint security-tools subdomain-enumeration subdomain-scanner web-archive
Last synced: about 2 months ago
JSON representation
Hunt down the secrets from the WebArchives for Fun and Profit
- Host: GitHub
- URL: https://github.com/devanshbatham/ArchiveFuzz
- Owner: devanshbatham
- Created: 2020-03-03T17:23:10.000Z (almost 5 years ago)
- Default Branch: master
- Last Pushed: 2022-12-08T03:43:53.000Z (about 2 years ago)
- Last Synced: 2024-06-06T22:47:58.934Z (7 months ago)
- Topics: bughunting, email-enumeration, osint, security-tools, subdomain-enumeration, subdomain-scanner, web-archive
- Language: Python
- Homepage:
- Size: 111 KB
- Stars: 164
- Watchers: 12
- Forks: 41
- Open Issues: 2
-
Metadata Files:
- Readme: readme.md
Awesome Lists containing this project
- awesome-hacking-lists - devanshbatham/ArchiveFuzz - Hunt down the secrets from the WebArchives for Fun and Profit (Python)
README
# ArchiveFuzz : hunt the archives
![ArchiveFuzz](static/banner.PNG)
# What the heck is this thing ?ArchiveFuzz hunts down the archived data(subdomains/emails/API keys) of domains. **Web archiving** is the process of collecting portions of the [World Wide Web](https://en.wikipedia.org/wiki/World_Wide_Web "World Wide Web") to ensure the information is [preserved](https://en.wikipedia.org/wiki/Digital_preservation "Digital preservation") in an [archive](https://en.wikipedia.org/wiki/Archive "Archive") for future researchers, historians, and the public.
This tool uses webarchive's cdx to enumerate Emails/Subdomains/IPs/API tokens .
# But why ?
I initially made ArchiveFuzz for my personal use , Now making it public . This really helped me a lot , Good luck finding potential assets with this <3# Example
Lets scan example.com for archived secrets :
`python3 archivehunter.py mail.ru`
![example](https://raw.githubusercontent.com/devanshbatham/ArchiveFuzz/master/static/mailru-example.PNG)
# Compatibility
**It works on anything that has python installed**# Installation
`note : it only works with python3.+``mkdir Archive-Fuzz`
`cd Archive-Fuzz`
`git clone https://github.com/devanshbatham/ArchiveFuzz`
`virtualenv env `
`source env/bin/activate`
`cd ArchiveFuzz`
`pip install -r requirements.txt`
`python3 archivefuzz.py example.com`
# TODO
Implementing checks for more API keys that are passed in GET requests.# Wanna show support for the tool ?
**I will be more than happy if you will show some love for Animals by donating to [Animal Aid Unlimited](https://animalaidunlimited.org/)** **,Animal Aid Unlimited saves animals through street animal rescue, spay/neuter and education. Their mission is dedicated to the day when all living beings are treated with compassion and love.** ✨