https://github.com/edivangalindo/gh-test
A little tool to fastly test if Github tokens are valid
https://github.com/edivangalindo/gh-test
bugbounty bugbounty-tool infosec redteam token-leaked
Last synced: 5 months ago
JSON representation
A little tool to fastly test if Github tokens are valid
- Host: GitHub
- URL: https://github.com/edivangalindo/gh-test
- Owner: edivangalindo
- Created: 2022-04-20T11:27:38.000Z (about 4 years ago)
- Default Branch: main
- Last Pushed: 2022-04-20T11:30:06.000Z (about 4 years ago)
- Last Synced: 2024-06-20T15:53:40.169Z (almost 2 years ago)
- Topics: bugbounty, bugbounty-tool, infosec, redteam, token-leaked
- Language: Go
- Homepage:
- Size: 1.95 KB
- Stars: 6
- Watchers: 1
- Forks: 1
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
Awesome Lists containing this project
README
# gh-test
Sometimes, during the day as an offensive security engineer or bug hunter, we come across a leaked token and we need to test it. This tool was born out of my need to do this routinely with tokens coming from Github.
Single URL:
```
echo ghp_0000000000000000000000 | gh-test
```
Multiple tokens:
```
cat tokens.txt | gh-test
```
## Installation
First, you'll need to [install go](https://golang.org/doc/install).
Then run this command to download + compile gh-test:
```
go install github.com/edivangalindo/gh-test@latest
```
You can now run `~/go/bin/gh-test`. If you'd like to just run `gh-test` without the full path, you'll need to `export PATH="/go/bin/:$PATH"`. You can also add this line to your `~/.bashrc` file if you'd like this to persist.