jsleak: detect leaks in JS files via regex patterns
jsleak
jsleak is a tool to identify sensitive data in JS files through regex patterns. Although it’s built for this, you can use it to identify anything as long as you have a regex pattern for it.
Install
{your package manager} install pkg-config libpcre++-dev
go get github.com/0xTeles/jsleak/v2/jsleak
To Do
- Fix output
- Add more patterns
- Add stdin
- Implement JSON input
- Fix patterns
- Implement PCRE
Use
Example
cat urls.txt | jsleak -pattern regex.txt
[+] Url: http://localhost/index.js
[+] Pattern: p([a-z]+)ch
[+] Match: peach
Source: https://github.com/0xTeles/