Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Add Default Credentials Mapping #241

Open
mr-pmillz opened this issue Oct 1, 2024 · 1 comment
Open

Add Default Credentials Mapping #241

mr-pmillz opened this issue Oct 1, 2024 · 1 comment

Comments

@mr-pmillz
Copy link
Contributor

mr-pmillz commented Oct 1, 2024

Is your feature request related to a problem? Please describe.

Add a default credentials mapping based on source html/response data.
This feature is not a huge priority but would be pretty sweet.

Describe the solution you'd like

EyeWitness uses txt files for signatures / categories and regex to do this mapping, but we could use a struct to json or yaml fingerprints file as an alternative approach.

In the GoWitness report, there could be a default credentials indicator icon in the gallery and additional info in the singular report page sections.

Additional context
Created this issue as a potential feature / todo list item.

@leonjza
Copy link
Member

leonjza commented Oct 2, 2024

Great idea. I was wondering about exactly this thing recently looking at this repo: https://github.com/ihebski/DefaultCreds-cheat-sheet (which is also permissively licensed!), but I left it thinking the false positive rate may be too high. However, the idea of more accurate fingerprints actually sounds great!

My preference would be a more structured data source too.

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants