AWS Secrets

Trufflehog

Download the Git repo and run:

trufflehog --regex --entropy=False <repo>

image.png

Nosey Parker

Using Docker, run:

sudo docker run -v "$PWD":/scan ghcr.io/praetorian-inc/noseyparker:latest scan -d <repo>.np --git-url <git url>
sudo docker run -v "$PWD":/scan ghcr.io/praetorian-inc/noseyparker:latest report -d <repo>.np

image.png

Grep

grep -R "mysqli_connect" . 2> /dev/null

image.png

image.png