41 Commits

Author SHA1 Message Date
Mo Langning
4883481ddf
Added .well-known/humans.txt 2023-11-24 18:41:35 +08:00
Dominique RIGHETTO
e3ae747e69
Add K8S monitoring endpoints 2023-07-27 09:21:19 +02:00
Dominique RIGHETTO
0634488f50
Update common.txt 2023-06-01 10:27:43 +02:00
Dominique RIGHETTO
9cae2f8bae
Add config files 2023-05-18 08:30:06 +02:00
Dominique RIGHETTO
7732856ab9
Update common.txt 2023-03-09 13:34:32 +01:00
Wouter Kobes
f752b04a32 Adds activation to common.txt 2022-07-23 16:42:03 +02:00
Ben M Stokland
a7d0fc30a1
Add Hangfire console
https://docs.hangfire.io/en/latest/configuration/using-dashboard.html
https://www.shodan.io/search?query=http.title%3A%22hangfire%22
2022-04-20 21:32:18 +02:00
g0tmi1k
58370984a4
Merge pull request #687 from righettod/master
Add "h2-console" word

https://mp.weixin.qq.com/s/Yn5U8WHGJZbTJsxwUU3UiQ
https://jfrog.com/blog/the-jndi-strikes-back-unauthenticated-rce-in-h2-database-console
https://www.shodan.io/search?query=http.title%3A%22H2+Console%22
2022-01-31 23:22:06 +00:00
Dominique RIGHETTO
22908368be
Add "h2-console" word 2022-01-08 13:45:09 +01:00
Varun Kakumani
31a89fd18d
Added latest years to dictionary 2021-12-02 02:04:03 +05:30
Dominique RIGHETTO
2c97b1bea1
Add missing OAUTH2/OIDC endpoints
See https://righettod.eu.auth0.com/.well-known/openid-configuration
2021-07-05 14:17:15 +02:00
g0tmi1k
034041bb6b
Merge pull request #615 from righettod/feature_add_shibboleth-sso
Add Shibboleth.sso Metadata endpoint

https://wiki.shibboleth.net/confluence/display/CONCEPT/MetadataForSP
2021-06-12 19:16:16 +01:00
Dominique RIGHETTO
3eeb4e5292
Add Shibboleth.sso Metadata endpoint
Source: https://wiki.shibboleth.net/confluence/display/CONCEPT/MetadataForSP
2021-06-07 15:43:03 +02:00
Dominique RIGHETTO
864faed87f
Add "oauth/token/info" endpoint
See https://docs.gitlab.com/ee/api/oauth2.html#retrieving-the-token-information
2021-05-28 15:44:59 +02:00
Dominique RIGHETTO
56e23b6436
Add openid endpoints and metadata
See https://connect2id.com/products/server/docs/api
2021-05-28 15:20:54 +02:00
Dominique RIGHETTO
0e471e3faf
Add oauth endpoints
See https://auth0.com/docs/protocols/protocol-oauth2#endpoints
2021-05-28 15:11:32 +02:00
Dominique RIGHETTO
4a2ab64c10
Add security.txt at the root 2021-04-15 07:58:49 +02:00
Dominique RIGHETTO
6715ca5d96
Add "contribute.json" file entry 2021-03-01 12:36:34 +01:00
Dominique RIGHETTO
6400f4d31e
Change the url to google 2021-02-26 14:12:33 +01:00
Dominique RIGHETTO
2afcf1217c
Add specific render endpoints 2021-02-21 18:55:29 +01:00
Olivier Lasne
ca898cc4c7 Added webpack.manifest.json 2021-02-11 23:05:42 +01:00
g0tmi1k
5d0d24f91b
Merge pull request #562 from righettod/feature_blazor
Add Microsoft Blazor WebAssembly identifiers

Source: https://github.com/SteveSandersonMS/CarChecker
2021-02-11 21:26:13 +00:00
g0tmi1k
ad24e5dcd1
Merge pull request #549 from righettod/Feature_548
Add ".well-known/jwks.json" path to common.txt file.

Source:

- https://auth0.com/docs/tokens/json-web-tokens/json-web-key-sets
- https://docs.aws.amazon.com/cognito/latest/developerguide/amazon-cognito-user-pools-using-tokens-verifying-a-jwt.html#amazon-cognito-user-pools-using-tokens-step-2
- https://blogs.akamai.com/2019/10/verify-jwt-with-json-web-key-set-jwks-in-api-gateway.html
2021-02-11 20:50:33 +00:00
g0tmi1k
cd52c8428a
Merge pull request #547 from fiLLLip/patch-1
Add humans.txt

Source: http://humanstxt.org/
2021-02-11 20:49:46 +00:00
g0tmi1k
9fbf6cb419
Merge pull request #524 from t0-git/patch-1
Adding new .git entries and .svnignore.
2021-02-11 20:28:23 +00:00
Dominique RIGHETTO
405cf59743
Add Microsoft Blazor client identifier 2021-01-24 08:58:00 +01:00
Dominique RIGHETTO
38581fac54
Add ".well-known/jwks.json" path
Add path to the JSON Web Key Sets file.
This file is documented [here](https://auth0.com/docs/tokens/json-web-tokens/json-web-key-sets)
2020-12-27 16:35:37 +01:00
Filip Andre Larsen Tomren
8327e45d92 Add humans.txt to common list
'humans.txt' is common as specified http://humanstxt.org. At least as
common as 'humans', without having to specify extension in tools like 'dirb'.
2020-12-08 14:53:06 +01:00
g0tmi1k
9f4d672e98
Merge pull request #517 from righettod/master
Add path to a common ManageEngine endpoint

Source: https://righettod.eu/#4-vulns
2020-11-11 12:00:53 +00:00
t0-git
8d60339a5f
Adding new git entries and .svnignore. 2020-10-07 21:02:51 +02:00
clem9669
6150a902f3
Adding nextcloud & owncloud to common.txt
Nextcloud & ownCloud are two famous software for creating and using file hosting service.
PS: this adding might also be done on bigger discovery list because none of big list contains them
2020-10-02 08:30:11 +00:00
Dominique RIGHETTO
fee58c17da
Add path to a common ManageEngine endpoint
Add path to a endpoint often exposed to anonymous user by ManageEngine products.
See https://www.manageengine.com/
2020-10-02 08:32:34 +02:00
g0tmi1k
6beba93eac
Merge pull request #427 from Failsafe-0verflowme/patch-1
Update common.txt
2020-06-05 16:30:13 +01:00
Clément Notin
123be76ca1
Add .well-known entries 2020-05-08 01:14:12 +02:00
0verflowme
ffc8d2bf32
Update common.txt 2020-05-03 19:53:03 +05:30
Dominique RIGHETTO
44b3fdedf2
Add entries from a blog about content discovery in API
Blog url: https://blog.jonlu.ca/posts/experiments-and-growth-hacking
2020-01-03 16:22:45 +01:00
Dominique RIGHETTO
f7314e9c34
Add entry from Portswigger WebAcademy
Entry found in labs from https://portswigger.net/web-security/access-control
2019-12-29 11:50:12 +01:00
Dirk Wetter
3ce96b82d4
Update with entries from Wikipedia
...see https://en.wikipedia.org/wiki/List_of_/.well-known/_services_offered_by_webservers
2019-10-02 21:35:58 +02:00
Dirk Wetter
d7bf9b91bd
Add some .well-known dir entries
*  Add 1x apple-app-site-association, as it also can appear in docroot: https://developer.apple.com/library/archive/documentation/General/Conceptual/AppSearch/UniversalLinks.html

  *  put .well-known in alphabetical order

  * Added more from IANA registry: https://www.iana.org/assignments/well-known-uris/well-known-uris.xhtml

There might be still more URI -- Apple didn't seem to have registered their URI either at IANA either (process see  https://tools.ietf.org/html/rfc5785#5.1).)
2019-09-30 15:47:38 +02:00
Ricardo
6d15c05bc4
Include .well-known/apple-app-site-association
Include .well-known/apple-app-site-association
Ref: https://www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2019/april/apples_app_site_association_the_new_robots_txt/
2019-04-12 16:25:47 +01:00
g0tmi1k
25d4ac447e rename 's/_/-/g' 2017-08-23 14:55:06 +01:00