

GitHub - thewhiteh4t/pwnedOrNot: Python Script to Find Passwords for Compromised...
source link: https://github.com/thewhiteh4t/pwnedOrNot
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

README.MD
pwnedOrNot
Introduction
pwnedOrNot is a python script which checks if the email account has been compromised in a data breach, if the email account is compromised it proceeds to find passwords for the compromised account.
It uses haveibeenpwned v2 api to test email accounts and searches for the password in Pastebin Dumps
This script has been tested on
- Kali Linux 18.2
- Ubuntu 18.04
- Kali Nethunter
- Termux
Installation
Ubuntu and Kali
pip install cfscrape apt-get install nodejs
Termux
pkg install python2 pkg install git pip2 install requests pip2 install cfscrape
Other common standard python modules pwnedornot uses:
- os
- re
- time
- json
- requests
Usage
git clone https://github.com/thewhiteh4t/pwnedOrNot.git
cd pwnedOrNot/
python pwnedornot.py
Features
haveibeenpwned offers a lot of information about the compromised email, some useful information is displayed by this script:
- Name of Breach
- Domain Name
- Date of Breach
- Fabrication status
- Verification Status
- Retirement status
- Spam Status
- Source of Dump
- ID of Dump
And with all this information pwnedOrNot can easily find passwords for compromised emails if the dump is accessible and it contains the password
Screenshots
Also works on Kali Nethunter
Recommend
-
40
Well crap. It looks like JavaScript library Feedify got owned and were serving Magecart :grimacing: any comment @ _Feedify ? Check out the regex, looking for generic c...
-
11
In their RSA 2020 talk Advanced Persistence Threats: The Future of Kubernetes Attacks, Ian Coldwater and Brad Geesaman demonstrated that K3s, a lightweight version of Kubernetes, can b...
-
14
SolarWinds Trojan: Affected enterprises must use hot patches, isolate compromised gear SolarWinds is recommending that customers hit by the Trojan embedded in a version of its Orion network-monitoring platform update...
-
11
Nvidia and Intel used compromised SolarWinds software The list of affected organizations keeps growing. ...
-
10
Saturday, 19 December 2020 12:10 Attackers in compromised US system at least since mid-2019: report Featured By
-
14
Wednesday, 23 December 2020 09:31 NSW Health among users of compromised network management tool Featured By S...
-
10
15 April 2020 / 0-day Multiple fiber routers are being compromised by botnets using 0-day
-
8
Web Security ...
-
6
ConversationReplying to @smpalladinoEverything started with an email from the brother of a friend asking for help.
-
5
How Attackers Use Compromised Accounts to Create and Distribute Malicious OAuth Apps May 05, 2021 ...
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK