How to Find Hidden Passwords – Hardcoded Credentials
Hey guys! In this video, I’m gonna show you how to find Hidden Passwords & secrets hiding in web apps like API keys, tokens, and passwords devs accidentally leave behind. I’ll be using Gitleaks, a solid tool that helps dig this stuff up fast. Along with a fixed text string. If you’re into bug bounties or just poking around for fun, you’ll wanna check this out.
How to Find Hidden Passwords – Hardcoded Credentials:
Resources:
Gitleaks: https://github.com/gitleaks/gitleaks
Credentials Text Search: https://github.com/E30IS/Leaked-Credentials
⚠️ Please be advised that this video is made for educational security purposes only. Also note that you shouldn’t test on devices that you don’t have permissions to test. We always have the permissions granted to test the accounts/devices used on this channel⚠️
If you’re interested in learning more about Ethical Hacking you should check out more related articles here: Hacking & Security Posts!
If you’re interested in learning more about OSINT you should check out OSINT Course here: Learn OSINT From Scratch