Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Requesting manual verification instructions #2806

Closed
Dark-Aura opened this issue May 8, 2024 · 3 comments
Closed

Requesting manual verification instructions #2806

Dark-Aura opened this issue May 8, 2024 · 3 comments

Comments

@Dark-Aura
Copy link

Hi Team,

I have been using Trufflehog for the past year. However, I'm facing a few obstacles, and I believe taking certain actions would be helpful for us.

Currently, when I run Trufflehog with the "--verified" flag, it provides some verified results. However, if it detects a few issues, I would like to rerun specific detectors, such as "Postgres" or "Infura", with debug mode or through a proxy to double-check.

I suggest you add the following features in the new update:

Once I have used "--verified" I need to report to someone, I require steps to reproduce. for that, I would request you to add these Feature Requests:

  1. Debug, verbose, or proxy mode: I want to capture and check in Burp Suite how Trufflehog requests that specific detector or through CLI (verbose).
  2. Specific detector double-check

Adding these features would be very helpful for us.

@Dark-Aura
Copy link
Author

this image for Infura, I can check this code and re-execute it and report to the appropriate team, image

image
But in this code, I'm unable to find how to validate "Postgres", that's why I suggested it.

@dustin-decker dustin-decker changed the title Need favour Requesting manual verification instructions May 16, 2024
@dustin-decker
Copy link
Contributor

For now, I suggest trying to set the HTTP_PROXY and HTTPS_PROXY variables to point to burp. You will then be able to see what requests are made for reproduction.

@Dark-Aura
Copy link
Author

Thank you for your reply.

I haven't seen the HTTP_PROXY flag in the help menu, but I tried setting it anyway based on your instructions. I've tried setting the HTTP_PROXY variable as instructed, but I'm still getting an error. Could you please provide the exact command to fix this, or guide me through the steps?

For your reference here I'm attaching the screenshot

image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Development

No branches or pull requests

2 participants