Một mục tập trung bảo mật trong kho dữ liệu GitHub của TopGit: bee-san/pyWhat, 7.3k sao, nhóm Security, Python. 🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it is! 🧙♀️
Tóm tắt dựng từ metadata GitHub của chính dự án — chưa có bài review TopGit. Trang sẽ tự động cập nhật khi bài review đầy đủ được xuất bản.
VÌ SAO CHƯA CÓ REVIEW
TopGit viết bài đầy đủ cho repo có nhiều sao nhất và được yêu cầu nhiều nhất. Trang này là snapshot trong thời gian chờ — xem README gốc ở tab READ ME.
➡️ Discord ⬅️ The easiest way to identify anything pip3 install pywhat && pywhat --help
🤔 What is this?
Imagine this: You come across some mysterious text 🧙♂️ 0x52908400098527886E0F7030069857D2E4169EE7 or dQw4w9WgXcQ and you wonder what it is. What do you do?
Well, with what all you have to do is ask what "0x52908400098527886E0F7030069857D2E4169EE7" and what will tell you!
what's job is to identify what something is. Whether it be a file or text! Or even the hex of a file! What about text within files? We have that too! what is recursive, it will identify everything in text and more!
Installation
🔨 Using pip
$ pip3 install pywhat
or
# installs optional dependencies that may improve the speed
$ pip3 install pywhat[optimize]
🔨 On Mac?
$ brew install pywhat
Or for our MacPorts fans:
$ sudo port install pywhat
⚙ Use Cases
🦠 Wannacry
You come across a new piece of malware called WantToCry. You think back to Wannacry and remember it was stopped because a researcher found a kill-switch in the code.
When a domain, hardcoded into Wannacry, was registered the virus would stop.
You use What to identify all the domains in the malware, and use a domain registrar API to register all the domains.
🦈 Faster Analysis of Pcap files
Say you have a .pcap file from a network attack. What can identify this and quickly find you:
All URLs
Emails
Phone numbers
Credit card numbers
Cryptocurrency addresses
Social Security Numbers
and much more.
With what, you can identify the important things in the pcap in seconds, not minutes.
🐞 Bug Bounties
You can use PyWhat to scan for things that'll make you money via bug bounties like:
API Keys
Webhooks
Credentials
and more
Run PyWhat with:
pywhat --include "Bug Bounty" TEXT
To do this.
Here are some examples 👇
🐙 GitHub Repository API Key Leaks
Download all GitHub repositories of an organisation
Search for anything that you can submit as a bounty, like API keys
# Download all repositories
GHUSER=CHANGEME; curl "https://api.github.com/users/$GHUSER/repos?per_page=1000" | grep -o 'git@[^"]*' | xargs -L1 git clone
# Will print when it finds things.
# Loops over all files in current directory.
find . -type f -execdir pywhat --include 'Bug Bounty' {} \;
🕷 Scan all web pages for bounties
# Recursively download all web pages of a site
wget -r -np -k https://skerritt.blog
# Will print when it finds things.
# Loops over all files in current directory.
find . -type f -execdir pywhat --include 'Bug Bounty' {} \;
PS: We support more filters than just bug bounties! Run pywhat --tags
🌌 Other Features
Anytime you have a file and you want to find structured data in it that's useful, What is for you.
Or if you come across some piece of text and you don't know what it is, What will tell you.
📁 File & Directory Handling
File Opening You can pass in a file path by what 'this/is/a/file/path'. What is smart enough to figure out it's a file!
What about a whole directory? What can handle that too! It will recursively search for files and output everything you need!
🔍 Filtering your output
Sometimes, you only care about seeing things which are related to AWS. Or bug bounties, or cryptocurrencies!
You can filter output by using what --rarity 0.2:0.8 --include Identifiers,URL https://skerritt.blog. Use what --help to get more information.
To see all filters, run pywhat --tags! You can also combine them, for example to see all cryptocurrency wallets minus Ripple you can do:
Sorting You can sort the output by using what -k rarity --reverse TEXT. Use what --help to get more information.
Exporting You can export to json using what --json and results can be sent directly to a file using what --json > file.json.
Boundaryless modeWhat has a special mode to match identifiable information within strings. By default, it is enabled in CLI but disabled in API. Use what --help or refer to API Documentation for more information.
🍕 API
PyWhat has an API! Click here https://github.com/bee-san/pyWhat/wiki/API to read about it.
👾 Contributing
what not only thrives on contributors, but can't exist without them! If you want to add a new regex to check for things, you can read our documentation here
We ask contributors to join the Discord for quicker discussions, but it's not needed:
🙏 Thanks
We would like to thank Dora for their work on a bug bounty specific regex database which we have used.
Có — bee-san/pyWhat phát hành theo license MIT, nghĩa là mã nguồn mở để đọc, fork và (tùy license) tái sử dụng. Mã: github.com/bee-san/pyWhat.
bee-san/pyWhat có website riêng không?
TopGit chưa ghi nhận URL trang chủ cho bee-san/pyWhat. Phần README ở tab phía trên thường có link demo, hoặc xem mô tả GitHub của repo.
bee-san/pyWhat còn đang phát triển không?
Commit gần nhất trên bee-san/pyWhat là 2.8 năm trước (theo timestamp GitHub). Repo có 391 fork — một chỉ báo về mức độ quan tâm của cộng đồng.
bee-san/pyWhat dùng license gì?
bee-san/pyWhat phát hành theo license MIT. Nên mở file LICENSE trên GitHub để xác nhận — license metadata đôi khi lệch với thực tế dự án.
Đọc thêm về bee-san/pyWhat ở đâu?
Trang TopGit này là một snapshot — tab "Readme" hiển thị nguyên văn README của repo (đã bỏ link, giữ ảnh). Repo GitHub ở github.com/bee-san/pyWhat là nguồn chính thức.
Đọc đầy đủ README ở tab phía trên.
pyWhat có đáng để bạn bỏ thời gian?
ChatGPT, Claude và Perplexity đều đọc được trang này. Hỏi thử xem họ nghĩ gì về pyWhat.