pepe是一个基于python的用于从Pastebin收集有关泄露电子邮件地址信息的脚本工具。
它会解析Pastebin email:password转储并收集有关每个电子邮件地址的信息。pepe目前支持Google,Trumail,Pipl,FullContact和HaveIBeenPwned。此外,它还允许你向人发送有关其泄露密码的信息邮件,最后每个信息都会在Elasticsearch中进行进一步的探索。
它只支持一种格式 – email:password。
目前,通知(notification)仅在FullContact上找到匹配时才会工作,然后会向你发送电子邮件地址和关联的社交媒体帐户。
Python 3
FullContact API https://www.fullcontact.com/developer/
Pipl API https://pipl.com/api/
HaveIBeenPwned
SafePush (通知 – 可选 – 正在进行中) https://www.pushsafer.com/
Trumail https://trumail.io/
Gmail account (发送电子邮件)
Elasticsearch (可选)
pip install -r requirements交互模式,单独检查每个电子邮件并执行特定模块。天空彩
root@kali:~/PycharmProjects/pepe# python pepe.py --file paste.txt --interactive --blacklist -----------------------Found email [REDACTED]@hotmail.com with password [REDACTED]----------------------- [A] Add domain hotmail.com to blacklist [T] Test [G] Google search [H] HaveIBeenPwned [P] Pipl [F] FullContact [I] Inform [N] Next > G ---Google Search--- http://[REDACTED] http://[REDACTED] http://[REDACTED] [A] Add domain gmail.com to blacklist [T] Test [G] Google search [H] HaveIBeenPwned [P] Pipl [F] FullContact [I] Inform [N] Next > N -----------------------Found email [REDACTED].[REDACTED]@gmail.com with password [REDACTED]----------------------- [A] Add domain gmail.com to blacklist [T] Test [G] Google search [H] HaveIBeenPwned [P] Pipl [F] FullContact [I] Inform [N] Next > F ---FullContact--- [REDACTED] [REDACTED] https://twitter.com/[REDACTED] https://facebook.com/[REDACTED] https:/linkedin.com/[REDACTED] [A] Add domain gmail.com to blacklist [T] Test [G] Google search [H] HaveIBeenPwned [P] Pipl [F] FullContact [I] Inform [N] Next > P ---Pipl--- Name: [REDACTED] [REDACTED] years old Jobs: Quality Control [REDACTED] (since 2018) [REDACTED] Review [REDACTED] (2017-2018) [REDACTED] Attorney [REDACTED] (2017-2018) [REDACTED] Attorney at [REDACTED] (2017-2017) ... [REDACTED] (2012-2012) [REDACTED] Assistant at [REDACTED] (2012-2012) Author/Founder at [REDACTED] (2009-2011) https://www.linkedin.com/in/[REDACTED] http://www.facebook.com/people/[REDACTED] http://twitter.com/[REDACTED] http://pinterest.com/[REDACTED] https://plus.google.com/[REDACTED] ... [REDACTED]非交互模式,仅针对电子邮件地址执行所选模块。中国菜刀
root@kali:~/PycharmProjects/# python pepe.py --file pastetest.txt --blacklist --modules hibp google fullcontact trumail --elasticsearch -----------------------Found email [REDACTED]@hotmail.com with password [REDACTED]----------------------- ---Google Search--- https://pastebin.com/[REDACTED] ---Have I Been Pwned--- LinkedIn ---FullContact--- No results ---Trumail--- Email test passed -----------------------Found email charlie.[REDACTED]@live.com with password [REDACTED]----------------------- ---Google Search--- https://justpaste.it/[REDACTED] https://pastebin.com/[REDACTED] ---Have I Been Pwned--- MyHeritage RiverCityMedia Tumblr YouveBeenScraped ---FullContact--- Charlie [REDACTED] https://twitter.com/[REDACTED] [REDACTED] ---Trumail--- Email test passed -----------------------Found email [REDACTED].[REDACTED]@gmail.com with password [REDACTED]----------------------- ---Google Search--- http://[REDACTED] http://[REDACTED] http://[REDACTED] https://pastebin.com/[REDACTED] ---Have I Been Pwned--- BTSec Exactis HauteLook Houzz LinkedIn ---FullContact--- [REDACTED] [REDACTED] https://www.facebook.com/[REDACTED] [REDACTED] ---Trumail--- Email test passed -----------------------Found email [REDACTED].[REDACTED]@gmail.com with password [REDACTED]----------------------- ---Google Search--- https://[REDACTED] https://[REDACTED] https://[REDACTED] https://pastebin.com/[REDACTED] ---Have I Been Pwned--- Lastfm LinkedIn MySpace Trillian Tumblr ---FullContact--- [REDACTED] [REDACTED] [REDACTED]. https://www.facebook.com/[REDACTED] https://plus.google.com/[REDACTED] https://www.linkedin.com/in/[REDACTED] http://www.pinterest.com/[REDACTED] https://twitter.com/[REDACTED] https://youtube.com/user/[REDACTED] [REDACTED]