{"repo":"ztgrace/changeme","free":true,"listed":false,"github":"https://github.com/ztgrace/changeme","clone":"git clone https://github.com/ztgrace/changeme.git","description":"A default credential scanner.","language":"Python","stars":1515,"topics":["infosec","python","security","penetration-testing","security-tools","security-scanner","default-creds"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"changeme A default credential scanner. About changeme picks up where commercial scanners leave off. It focuses on detecting default and backdoor credentials and not necessarily common credentials. It's default mode is to scan HTTP default credentials, but has support for other credentials. changeme is designed to be simple to add new credentials without having to write any code or modules. changeme keeps credential data separate from code. All credentials are stored in yaml files so they can be both easily read by humans and processed by changeme. Credential files can be created by using the ./changeme.py --mkcred tool and answering a few questions. changeme supports the http/https, mssql, mysql, postgres, ssh, ssh w/key, snmp, mongodb and ftp protocols. Use ./changeme.py --dump to output all of the currently available credentials. You can load your targets using a variety of methods, single ip address/host, subnet, list of hosts, nmap xml file and Shodan query. All methods except for Shodan are loaded as a positional argument and the type is inferred. Installation changeme has only been tested on Linux and has known issues on Windows and OS X/macOS. Use docker to run changeme on the unsupported platforms. It supports either a redis-backed queue (most stable) or an in-memory backed queue. Stable versions of changeme can be found on the releases page. For mssql support, unixodbc-dev needs to be installed prior to installing the pyodbc . For postgres support, libpq-dev needs to","default_branch":null,"files":null,"tree":[],"storefront":"/r/ztgrace","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/ztgrace/changeme/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}