漏洞描述
Loqate API Key is leaked.
id: loqate-api-key
info:
name: Loqate API Key
author: realexp3rt
severity: low
description: Loqate API Key is leaked.
reference:
- https://www.loqate.com/en-gb/home/
metadata:
max-request: 1
tags: exposure,token,loqate,vuln
http:
- method: GET
path:
- "{{BaseURL}}"
extractors:
- type: regex
part: body
regex:
- "[A-Z]{2}[0-9]{2}-[A-Z]{2}[0-9]{2}-[A-Z]{2}[0-9]{2}-[A-Z]{2}[0-9]{2}"
# digest: 490a00463044022004e3c296ac42f4c2ba607fb74275e151f8ce95cac4b99e3e733406d62067bd33022006801a08d329f1a875107c5ea51b39f15febf9bc99c0ab718811c71fbd4cd78a:922c64590222798bb761d5b6d8e72950