Skip to content

Exploit script for the CFOR vulnerability using Github's GraphQL API

Notifications You must be signed in to change notification settings

SorceryIE/cfor_exploit

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 
 
 
 
 
 
 

Repository files navigation

CFOR Exploit

This exploit script is for the CFOR vulnerability

Blog post for the exploit script

To run copy example_config.py to config.py and add your Github API key.

Then you can run the exploit script like so:

./cfor_exp.py -t https://github.com/user/reponame

It can also be ran against all repos owned by a user or org

./cfor_exp.py -o user

About

Exploit script for the CFOR vulnerability using Github's GraphQL API

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages