BurpSuite : Secret Finder Extension To Discover APIkeys/Tokens From HTTP Response

BurpSuite is a Secret Finder Burp Suite extension to discover a apikey/tokens from HTTP response.

Install

>>Download SecretFinder
wget https://raw.githubusercontent.com/m4ll0k/BurpSuite-Secret_Finder/master/SecretFinder.py

or

git clone https://github.com/m4ll0k/BurpSuite-Secret_Finder.git
>>now open Burp > Extender > Extensions > Add > set python and select file (SecretFinder.py)

Also Read – SubDomain3: A New Generation Tool For Discovering Subdomains

Requirements

  • jython
  • burpsuite