Information Gathering

Quidam – Leveraging Forgotten Password Functions For Information Retrieval

Quidam is an innovative tool designed to harness the forgotten password functions of various social platforms to retrieve partial user information.

This open-source intelligence tool, compatible with Python, enables users to access data such as email addresses and phone numbers from sites like Twitter, Instagram, and GitHub.

Ideal for educational and research purposes, Quidam is a must-have for anyone in the field of information security and digital forensics.

Educational Purposes Only

Quidam allows you to retrieve information thanks to the forgotten password function of some sites.

Prerequisite

Python 2/3

Installation

With PyPI

pip3 install Quidam

With Github

git clone https://github.com/megadose/Quidam.git
cd Quidam/
python3 setup.py install

Usage

from quidam import *
print(instagram("test"))
print(twitter("test"))
print(github("test"))

Example

python3 Quidam.py -u test -m all

Type Of Information Per Site:

  • Twitter: If the person has not disabled the email option and the last 2 digits of their phone number as well as part of the email the star number * is the right number corresponding to the email.
  • Instagram : Always retrieves a part of the email with the right number of stars and the full domain name
  • Github: Go look at recent commits with the api so give the full email and the name associated with the email address.

Rate Limit:

  • Twitter rate limit if you do it too fast just change IP
  • Instagram no rate limit
  • Github no rate limit
Varshini

Varshini is a Cyber Security expert in Threat Analysis, Vulnerability Assessment, and Research. Passionate about staying ahead of emerging Threats and Technologies.

Recent Posts

garak, LLM Vulnerability Scanner : The Comprehensive Tool For Assessing Language Model Security

garak checks if an LLM can be made to fail in a way we don't…

1 hour ago

Vermilion : Mastering Linux Post-Exploitation For Red Team Success

Vermilion is a simple and lightweight CLI tool designed for rapid collection, and optional exfiltration…

1 hour ago

AD-CS-Forest-Exploiter : Mastering Security Through PowerShell For AD CS Misconfiguration

ADCFFS is a PowerShell script that can be used to exploit the AD CS container…

1 hour ago

Usage Of Tartufo – A Comprehensive Guide To Securing Your Git Repositories

Tartufo will, by default, scan the entire history of a git repository for any text…

1 hour ago

Loco : A Rails-Inspired Framework For Rust Developers

Loco is strongly inspired by Rails. If you know Rails and Rust, you'll feel at…

1 day ago

Monolith : The Ultimate Tool For Storing Entire Web Pages As Single HTML Files

A data hoarder’s dream come true: bundle any web page into a single HTML file.…

1 day ago