Skip to main content

A tool to scan your direct GitHub dependencies for Go and find ones susceptible to ChainJacking attack

Project description

ChainJacking

Find which of your go lang direct GitHub dependencies is susceptible to ChainJacking attack

Requirements

  • Go and it's binaries >= 1.13
  • GitHub token, to run queries on GitHub API

Installation

pip install chainjacking

Usage

CLI

python -m chainjacking -gt $GH_TOKEN

Arguments

  • -gt <token> - GitHub access token, to run queries on GitHub API (required)
  • -p <path> - Path to scan. (default=current directory)
  • -v - Verbose output mode
  • -url <url> - Scan one or more GitHub URLs
  • -f <path> - Scan one or more GitHub URLs from a file separated by new-line

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

chainjacking-1.1.2.tar.gz (8.8 kB view details)

Uploaded Source

Built Distribution

chainjacking-1.1.2-py3-none-any.whl (9.6 kB view details)

Uploaded Python 3

File details

Details for the file chainjacking-1.1.2.tar.gz.

File metadata

  • Download URL: chainjacking-1.1.2.tar.gz
  • Upload date:
  • Size: 8.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.6.0 importlib_metadata/4.8.2 pkginfo/1.7.1 requests/2.26.0 requests-toolbelt/0.9.1 tqdm/4.62.3 CPython/3.9.8

File hashes

Hashes for chainjacking-1.1.2.tar.gz
Algorithm Hash digest
SHA256 ead7efd3b64c2d1dc42330c56408a9c5a34ed0859164d5085cb2715d58e38e85
MD5 ee685e0049e3c89aaaea2ad6d3660404
BLAKE2b-256 70371c4860bea64a768d466590081a556507beb1755990abfe520a5adcd59837

See more details on using hashes here.

File details

Details for the file chainjacking-1.1.2-py3-none-any.whl.

File metadata

  • Download URL: chainjacking-1.1.2-py3-none-any.whl
  • Upload date:
  • Size: 9.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/3.6.0 importlib_metadata/4.8.2 pkginfo/1.7.1 requests/2.26.0 requests-toolbelt/0.9.1 tqdm/4.62.3 CPython/3.9.8

File hashes

Hashes for chainjacking-1.1.2-py3-none-any.whl
Algorithm Hash digest
SHA256 04b07c247009abab48651e475f182885d721bf1f778aab710a8070c91e540d26
MD5 f8efdd8483a1f3d93279b64d9140a2f8
BLAKE2b-256 ab8a40253f72b135741a837ccd40ff36a7ecb7cddd3e13146a43bff92b13df23

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page