Monitor GitHub events.
Go to file
2023-11-10 23:43:25 -05:00
.img CATCH EM SLIPPIN 2023-11-10 23:20:43 -05:00
gitmon Add countdown 2023-11-10 22:46:18 -05:00
.gitignore Exclude configuration 2023-11-10 21:33:46 -05:00
main.py Token is optional 2023-11-10 23:43:25 -05:00
README.md CATCH EM SLIPPIN 2023-11-10 23:20:43 -05:00
requirements.txt Add loguru for logging 2023-11-10 20:35:04 -05:00

GitMon

Monitor GitHub events and clone repositories to search for secrets, and more.

Overview

GitMon allows an operator to continually monitor the GitHub Events API to collect metadata and look for secret leakage.

When certain events such as CreateEvent or DeleteEvent are observed, GitMon will send the repository URL to a worker that will clone the repository and search for API keys, passwords, endpoints, and more.

GitMon will also build a table that maps commit email addresses to GitHub usernames.

Caught Slippin'

Deleted GitHub token

Cloud creds

Contributors

  • agathanonymous