Intigriti - Hack Hub
  • Misconfig Mapper Docs
    • Introduction
    • Supported Services
    • CLI Tool
    • Contributing
  • Services
    • GraphQL
      • GraphQL Introspection Query Enabled
    • Symfony PHP
      • Symfony Profiler Enabled
    • Postman API Platform
      • Public Workspaces
    • Salesforce
      • Salesforce Lightning Aura Components Enabled
    • Trello
      • View Permissions on Trello Boards
    • Figma
      • View access misconfiguration
    • Freshworks Freshservice
      • Open User Registration
    • Slack
      • No Admin Approval for Invitations
    • Atlassian Bitbucket
      • Publicly Accessible Private Repositories
    • Atlassian Confluence
      • Anonymous access to Remote API
      • Disabled XSRF Protection
      • User Email Visibility
      • Misconfigured Spaces
    • Atlassian Jira
      • Open User Registration
      • Atlassian Jira Email Visibility
      • Atlassian Jira Service Desk Open Signups
    • AWS S3
      • Misconfigured List Permissions
    • Cloudflare R2
      • R2.DEV Enabled
    • Google Groups
      • Misconfigured read permissions
    • Google Docs
      • Misconfigured read permissions
    • Google Cloud Storage Bucket
      • Misconfigured access controls
    • Google OAuth
      • Unrestricted email domains
    • Jenkins
      • Open Signups
      • Public Groovy Script Console
    • GitLab
      • Gitlab Private Source Code Snippets Exposed
    • Drupal
      • Drupal Nodes with Misconfigured Access Controls
    • Laravel
      • Debug Mode Enabled
      • Laravel Telescope Enabled In Production
Powered by GitBook
On this page
  • Automated Services
  • Documented Services
  • Upcoming Services

Was this helpful?

Edit on GitHub
  1. Misconfig Mapper Docs

Supported Services

A comprehensive list of documented and automated services.

Automated Services

Below is a list of all the misconfigurations that have been documented and automated.

  • Atlassian Jira

  • Slack

  • Google Groups

  • Google Cloud Storage Bucket

  • Jenkins

  • GitLab

  • Drupal

  • Laravel

  • GraphQL

  • Freshworks

  • Salesforce

  • AWS S3

  • Cloudflare R2

A more extensive list can be requested by executing the following command on the provided CLI tool:

$ ./misconfig-mapper -list-services

Documented Services

Below is a list of all the misconfigurations that have only been documented so far.

Please do note that currently not every documented misconfiguration has been automated and integrated into the Misconfig Mapper tool.

  • Trello

  • Figma

  • Slack

  • Atlassian BitBucket

  • Atlassian Confluence

  • Atlassian Jira

  • Google Groups

  • Google Docs

  • Google Cloud Storage Bucket

  • Google OAuth 2.0

  • Jenkins

  • GitLab

  • Drupal

  • Symfony

  • Laravel

  • GraphQL

  • Postman API Platform

  • Salesforce

  • AWS S3

  • Cloudflare R2

Upcoming Services

PreviousIntroductionNextCLI Tool

Last updated 9 months ago

Was this helpful?