main.go 2.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111
  1. package main
  2. import (
  3. "bytes"
  4. _ "fmt"
  5. "log"
  6. "os"
  7. "os/exec"
  8. "strings"
  9. )
  10. // go get hunt is a github secret key hunter written in go. target organizations, users, and remote/local repos
  11. // gotta be fast
  12. type Repo struct {
  13. url string
  14. name string
  15. path string
  16. branches *Branch
  17. }
  18. type Branch struct {
  19. name string
  20. }
  21. var appRoot string
  22. func init() {
  23. appRoot, _ = os.Getwd()
  24. }
  25. func main() {
  26. args := os.Args[1:]
  27. opts := parseOptions(args)
  28. start(opts)
  29. }
  30. func start(opts *Options) {
  31. if opts.Repo != "" {
  32. repoStart(opts.Repo)
  33. }
  34. }
  35. func repoStart(repo_url string) {
  36. err := exec.Command("git", "clone", repo_url).Run()
  37. if err != nil {
  38. log.Fatalf("failed to clone repo %v", err)
  39. }
  40. repo_name := strings.Split(repo_url, "/")[4]
  41. if err := os.Chdir(repo_name); err != nil {
  42. log.Fatal(err)
  43. }
  44. repo := Repo{repo_url, repo_name, "", nil}
  45. repo.audit()
  46. repo.cleanup()
  47. }
  48. // cleanup changes to app root and recursive rms target repo
  49. func (repo Repo) cleanup() {
  50. if err := os.Chdir(appRoot); err != nil {
  51. log.Fatalf("failed cleaning up repo %v", err)
  52. }
  53. err := exec.Command("rm", "-rf", repo.name).Run()
  54. if err != nil {
  55. log.Fatal(err)
  56. }
  57. }
  58. // (Repo) audit parses git branch --all to audit remote branches
  59. func (repo Repo) audit() {
  60. var out []byte
  61. var err error
  62. var branch string
  63. var commits [][]byte
  64. out, err = exec.Command("git", "branch", "--all").Output()
  65. if err != nil {
  66. log.Fatalf("error retrieving branches %v\n", err)
  67. }
  68. // iterate through branches, git rev-list <branch>
  69. branches := bytes.Split(out, []byte("\n"))
  70. for i, branchB := range branches {
  71. if i < 2 || i == len(branches)-1 {
  72. continue
  73. }
  74. branch = string(bytes.Trim(branchB, " "))
  75. out, err = exec.Command("git", "rev-list", branch).Output()
  76. if err != nil {
  77. log.Fatalf("error retrieving commits %v\n", err)
  78. }
  79. // iterate through commits
  80. commits = bytes.Split(out, []byte("\n"))
  81. for j, commitB := range commits {
  82. if j == len(commits)-2 {
  83. break
  84. }
  85. diff(string(commitB), string(commits[j+1]))
  86. }
  87. }
  88. }
  89. func diff(commit1 string, commit2 string) {
  90. // fmt.Println(commit1, commit2)
  91. _, err := exec.Command("git", "diff", commit1, commit2).Output()
  92. if err != nil {
  93. log.Fatalf("error retrieving commits %v\n", err)
  94. }
  95. //fmt.Printf("%s\n", out)
  96. }