Hacker News new | past | comments | ask | show | jobs | submit login
2 Years of monitoring sensitive information pastebin dumps - @dumpmon (2015) (jordan-wright.com)
66 points by matthberg on May 5, 2017 | hide | past | favorite | 7 comments



That's a pretty easy path to find targets, full details tweeted to you daily. And probably high rate of success, as somebody already felt the need to pastebin it.

I worry about unprotected S3 buckets too. There's probably a Twitter bot coming soon for those: https://community.rapid7.com/community/infosec/blog/2013/03/...


If you are interested to run your own pastebin (or alike) analysis, AIL is a "modular framework to analyse potential information leaks from unstructured data sources like pastes from pastebin or similar services or unstructured data streams." https://github.com/CIRCL/AIL-framework


Whoa that looks awesome. Nice work!


This seems like a great idea, but taking a look at what the Twitter bot is posting shows it tweets a lot of false positives, such as hashes of files (which it presumably thinks might be password hashes)


Hi everyone, author of the post here. Happy to answer any questions.


I am also Time Magazine's 2006 Person Of The Year.


Hey, it's true! I thought it was cute.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: