├── Java ├── Jersey │ ├── deleted │ │ ├── EndpointInspectorResource.java │ │ └── ScanResource.java │ ├── pom.xml │ ├── push.ps1 │ ├── scanner │ │ └── scanner │ │ │ ├── pom.xml │ │ │ └── src │ │ │ ├── main │ │ │ └── java │ │ │ │ └── scanner │ │ │ │ └── App.java │ │ │ └── test │ │ │ └── java │ │ │ └── scanner │ │ │ └── AppTest.java │ ├── src │ │ └── main │ │ │ ├── java │ │ │ └── com │ │ │ │ └── bsides │ │ │ │ ├── App.java │ │ │ │ ├── HelloWorldEndpoint.java │ │ │ │ └── JerseyConfig.java │ │ │ └── webapp │ │ │ └── WEB-INF │ │ │ └── web.xml │ └── target │ │ ├── classes │ │ └── com │ │ │ └── bsides │ │ │ ├── App.class │ │ │ ├── HelloWorldEndpoint.class │ │ │ └── JerseyConfig.class │ │ ├── maven-archiver │ │ └── pom.properties │ │ ├── maven-status │ │ └── maven-compiler-plugin │ │ │ ├── compile │ │ │ └── default-compile │ │ │ │ ├── createdFiles.lst │ │ │ │ └── inputFiles.lst │ │ │ └── testCompile │ │ │ └── default-testCompile │ │ │ ├── createdFiles.lst │ │ │ └── inputFiles.lst │ │ ├── shadow-api-1.0-SNAPSHOT.jar │ │ └── shadow-api-1.0-SNAPSHOT.jar.original ├── README.md └── SpringBoot │ └── demo │ ├── .gitignore │ ├── .mvn │ └── wrapper │ │ └── maven-wrapper.properties │ ├── mvnw │ ├── mvnw.cmd │ ├── pom.xml │ └── src │ ├── main │ ├── java │ │ └── com │ │ │ └── bsides │ │ │ └── demo │ │ │ ├── DemoApplication.java │ │ │ └── HelloWorldController.java │ └── resources │ │ └── application.properties │ └── test │ └── java │ └── com │ └── bsides │ └── demo │ └── DemoApplicationTests.java ├── JavaScript ├── README.md ├── log-analysis.sh ├── routes.log └── swagger.json ├── Python ├── README.md ├── django │ └── demo │ │ ├── demo │ │ ├── __init__.py │ │ ├── __pycache__ │ │ │ ├── __init__.cpython-311.pyc │ │ │ ├── settings.cpython-311.pyc │ │ │ ├── urls.cpython-311.pyc │ │ │ └── views.cpython-311.pyc │ │ ├── asgi.py │ │ ├── settings.py │ │ ├── urls.py │ │ ├── views.py │ │ └── wsgi.py │ │ ├── manage.py │ │ └── myapp │ │ ├── __init__.py │ │ ├── admin.py │ │ ├── apps.py │ │ ├── migrations │ │ └── __init__.py │ │ ├── models.py │ │ ├── tests.py │ │ └── views.py └── flask │ ├── __pycache__ │ └── app.cpython-311.pyc │ ├── app.py │ └── static │ └── hidden ├── README.md └── Spectral ├── .spectral.yaml ├── README.md ├── functions └── shadowApi.js └── swagger.json /Java/Jersey/deleted/EndpointInspectorResource.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/deleted/EndpointInspectorResource.java -------------------------------------------------------------------------------- /Java/Jersey/deleted/ScanResource.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/deleted/ScanResource.java -------------------------------------------------------------------------------- /Java/Jersey/pom.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/pom.xml -------------------------------------------------------------------------------- /Java/Jersey/push.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/push.ps1 -------------------------------------------------------------------------------- /Java/Jersey/scanner/scanner/pom.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/scanner/scanner/pom.xml -------------------------------------------------------------------------------- /Java/Jersey/scanner/scanner/src/main/java/scanner/App.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/scanner/scanner/src/main/java/scanner/App.java -------------------------------------------------------------------------------- /Java/Jersey/scanner/scanner/src/test/java/scanner/AppTest.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/scanner/scanner/src/test/java/scanner/AppTest.java -------------------------------------------------------------------------------- /Java/Jersey/src/main/java/com/bsides/App.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/src/main/java/com/bsides/App.java -------------------------------------------------------------------------------- /Java/Jersey/src/main/java/com/bsides/HelloWorldEndpoint.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/src/main/java/com/bsides/HelloWorldEndpoint.java -------------------------------------------------------------------------------- /Java/Jersey/src/main/java/com/bsides/JerseyConfig.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/src/main/java/com/bsides/JerseyConfig.java -------------------------------------------------------------------------------- /Java/Jersey/src/main/webapp/WEB-INF/web.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/src/main/webapp/WEB-INF/web.xml -------------------------------------------------------------------------------- /Java/Jersey/target/classes/com/bsides/App.class: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/classes/com/bsides/App.class -------------------------------------------------------------------------------- /Java/Jersey/target/classes/com/bsides/HelloWorldEndpoint.class: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/classes/com/bsides/HelloWorldEndpoint.class -------------------------------------------------------------------------------- /Java/Jersey/target/classes/com/bsides/JerseyConfig.class: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/classes/com/bsides/JerseyConfig.class -------------------------------------------------------------------------------- /Java/Jersey/target/maven-archiver/pom.properties: -------------------------------------------------------------------------------- 1 | artifactId=shadow-api 2 | groupId=com.example 3 | version=1.0-SNAPSHOT 4 | -------------------------------------------------------------------------------- /Java/Jersey/target/maven-status/maven-compiler-plugin/compile/default-compile/createdFiles.lst: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/maven-status/maven-compiler-plugin/compile/default-compile/createdFiles.lst -------------------------------------------------------------------------------- /Java/Jersey/target/maven-status/maven-compiler-plugin/compile/default-compile/inputFiles.lst: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/maven-status/maven-compiler-plugin/compile/default-compile/inputFiles.lst -------------------------------------------------------------------------------- /Java/Jersey/target/maven-status/maven-compiler-plugin/testCompile/default-testCompile/createdFiles.lst: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /Java/Jersey/target/maven-status/maven-compiler-plugin/testCompile/default-testCompile/inputFiles.lst: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /Java/Jersey/target/shadow-api-1.0-SNAPSHOT.jar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/shadow-api-1.0-SNAPSHOT.jar -------------------------------------------------------------------------------- /Java/Jersey/target/shadow-api-1.0-SNAPSHOT.jar.original: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/Jersey/target/shadow-api-1.0-SNAPSHOT.jar.original -------------------------------------------------------------------------------- /Java/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/README.md -------------------------------------------------------------------------------- /Java/SpringBoot/demo/.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/.gitignore -------------------------------------------------------------------------------- /Java/SpringBoot/demo/.mvn/wrapper/maven-wrapper.properties: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/.mvn/wrapper/maven-wrapper.properties -------------------------------------------------------------------------------- /Java/SpringBoot/demo/mvnw: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/mvnw -------------------------------------------------------------------------------- /Java/SpringBoot/demo/mvnw.cmd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/mvnw.cmd -------------------------------------------------------------------------------- /Java/SpringBoot/demo/pom.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/pom.xml -------------------------------------------------------------------------------- /Java/SpringBoot/demo/src/main/java/com/bsides/demo/DemoApplication.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/src/main/java/com/bsides/demo/DemoApplication.java -------------------------------------------------------------------------------- /Java/SpringBoot/demo/src/main/java/com/bsides/demo/HelloWorldController.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/src/main/java/com/bsides/demo/HelloWorldController.java -------------------------------------------------------------------------------- /Java/SpringBoot/demo/src/main/resources/application.properties: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/src/main/resources/application.properties -------------------------------------------------------------------------------- /Java/SpringBoot/demo/src/test/java/com/bsides/demo/DemoApplicationTests.java: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Java/SpringBoot/demo/src/test/java/com/bsides/demo/DemoApplicationTests.java -------------------------------------------------------------------------------- /JavaScript/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/JavaScript/README.md -------------------------------------------------------------------------------- /JavaScript/log-analysis.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/JavaScript/log-analysis.sh -------------------------------------------------------------------------------- /JavaScript/routes.log: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/JavaScript/routes.log -------------------------------------------------------------------------------- /JavaScript/swagger.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/JavaScript/swagger.json -------------------------------------------------------------------------------- /Python/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/README.md -------------------------------------------------------------------------------- /Python/django/demo/demo/__init__.py: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /Python/django/demo/demo/__pycache__/__init__.cpython-311.pyc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/__pycache__/__init__.cpython-311.pyc -------------------------------------------------------------------------------- /Python/django/demo/demo/__pycache__/settings.cpython-311.pyc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/__pycache__/settings.cpython-311.pyc -------------------------------------------------------------------------------- /Python/django/demo/demo/__pycache__/urls.cpython-311.pyc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/__pycache__/urls.cpython-311.pyc -------------------------------------------------------------------------------- /Python/django/demo/demo/__pycache__/views.cpython-311.pyc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/__pycache__/views.cpython-311.pyc -------------------------------------------------------------------------------- /Python/django/demo/demo/asgi.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/asgi.py -------------------------------------------------------------------------------- /Python/django/demo/demo/settings.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/settings.py -------------------------------------------------------------------------------- /Python/django/demo/demo/urls.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/urls.py -------------------------------------------------------------------------------- /Python/django/demo/demo/views.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/views.py -------------------------------------------------------------------------------- /Python/django/demo/demo/wsgi.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/demo/wsgi.py -------------------------------------------------------------------------------- /Python/django/demo/manage.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/manage.py -------------------------------------------------------------------------------- /Python/django/demo/myapp/__init__.py: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /Python/django/demo/myapp/admin.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/myapp/admin.py -------------------------------------------------------------------------------- /Python/django/demo/myapp/apps.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/myapp/apps.py -------------------------------------------------------------------------------- /Python/django/demo/myapp/migrations/__init__.py: -------------------------------------------------------------------------------- 1 | -------------------------------------------------------------------------------- /Python/django/demo/myapp/models.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/myapp/models.py -------------------------------------------------------------------------------- /Python/django/demo/myapp/tests.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/django/demo/myapp/tests.py -------------------------------------------------------------------------------- /Python/django/demo/myapp/views.py: -------------------------------------------------------------------------------- 1 | from django.shortcuts import render 2 | 3 | # Create your views here. 4 | -------------------------------------------------------------------------------- /Python/flask/__pycache__/app.cpython-311.pyc: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/flask/__pycache__/app.cpython-311.pyc -------------------------------------------------------------------------------- /Python/flask/app.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Python/flask/app.py -------------------------------------------------------------------------------- /Python/flask/static/hidden: -------------------------------------------------------------------------------- 1 | SECRETS 2 | -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/README.md -------------------------------------------------------------------------------- /Spectral/.spectral.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Spectral/.spectral.yaml -------------------------------------------------------------------------------- /Spectral/README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Spectral/README.md -------------------------------------------------------------------------------- /Spectral/functions/shadowApi.js: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Spectral/functions/shadowApi.js -------------------------------------------------------------------------------- /Spectral/swagger.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/SirAppSec/bsides-shadow-api/HEAD/Spectral/swagger.json --------------------------------------------------------------------------------