Oblivion is a tool focused in real time monitoring of new data leaks, notifying if the credentials of the user has been leak out. It's possible too verify if any credential of user has been leak out before. The Oblivion have two modes:
- Oblivion Client: graphical mode.
- Oblivion Server: mode with API functionalities.
NOTE: The Oblivion Client and the Oblivion Server are independents.
Oblivion Client
Oblivion Server
π Oblivion Features
πͺ CVEs scanβοΈ Works with powerful APIsπ Works too with Google Dorks- π Checks your password in Word Lists
π Checks the last pastes in Pastebinπ Output to txt, docx, pdf, xlsx, json, html, xml, dbπ Output to encrypted files- π¦ Sends result files to multiples Buckets S3
π Upload the result files to Google Drive- π‘ Cab send result files by SSH (work with EC2)
- π’ Notify by Telegram and e-mail
π Includes option to hide passwords for demonstrations- π Works with scheduled scans
π Possible to execute loop scans
π΅ APIs
Service | Functions | Status |
---|---|---|
HaveIBeenPwned | E-mails and passwords | paid |
Scylla.sh | Cleartext passwords, hashs and salts, usernames, IPs, domain | free |
IntelX.io | Cleartext passwords, hashs and salts, usernames, IPs, domain, Bitcoin Wallets, IBAN | paid |
Circl.lu | Checks for new CVEs | free |
π§ Usage and configuration
For configuration or usage of Oblivion please read the documentation. All the steps were careful explained with images and examples.
π Thanks and credits
-
Peter Kleissner and the Intelligence X team
-
Alejandro Caceres (Scylla)
-
Gustavo Melgaço
-
Eliabe Kaique