PkgRadar

Go modules · proxy.golang.org

github.com/tyrusrc/swiss-knife-for-web-security

DNS / OAST exfiltration: matched "burpcollaborator.net"

Why PkgRadar flagged v0.0.0-20260605114847-a79e3505e61b

SeveritySignalEvidence
highDNS / OAST exfiltrationmatched "burpcollaborator.net" · github.com/tyrusrc/[email protected]/data/vulnerability_reference.json
highDNS / OAST exfiltrationmatched "dig $(" · github.com/tyrusrc/[email protected]/internal/payloads/cmdi/cmdi.go
highDNS / OAST exfiltrationmatched "burpcollaborator.net" · github.com/tyrusrc/[email protected]/internal/payloads/ssrf/ssrf.go
mediumRemote Payloadmatched "cURL " · github.com/tyrusrc/[email protected]/cmd/assay/cmd/scan_flags.go
mediumRemote Payloadmatched "curl " · github.com/tyrusrc/[email protected]/internal/payloads/arginject/detector.go
mediumRemote Payloadmatched "curl " · github.com/tyrusrc/[email protected]/internal/payloads/cmdi/cmdi.go
mediumRemote Payloadmatched "curl " · github.com/tyrusrc/[email protected]/internal/payloads/javareflect/javareflect.go
mediumRemote Payloadmatched "curl " · github.com/tyrusrc/[email protected]/internal/payloads/nodejsinject/nodejsinject.go
mediumRemote Payloadmatched "cURL " · github.com/tyrusrc/[email protected]/internal/scanner/internal_scanner_config.go
mediumRemote Payloadmatched "curl " · github.com/tyrusrc/[email protected]/internal/scanner/internal_scanner_oob.go
mediumRemote Payloadmatched "cURL " · github.com/tyrusrc/[email protected]/internal/scanner/runner_url.go
mediumRemote Payloadmatched "CURL " · github.com/tyrusrc/[email protected]/internal/tools/nuclei/nuclei.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260605114847-a79e3505e61bHigh risk2032026-06-08
v0.0.0-20260604150325-cba83beaa8caHigh risk2032026-06-05
v0.0.0-20260529165953-5d3a713d82e8High risk2032026-05-31

Block this in CI

PkgRadar gates github.com/tyrusrc/swiss-knife-for-web-security (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/tyrusrc/[email protected]
github.com/tyrusrc/swiss-knife-for-web-security — Go modules security scan | PkgRadar