sherlock-project / sherlock

Hunt down social media accounts by username across social networks
https://sherlockproject.xyz
MIT License
58.04k stars 6.7k forks source link

cgtrader is returning false positives #2027

Closed thedaryltan closed 4 months ago

thedaryltan commented 6 months ago

Checklist

Description

cgtrader is returning a false positive on all usernames.

I believe the issue is that the data.json file identifies it as a errortype: Message but the current website has changed to return a 404 error instead.

On further testing, I found that even when I changed it to an errortype: message to try to address the false positives, it continues to have the same issue. From some of the data I see in Burpsuite, it seems like cgtrader may have cloudflare protection. If someone knows how to verify and confirm this then I suggest we remove cgtrader from the list of sites.

SourGeckoo commented 6 months ago

Same here. Also got false positives for Coders Rank.

thedaryltan commented 6 months ago

Same here. Also got false positives for Coders Rank.

Oh. I haven't encountered that. Does it happen for all usernames or just some specific examples?

SourGeckoo commented 6 months ago

the vast majority of usernames return a false positive, but not all. It's quite strange...

JonUleis commented 6 months ago

Seeing false positives on these 10 currently:

[+] Archive.org: https://archive.org/details/@______ [+] CGTrader: https://www.cgtrader.com/______ [+] Coders Rank: https://profile.codersrank.io/user/______/ [+] G2G: https://www.g2g.com/______ [+] Linktree: https://linktr.ee/______ [+] NationStates Nation: https://nationstates.net/nation=______ [+] NationStates Region: https://nationstates.net/region=______ [+] Oracle Community: https://community.oracle.com/people/______ [+] SoylentNews: https://soylentnews.org/~______

orimandel commented 6 months ago

Contently (https://username.contently.com) gives a false positive too

chris3857 commented 6 months ago

f.txt

chris3857 commented 6 months ago

https://github.com/aip-dev/google.aip.dev/compare/master...jgeewax-patch-2 f.txt

eduardogott commented 5 months ago

I'm getting false positive on these:

[+] Archive.org: https://archive.org/details/@9278HG374G327G23B80 [+] BitCoinForum: https://bitcoinforum.com/profile/9278HG374G327G23B80 [+] CGTrader: https://www.cgtrader.com/9278HG374G327G23B80 [+] CNET: https://www.cnet.com/profiles/9278HG374G327G23B80/ [+] Euw: https://euw.op.gg/summoner/userName=9278HG374G327G23B80 [+] HEXRPG: https://www.hexrpg.com/userinfo/9278HG374G327G23B80 [+] Linktree: https://linktr.ee/9278HG374G327G23B80 [+] NationStates Nation: https://nationstates.net/nation=9278HG374G327G23B80 [+] NationStates Region: https://nationstates.net/region=9278HG374G327G23B80 [+] Oracle Community: https://community.oracle.com/people/9278HG374G327G23B80 [+] Polymart: https://polymart.org/user/9278HG374G327G23B80 [+] Slides: https://slides.com/9278HG374G327G23B80 [+] YandexMusic: https://music.yandex/users/9278HG374G327G23B80/playlists