FireStorePwn – Firestore Database Vulnerability Scanner Using APKs
fsp scans an APK and checks the Firestore database for rules that are not secure, testing with or without authentication.
If there are problems with the security rules, attackers could steal, modify or delete data and raise the bill.
Install fsp
sudo wget https://raw.githubusercontent.com/takito1812/FireStorePwn/main/fsp -O /bin/fsp
sudo chmod +x /bin/fsp
sudo wget https://raw.githubusercontent.com/takito1812/FireStorePwn/main/fsp -O /bin/fsp
sudo chmod +x /bin/fsp
Running fsp
Scanning an APK without authentication
fsp app.apk
Scanning an APK with authentication
With email and password.
fsp app.apk [email protected]:123456
With a token.
fsp app.apk eyJhbGciO...
Download FireStorePwn
If you like the site, please consider joining the telegram channel or supporting us on Patreon using the button below.